Anthropic released Claude Sonnet 5.5 on September 28, 2026, calling it the second model in the Claude 5.5 family. According to Anthropic’s announcement, the model generates output 30%+ faster than Claude Sonnet 5 and is “the first Sonnet model to launch with cyber safeguards and fallbacks like those we’ve developed for our most capable models.”
On this page
Availability and model ID
Developers call the model as claude-sonnet-5-5. Anthropic lists it on the Claude Platform, Amazon Web Services, Google Cloud and Microsoft Azure, and in the Claude apps and Claude Code.
Cyber safeguards with a fallback
The safeguards change how the model handles security work. Anthropic says: “Users can still find and fix bugs in their code as part of routine software development, but higher-risk cybersecurity tasks will visibly fall back to Sonnet 5.”
In practice, ordinary debugging stays on Sonnet 5.5, while requests that Anthropic classes as higher-risk cybersecurity work are answered by Claude Sonnet 5, and the switch is visible to the user. Until now, that tier of safeguards had been reserved for Anthropic’s most capable models.
Preserved thinking expands
Anthropic says Sonnet 5.5 “expands preserved thinking, so Claude’s thinking cannot be decoupled from the account that created it.” The company notes that users who move conversations between accounts will see changes in behavior and points developers to a migration guide. In its Claude Opus 5.5 announcement, Anthropic describes preserved thinking as “the anti-distillation safeguard we introduced with Fable 5.1.”
Benchmark results
All scores below were published by Anthropic on the Sonnet 5.5 page. Settings are shown where Anthropic gives them.
| Benchmark | Claude Sonnet 5.5 | Setting |
|---|---|---|
| Terminal-Bench 4.0 | 70.6% | Default |
| FrontierCode 1.1 (Main) | 52.1% | Xhigh effort |
| CursorBench 4.0 | 55.5% | Default |
| GDPval-AA v2.1 | 1844 | Default |
| AA-Briefcase v1.1 | 1811 | Default |
| OSWorld 2.1 | 80.1% | Listed as “partial” |
On FrontierCode 1.1, Anthropic reports a lower score at max effort (46.2%) than at xhigh effort, which is the model’s default for that benchmark. Anthropic’s footnotes say FrontierCode penalizes out-of-scope changes to the code. Lab-published scores for Sonnet 5.5 and other models are tracked on our benchmark leaderboard.
What it changes
Sonnet 5.5 brings two controls that earlier sat only on Anthropic’s top models down to its mid-tier line: the cyber fallback and the account-bound thinking. For developers building security tooling on Sonnet, the fallback means some requests will be served by Sonnet 5 rather than Sonnet 5.5. For applications that move conversation state between accounts, the preserved thinking change is the one to test before switching model IDs.
Sonnet 5.5 is listed on our AI model release timeline, and service health for Claude is tracked on the Claude status page.




