Screener/Cohere

Cohere

Enterprise-focused LLM developer with published usage policies and moderate governance transparency.

HQ🇨🇦 CA
Est2019
Size201-500
EU AI ActGPAI
cohere.com
Score
38.0 / 100
Evidence
6 items
Confidence
medium

Developing safety practices - core foundations in place with room for improvement.

Weaknesses:Governance Maturity, Technical Safety, Risk Assessment, Regulatory Readiness, External Engagement
Focus Areas
foundation modelsenterprise AINLPRAG

Strengths

No notable strengths identified

Risks

  • Risk score (30) - significant gap
  • Regulatory requires attention
Table of Contents

Security Assessment

Security-relevant indicators for vendor evaluation

Security Posture
36
TS-01dim: 42
Red Teaming & Pre-deployment Testing
Adversarial testing before deployment
TS-05dim: 42
Robustness & Adversarial Resilience
Resistance to adversarial attacks
RA-01dim: 30
Sector-Specific Risk Assessment
Risk analysis for deployment context
RA-03dim: 30
Dual-Use & Misuse Risk
Dangerous capability awareness
RA-07dim: 30
Incident History & Track Record
Past incidents and response quality
EE-04dim: 40
Vulnerability Disclosure Program
Bug bounty or CVE reporting process
Incident History
Cohere incident records sourced from AIAAIC Repository and public reporting.
Integration: AIAAIC, OECD AI Incidents Monitor
Third-Party Audits
External audit reports, SOC 2 attestations, and ISO certifications verified where published.
Sources: Company filings, registry lookups
CVE & Disclosures
Known vulnerabilities and security advisories from NVD, GitHub Security Advisories, and vendor pages.
Sources: NVD, GHSA, vendor disclosure pages

Dimension Breakdown

GM
Governance Maturitypreliminary
Published policies, corporate structure, safety mandate, whistleblowing, executive commitment.
40
TS
Technical Safetypreliminary
Benchmarks, adversarial robustness, fine-tuning safety, watermarking, model cards, research output.
42
RA
Risk Assessmentpreliminary
Dangerous capability evaluations, thresholds, external testing, bug bounty, halt conditions.
30
RR
Regulatory Readinesspreliminary
ISO 42001, EU AI Act compliance, GPAI obligations, international commitments, incident reporting.
38
EE
External Engagementpreliminary
Survey participation, research support, transparency, behavior specs, open-source contributions.
40

Social Impact & Safety Profile

Moderate

Cohere develops the Command family of models with a strong enterprise focus. Publishes usage policies and model cards. Participates in industry safety initiatives but lacks a published responsible scaling policy or formal independent safety oversight. Canadian regulatory environment provides softer compliance pressure than EU-based peers.

enterprise AIusage policiesmodel cards

Peer Comparison

Mistral AI
C-35

Foundation Models

Compare
AI21 Labs
D+33

Foundation Models

Compare
xAI
D25

Foundation Models

Compare
Stability AI
D-22

Foundation Models

Compare

Data Sources & Methodology

Scoring methodology v0.1 · 40 indicators · 6 frameworks

Last assessment: 2026-03-23 · Confidence: medium · Evidence: 6 items

NIST AI RMF · EU AI Act · ISO 42001 · FLI AI Safety Index · MLCommons AILuminate · METR

Scores reflect publicly available information. A low score may indicate limited transparency rather than poor safety practices.