Last updated: July 25, 2026

Claude Mythos 5 is the most capable — and most restricted — model in Anthropic’s Claude family. Released alongside Claude Fable 5 on June 9, 2026, Mythos 5 shares the same underlying model family but removes some of the safety classifiers that Fable 5 applies to high-risk domains. The result: the highest raw capability tier Anthropic has shipped, available only to vetted partners through Project Glasswing and trusted-access programs.

Quick answer: Claude Mythos 5 is a restricted-access Mythos-class model. It is not available through the public API, Claude.ai, or any self-serve channel. On standard coding and knowledge-work benchmarks, it shares the same scores as Fable 5 because they use the same underlying model. Where Mythos 5 diverges is in safeguarded domains — cybersecurity, biology, and chemistry — where Fable 5’s classifiers restrict or reroute requests. For most users, Fable 5 or Opus 5 delivers the same core intelligence with fewer barriers.

Claude Mythos 5 questionAnswer
What is Claude Mythos 5?The restricted-access version of the same model family as Fable 5 — highest raw capability in the Claude lineup.
When was it released?June 9, 2026 (alongside Fable 5).
Can I use it?Not self-serve. Limited to approved Project Glasswing and trusted-access partners.
API model ID?claude-mythos-5 (restricted — not publicly callable).
How much does it cost?$10/$50 per MTok (same as Fable 5) for approved partners.
Is it better than Fable 5?Same underlying model. Stronger in safeguarded domains (cyber, biology) where Fable 5’s classifiers intervene.
Is it better than Opus 5?Stronger on long-running autonomous research and exploit generation. Opus 5 is close on vulnerability discovery.
Data retention?30-day retention required (covered model, same as Fable 5).
Context window?1M tokens, 128K max output (same as Fable 5).
Source check Sources checked

Verified July 25, 2026

Mythos 5 is a restricted-access model. Some details — exact classifier thresholds, full benchmark breakdowns under unrestricted conditions, and partner-specific terms — are not public. This guide is based on Anthropic’s published materials and clearly marks what is confirmed versus inferred.

What is Claude Mythos 5?

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

Claude Mythos 5 is Anthropic’s highest-capability frontier model, released on June 9, 2026 as part of the same launch as Claude Fable 5. The two models share the same underlying model family — the difference is not raw intelligence but access controls and safety classifiers.

Think of it this way: Mythos 5 is the unrestricted research-grade version. Fable 5 is the production-grade version with guardrails added for domains where advanced AI capability creates real-world misuse risk.

Mythos 5 factDetail
Release dateJune 9, 2026 (alongside Fable 5)
Model classMythos-class (highest tier)
API model IDclaude-mythos-5 (restricted)
Context window1M tokens
Max output128K tokens
Pricing$10 / MTok input, $50 / MTok output
Thinking modeAdaptive thinking, always on
Data retention30-day retention (covered model)
AccessProject Glasswing and trusted-access partners only
Primary audienceCyberdefenders, infrastructure providers, approved biology researchers

Anthropic’s positioning is deliberate: Mythos 5 exists because the model’s capabilities in cybersecurity, biology, and chemistry are strong enough to create significant dual-use risk. Rather than weakening the model to make it safe for general release, Anthropic ships the same capability broadly as Fable 5 (with classifiers) and reserves the unrestricted version for vetted partners who need it for defensive and research purposes.

Mythos 5 vs Fable 5: what is actually different?

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

This is the most common question, and the answer is more nuanced than “Mythos 5 is smarter.”

DimensionClaude Mythos 5Claude Fable 5
Underlying modelSame model familySame model family
AccessRestricted — Project Glasswing, trusted partnersGenerally available — API, Claude.ai, cloud platforms
Cyber safeguardsFewer restrictions for approved usersClassifiers detect and block/reroute risky requests
Biology safeguardsFewer restrictions for approved researchersClassifiers restrict biology/chemistry misuse
Distillation protectionsRelaxed for approved partnersActive distillation-detection classifiers
Standard benchmarksSame scores as Fable 5Same scores as Mythos 5
Safeguarded-domain performanceHigher — classifiers do not interveneLower — flagged requests fall back to Opus 4.8
API model IDclaude-mythos-5 (restricted)claude-fable-5 (public)
Pricing$10/$50 per MTok$10/$50 per MTok
Data retention30-day (covered model)30-day (covered model)
Context / output1M / 128K1M / 128K

The critical insight: on normal coding, knowledge work, reasoning, and vision tasks, Mythos 5 and Fable 5 produce the same results. Anthropic’s published benchmark table uses a combined “Fable 5 / Mythos 5” column because the scores are identical for non-safeguarded evaluations. The divergence appears only when a request touches cybersecurity, biology, chemistry, or distillation domains — areas where Fable 5’s classifiers may refuse, reroute to Opus 4.8, or return a summarized response instead of the full model output.

