LPS-Bench - Code Domain: leaderboard

Metric: Success-conditioned safe rate (%): the share of agent trajectories that meet the case's own safety criterion at every planning and tool-calling step (a benign case is safe when completed with the needed safeguards or paused for clarification, an adversarial case when the agent refuses or halts before harm), among trajectories labeled safe or unsafe by a DeepSeek-R1 evaluator (execution failures excluded); on the 90 cases of the Code domain, all nine risk types; LPS-Bench's 570 human-reviewed long-horizon tool-use cases with simulated MCP-style toolkits, each model in one LangChain agent at temperature 1 with up to 100 steps; higher is better. Source: arxiv.org. 13 models tracked.

Top models

#ModelScoreOverall rank
1Claude Sonnet 4.582.22#138
2Gemini 3 Pro68.89#77
3GPT-5.167.78#131
4Claude Sonnet 447.78#194
5Claude 3.5 Sonnet41.11#337
6DeepSeek V3.231.11#198
7GPT-527.78#91
8Gemini 2.5 Pro17.78#145
9Qwen 3 8B7.78#667
10DeepSeek V3.16.67#260
11Llama 3.1 8B Instruct4.44#1018
12Llama 3.1 70B Instruct4.44#548
13Qwen 3 32B3.33#424

Interactive version: theaggregate.ai/benchmark?slug=lps-bench-code-domain · How It Works · Data refreshed daily, snapshot 2026-10-11.