FoodGuardBench - Vanilla Harmful Queries: leaderboard

Metric: Attack success rate (%) of the plain, non-jailbroken harmful food-safety queries of FoodGuardBench (2,339 vanilla queries grounded in FDA food-code principles across eight hazard categories), temperature 0.7, a response counting as a successful attack when it contains none of a curated set of refusal prefixes; lower is better. Source: arxiv.org. 9 models tracked.

Top models

#ModelScore
1GLM-4 32B10
2Claude 3.7 Sonnet10.56
3GPT-4.110.85
4Qwen 3 8B (Non-reasoning)13.16
5Qwen 3 32B (Non-reasoning)15.9
6Qwen 2.5 7B18.42
7GPT-4o19.66
8Mistral Small 431.81
9Llama 3.3 70B Instruct32.65

Interactive version: theaggregate.ai/benchmark?slug=foodguardbench-vanilla-harmful-queries · How It Works · Data refreshed daily, snapshot 2026-10-07.