For a deeper look at Fable 5’s capabilities, pricing, and use cases, see the Claude Fable 5 guide.

The Mythos class explained

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

Anthropic’s Claude model lineup follows a four-tier hierarchy. The Mythos class, introduced with the Claude 5 generation, sits at the top:

TierCurrent modelPositioningAccess
MythosMythos 5 / Fable 5Highest capability — hardest autonomous workMythos 5: restricted. Fable 5: general
OpusOpus 5Premium everyday model — near-Mythos at half the priceGeneral
SonnetSonnet 5Balanced speed and capabilityGeneral
HaikuHaiku 4.5Fast, low-cost tasksGeneral

Before the Claude 5 generation, Opus was the peak tier. The introduction of Mythos-class models restructured the hierarchy: Opus is now the premium-but-accessible tier, while Mythos represents the absolute capability ceiling.

The naming convention matters for understanding access. “Mythos 5” refers to the restricted model. “Fable 5” is the generally available Mythos-class model with added safeguards. Both are Mythos-class — the product name (Fable vs Mythos) signals the access level, not a difference in base intelligence.

How to get Mythos 5 access

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

Mythos 5 is not self-serve. You cannot select it in a model picker, call it through the public API, or access it through Claude.ai. There is no waitlist form on Anthropic’s website for general users.

Access is limited to:

  1. Project Glasswing participants. Anthropic’s vetted program for organizations working on defensive cybersecurity, infrastructure protection, and approved biomedical research. Participation requires an existing relationship with Anthropic and approval through their trusted-access process.

  2. Trusted-access partners. Organizations that Anthropic has directly onboarded for dual-use research. These are typically government-adjacent cybersecurity teams, critical infrastructure providers, and research institutions with appropriate oversight.

  3. Cyber Verification Program (CVP) members. Members of the CVP get access to versions of Claude models with fewer cybersecurity restrictions. The CVP currently applies to Opus and Sonnet models; whether it extends to full Mythos 5 access or only to reduced-restriction Fable 5 variants is not publicly documented.

What if you do not qualify?

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

For the vast majority of users and organizations, the answer is straightforward: use Fable 5 or Opus 5. You get the same underlying model intelligence. The only difference is that certain high-risk requests will be blocked or rerouted — and for normal software engineering, analysis, writing, and business work, those classifiers rarely trigger.

If your work genuinely requires unrestricted cybersecurity or biology capability:

  • Contact Anthropic’s enterprise or research partnerships team directly.
  • Demonstrate a legitimate defensive or research use case.
  • Expect a vetting process that evaluates your organization’s security posture, oversight mechanisms, and intended use.
  • Do not expect rapid approval — this is intentionally a high-friction process.

Benchmark comparison: Mythos 5 vs Fable 5 vs Opus 5

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

Because Mythos 5 and Fable 5 share the same underlying model, their published benchmark scores are identical on non-safeguarded evaluations. The table below uses Anthropic’s published data from the June 9 launch and the July 24 Opus 5 announcement.

BenchmarkMythos 5 / Fable 5Opus 5Opus 4.8What it measures
SWE-bench Pro80.3%69.2%Long-horizon software engineering
SWE-bench Verified95.0%Real GitHub issue resolution
FrontierCode Diamond29.3%Approaches Fable-level13.4%Production-codebase agentic coding
Terminal-Bench 2.188.0%82.7%Terminal-based coding tasks
GDPval-AA v21932 EloSOTA1890Professional knowledge work
OSWorld 2.085.0% (OSWorld-Verified)Surpasses Fable 5 at 1/3 costComputer use
Frontier-Bench v0.1SOTA (2x+ Opus 4.8)BaselineValuable software engineering
CursorBench 3.2PeakWithin 0.5% of Fable 5Real-world coding in Cursor
ARC-AGI 33x next-bestNovel problem-solving

Where Mythos 5 diverges from Fable 5 and Opus 5

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

The benchmarks above do not capture the full Mythos 5 story because they avoid safeguarded domains. Based on Anthropic’s published statements:

  • Cybersecurity — vulnerability discovery: On OSS-Fuzz, Opus 5 is close to Mythos 5 at finding vulnerabilities. Fable 5’s classifiers may reroute some of these requests to Opus 4.8, so the effective Fable 5 performance depends on whether the classifier triggers.

