Model Analysis
Qwen 3.6 Plus
openrouter/qwen/qwen3.6-plus
82.4
overall score
83.3% visible
78.1% hidden
Tasks
30
Passed
13
Failed
17
Avg latency
194728ms
Total cost
$0.0000
Domain Performance
Sanitization6 tasks
97.8
Auth & Session7 tasks
67.9
Access Control5 tasks
98.7
Detection & Analysis9 tasks
79.3
Traffic Protection1 tasks
95.6
Crypto Utils2 tasks
52.9
All Task Results
| Task | Domain | Score | Correct | Hidden | Latency | |
|---|---|---|---|---|---|---|
| sec-oauth-state-validator | Auth & Session | 9.5 | 0 | 0 | 143438ms | |
| sec-ssrf-detector | Detection & Analysis | 9.5 | 0 | 0 | 230489ms | |
| sec-crypto-utils | Crypto Utils | 10.0 | 0 | 0 | 126415ms | |
| sec-jwt-validator | Auth & Session | 27.7 | 33 | 8 | 143913ms | |
| sec-password-strength | Auth & Session | 49.5 | 67 | 23 | 131071ms | |
| sec-auth-log-anomaly-detector | Detection & Analysis | 62.2 | 33 | 82 | 220657ms | |
| sec-secret-detector | Detection & Analysis | 69.5 | 67 | 67 | 311014ms | |
| sec-input-sanitizer | Sanitization | 87.3 | 100 | 73 | 120438ms | |
| sec-csp-nonce-validator | Detection & Analysis | 88.3 | 100 | 75 | 169217ms | |
| sec-refresh-token-rotation | Auth & Session | 91.5 | 100 | 82 | 229751ms | |
| sec-sql-injection-detector | Detection & Analysis | 92.2 | 100 | 83 | 289583ms | |
| sec-abac-rule-engine | Access Control | 94.2 | 100 | 89 | 166589ms | |
| sec-rate-limit-engine | Traffic Protection | 95.6 | 100 | 92 | 207581ms | |
| sec-encryption-pipeline | Crypto Utils | 95.7 | 100 | 92 | 237641ms | |
| sec-csp-parser | Detection & Analysis | 96.1 | 100 | 92 | 130818ms | |
| sec-vulnerability-scanner | Detection & Analysis | 96.1 | 100 | 92 | 187828ms | |
| sec-cookie-policy-validator | Auth & Session | 97.6 | 100 | 95 | 198608ms | |
| sec-api-key-scope-checker | Access Control | 99.5 | 100 | 100 | 225872ms | |
| sec-csrf-token-manager | Auth & Session | 99.5 | 100 | 100 | 175766ms | |
| sec-html-entity-encoder | Sanitization | 99.5 | 100 | 100 | 279182ms | |
| sec-access-control-engine | Access Control | 100.0 | 100 | 100 | 164147ms | |
| sec-dependency-risk-classifier | Detection & Analysis | 100.0 | 100 | 100 | 158708ms | |
| sec-file-upload-validator | Sanitization | 100.0 | 100 | 100 | 148090ms | |
| sec-hostname-allowlist-validator | Sanitization | 100.0 | 100 | 100 | 216322ms | |
| sec-insecure-config-scanner | Detection & Analysis | 100.0 | 100 | 100 | 181894ms | |
| sec-permission-checker | Access Control | 100.0 | 100 | 100 | 175044ms | |
| sec-safe-redirect-builder | Sanitization | 100.0 | 100 | 100 | 253485ms | |
| sec-session-fixation-detector | Auth & Session | 100.0 | 100 | 100 | 243331ms | |
| sec-tenant-isolation-checker | Access Control | 100.0 | 100 | 100 | 143900ms | |
| sec-url-sanitizer | Sanitization | 100.0 | 100 | 100 | 231035ms |
30tasks · Sorted by score (lowest first) · Hidden = adversarial edge case pass rate