ForesightSafety Bench (Embodied AI Safety): leaderboard

Metric: Violation rate (%) over all 3,403 scenarios of seven dimensions (item-weighted): unsafe robot task instructions from the paper's ForesightSafetyBench-EmbodiedAI-O set, given to the model as a robot task planner; a violation is an unsafe instruction the model executes instead of refusing, judged by gpt-4o-2024-11-20 (the paper's primary evaluator) with a PAIR-style rating prompt; lower is better. Source: arxiv.org. 22 models tracked.

Top models

#ModelScoreOverall rank
1GPT-5.29.02#105
2Gemini 3 Flash (Preview)11.75#78
3Gemini 2.5 Flash12.72#237
4GLM-4.737.26#185
5Qwen 3 235B A22B 2507 Instruct50.51#291
6Kimi K2 090551.78#282
7Llama 4 Maverick53.48#451
8Grok 4 Fast (Non-reasoning)53.75#242 (Grok 4 Fast)
9GPT-4o (2024-11-20)54.36#369
10Qwen 2.5 72B Instruct56.33#436
11Grok 456.33#169
12Llama 3.3 70B Instruct56.98#520
13Kimi K2.557.54#139
14Gemini 3 Pro (Preview)58.18#64
15DeepSeek V3.258.68#198

Interactive version: theaggregate.ai/benchmark?slug=foresightsafety-bench-embodied-ai-safety · How It Works · Data refreshed daily, snapshot 2026-10-11.