  • Cybersecurity — exploit generation: Opus 5 is substantially behind Mythos 5 on exploiting discovered vulnerabilities. This is the clearest capability gap between the tiers. Fable 5’s classifiers block exploit generation entirely for general users.

  • Long-running autonomous research: Mythos 5 is stronger than Opus 5 on extended autonomous research tasks. Opus 5 shows limitations on multi-hour research workflows where sustained, self-directed investigation is required.

  • Biology and chemistry: Mythos 5 has the strongest raw capability in these domains. Fable 5’s biology safeguards are more restrictive, which is why Opus 5 (with fewer biology restrictions) is Anthropic’s most capable generally available model for scientific research.

Treat vendor-published benchmarks as directional. Validate on your own workload before committing budget.

Safety and safeguards: why Mythos 5 is restricted

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

The restriction on Mythos 5 is not arbitrary. Anthropic’s safety framework treats Mythos-class models as posing elevated risk in specific domains where advanced AI capability could enable real-world harm.

The dual-use problem

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

Mythos 5’s capabilities in cybersecurity, biology, and chemistry are strong enough to create a genuine dual-use dilemma:

  • Cybersecurity: The same ability to find and exploit software vulnerabilities that helps cyberdefenders patch systems can help attackers compromise them.
  • Biology: The same understanding of molecular biology and protein function that accelerates drug discovery could, in principle, inform the design of harmful biological agents.
  • Chemistry: Similar dual-use concerns apply to advanced chemical reasoning.
  • Model distillation: A sufficiently capable model could be used to train a smaller, less-aligned model that lacks safety classifiers entirely.

How Fable 5’s safeguards work

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

Fable 5 addresses this through classifiers that run alongside the model:

  1. Detection: Classifiers analyze incoming requests for high-risk patterns in cyber, biology, chemistry, and distillation domains.
  2. Intervention: Flagged requests are blocked, rerouted to Opus 4.8, or returned with summarized rather than full reasoning.
  3. Conservative tuning: Anthropic openly acknowledges the classifiers are tuned conservatively, meaning some harmless requests trigger false positives.

In API contexts, a refused request returns HTTP 200 with stop_reason: "refusal" rather than a transport error. Production applications must handle this as normal control flow.

Opus 5’s lighter touch

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

Claude Opus 5 occupies a middle ground: its cyber classifiers intervene approximately 85% less often than Fable 5’s. It allows vulnerability discovery in source code but blocks binary-based vulnerability scanning, penetration testing, and exploit generation. Its biology safeguards are similar to Opus 4.8, making it the most capable generally available Claude model for scientific research.

Why not just make Mythos 5 safe and release it?

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

That is essentially what Fable 5 is. The question is whether the classifiers can be made precise enough to block misuse without degrading legitimate work. Anthropic’s current answer: not yet, for the highest-risk domains. The conservative tuning creates enough false positives in cyber and biology work that researchers and cyberdefenders need the unrestricted version — hence the restricted-access Mythos 5.

This is an active area of development. Anthropic’s AI alignment research aims to make future models safe enough for broader release without capability-restricting classifiers.

When Mythos 5 matters vs when Fable 5 or Opus 5 is enough

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

For most users reading this guide, the practical answer is: you do not need Mythos 5. Here is the decision framework.

Mythos 5 is relevant if:

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.
  • You are an approved cyberdefender who needs unrestricted vulnerability discovery and exploit generation
  • You are an approved biology researcher working on tasks that Fable 5’s classifiers consistently block
  • You are a critical infrastructure provider with a vetted defensive security program
  • You need long-running autonomous research capability beyond what Opus 5 can sustain

Fable 5 is enough if:

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.
  • You need the highest generally available capability for autonomous coding, long-context analysis, or complex knowledge work
  • Your work occasionally touches cyber-adjacent topics but does not require exploit generation
  • You can accept 30-day data retention and occasional classifier false positives
  • You want the strongest model on Claude.ai, Claude Code, or the public API

Opus 5 is enough if:

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.
  • You need near-Fable 5 performance at half the price ($5/$25 per MTok)
  • You need zero data retention (Fable 5 and Mythos 5 both require 30-day retention)
  • Your work is cybersecurity-adjacent and you want 85% fewer classifier interventions than Fable 5
  • You need the freshest knowledge cutoff (May 2026 vs January 2026 for Fable 5)
  • You are doing scientific research and want fewer biology restrictions than Fable 5
Evaluation template Claude Mythos-class decision scorecard
QuestionStart withReason
Do you need unrestricted cyber exploit generation?Mythos 5 (if approved)Only Mythos 5 allows this
Do you need the hardest autonomous coding or analysis?Fable 5Highest GA capability ceiling
Do you need complex work at a sustainable cost?Opus 5Near-Fable 5 at half the price
Do you need zero data retention?Opus 5Fable 5 and Mythos 5 require 30-day retention
Do you need unrestricted biology research?Mythos 5 (if approved)Fable 5’s biology classifiers are restrictive
Is it everyday coding, research, or professional work?Sonnet 5 or Opus 5Mythos-class is overkill

The full Claude model lineup in July 2026

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.
ModelAPI IDInput / Output priceContextMax outputAccessBest for
Claude Mythos 5claude-mythos-5$10 / $50 per MTok1M128KRestrictedVetted cyber/bio research
Claude Fable 5claude-fable-5$10 / $50 per MTok1M128KGeneralHardest autonomous work
Claude Opus 5claude-opus-5$5 / $25 per MTok1M128KGeneralComplex coding, agents, enterprise
Claude Sonnet 5claude-sonnet-5$3 / $15 (intro $2 / $10)1M128KGeneralEveryday coding, research
Claude Haiku 4.5claude-haiku-4-5$1 / $5 per MTok200K64KGeneralFast, low-cost tasks

For the detailed Opus 5 breakdown, see the Claude Opus 5 guide. For the Sonnet 5 breakdown, see the Claude Sonnet 5 guide. For the previous-generation comparison, see Fable 5 vs Opus 4.8. For the competitive landscape, see GPT-5.6 Sol vs Claude Fable 5.

FAQ

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.
What is Claude Mythos 5?
Claude Mythos 5 is Anthropic’s restricted-access Mythos-class AI model, released on June 9, 2026 alongside Claude Fable 5. It shares the same underlying model family as Fable 5 but has fewer safety classifiers in high-risk domains (cybersecurity, biology, chemistry). It is limited to approved Project Glasswing participants and trusted-access partners — it is not available through the public API, Claude.ai, or any self-serve channel.
Claude Mythos 5 vs Fable 5: what is the difference?
Mythos 5 and Fable 5 use the same underlying model family and produce identical results on standard coding, reasoning, and knowledge-work benchmarks. The difference is in safeguarded domains: Fable 5 has classifiers that detect and block or reroute requests involving cybersecurity misuse, biology/chemistry misuse, and model distillation. Mythos 5 has fewer of these restrictions for approved users. Access is the other key difference — Fable 5 is generally available, while Mythos 5 is restricted to vetted partners.
How to get Claude Mythos 5 access?
Mythos 5 access is limited to approved Project Glasswing participants and trusted-access partners. There is no public waitlist or self-serve signup. You need an existing relationship with Anthropic and a demonstrated legitimate use case in defensive cybersecurity, critical infrastructure protection, or approved biomedical research. Contact Anthropic’s enterprise or research partnerships team directly. For most users, Fable 5 or Opus 5 provides the same core capability without access barriers.
When was Claude Mythos 5 released?
Claude Mythos 5 was released on June 9, 2026, the same day as Claude Fable 5. Both are part of the Mythos-class model family. Fable 5 was temporarily suspended on June 12 due to a US export-control directive and restored globally on July 1, 2026. Mythos 5’s restricted access was not affected by the suspension in the same way because it was never publicly available.
How much does Claude Mythos 5 cost?
For approved partners, Mythos 5 is priced at $10 per million input tokens and $50 per million output tokens — the same as Fable 5. Batch API pricing is $5/$25 per MTok. However, because Mythos 5 is restricted-access, pricing terms may be negotiated as part of the trusted-access partnership rather than charged at standard API rates. Anthropic has not published separate Mythos 5 pricing tiers.
What are Claude Mythos 5’s benchmark scores?
On non-safeguarded benchmarks, Mythos 5 and Fable 5 share the same scores: 80.3% on SWE-bench Pro, 95.0% on SWE-bench Verified, 29.3% on FrontierCode Diamond, 88.0% on Terminal-Bench 2.1, 1932 Elo on GDPval-AA, and 85.0% on OSWorld-Verified. In safeguarded domains (cybersecurity exploit generation, biology, chemistry), Mythos 5 outperforms Fable 5 because Fable 5’s classifiers intervene. Anthropic has not published a full unrestricted benchmark table for Mythos 5.
Is Mythos 5 better than Fable 5?
It depends on the domain. On standard coding, reasoning, and knowledge-work tasks, they are the same model — identical scores. In safeguarded domains (cybersecurity exploit generation, advanced biology, chemistry), Mythos 5 is stronger because Fable 5’s safety classifiers block or reroute those requests. For normal use cases, Fable 5 delivers the same intelligence. Mythos 5’s advantage only materializes in the specific high-risk domains where Fable 5’s classifiers intervene.
What is the Claude Mythos class?
The Mythos class is the highest tier in Anthropic’s Claude model hierarchy, introduced with the Claude 5 generation. The tier system is: Mythos > Opus > Sonnet > Haiku. Before Claude 5, Opus was the peak tier. Mythos-class models represent the absolute capability ceiling — designed for the hardest autonomous work, long-horizon research, and domains requiring the strongest reasoning. Both Mythos 5 (restricted) and Fable 5 (generally available) are Mythos-class models.
Is there a Claude Mythos 5 API?
The API model ID claude-mythos-5 exists, but it is not publicly callable. You cannot add it to a standard Anthropic API key and start making requests. Access requires approval through Project Glasswing or a trusted-access partnership with Anthropic. For developers who need Mythos-class capability through the public API, use claude-fable-5 — it is the same underlying model with added safeguards.
Why is Claude Mythos 5 restricted?
Mythos 5 is restricted because its capabilities in cybersecurity, biology, and chemistry create significant dual-use risk. The same vulnerability-exploitation ability that helps cyberdefenders can help attackers. The same biological reasoning that accelerates drug discovery could inform harmful applications. Rather than weakening the model, Anthropic ships the safeguarded version (Fable 5) broadly and reserves the unrestricted version (Mythos 5) for vetted partners with legitimate defensive or research use cases.
Does Claude Mythos 5 support zero data retention?
No. Mythos 5 is a covered model with a 30-day data-retention requirement, the same as Fable 5. Anthropic needs retained data to operate safety classifiers. If your organization requires zero data retention, use Claude Opus 5 or Sonnet 5 — both support zero data retention.
Claude Mythos 5 vs Opus 5: which is better?
Mythos 5 has higher raw capability, especially on long-running autonomous research tasks and in safeguarded domains like cybersecurity exploit generation. On OSS-Fuzz, Opus 5 is close to Mythos 5 at finding vulnerabilities but substantially behind on exploiting them. However, Opus 5 costs half as much ($5/$25 vs $10/$50 per MTok), supports zero data retention, has a newer knowledge cutoff (May 2026 vs January 2026), and is Anthropic’s most aligned model. For most work, Opus 5 is the better practical choice.

Bottom line

Try it in practice Make this section actionable Practice the workflow instead of only comparing tools.

Claude Mythos 5 is the most capable model Anthropic has built — and the one you almost certainly cannot use. That is by design. The Mythos-class capability that makes it exceptional in cybersecurity, biology, and chemistry research is the same capability that makes unrestricted release irresponsible.

For everyone else, the good news is that you do not need it. Claude Fable 5 gives you the same underlying model intelligence through public channels. Claude Opus 5 gets you within half a percent of Fable 5 on coding benchmarks at half the price, with zero data retention and a fresher knowledge cutoff. The Claude model lineup in July 2026 is deep enough that the restricted tier is a footnote for most users — not a gap.

If you are a cyberdefender, infrastructure provider, or approved researcher who genuinely needs unrestricted Mythos-class capability, the path runs through Anthropic’s trusted-access programs. For everyone else: start with Opus 5, escalate to Fable 5 when the task demands it, and let Mythos 5 stay where it belongs — behind the glass.