ModelRiskIndex

Rankings / Amazon

Amazon Nova Premier

Tier 170/100draft — pending re-verification

amazon.nova-premier-v1 via bedrock-runtime.*.amazonaws.com

Usage share <0.01% · OpenRouter rankings API (daily token share, 2026-08-04)

Tier assessment
Tier 1 requirements
  • Published model card. A model card or equivalent technical documentation is published for this model.
  • Published safety evals. Safety evaluations for this model are published.Responsible-AI documentation and technical report; less detailed than frontier-lab system cards.
  • Documented safety policy. A documented safety, usage, or acceptable-use policy governs the model.
  • Enterprise data controls. Customer data is not used for training by default, or a documented opt-out exists.
Tier 2 requirements
  • External pre-deployment testing. No disclosed external pre-deployment testing.
  • Third-party certification. The operating organization holds verifiable third-party certification (e.g. SOC 2, ISO/IEC 42001).
  • Versioning with changelogs. Model versions are explicitly identified and changes are changelogged.
  • Stated deprecation policy. A deprecation policy with notice windows is published.

Missing for Tier 2: external pre-deployment testing. The tier is computed from this checklist — satisfying these requirements moves the badge, automatically.

Risk analysisfive vectors · click a wedge for its evidence

Risk vectors — the receipts

Data governancestrong

What happens to your data: training-on-customer-data defaults, retention windows, residency options, and the enterprise-versus-consumer terms gap. A legal property, not a capability — it survives every model generation.

Bedrock does not use customer content to train models, does not share it with model providers, and offers regional processing with private connectivity — among the cleanest enterprise data postures tracked.

Receipts (1)
  • Amazon Bedrock data protection documentation
    AWS / Amazon Nova provider artifacts · provider artifact · source tier B · docs.aws.amazon.com · retrieved 2026-08-03
    Because the model providers don't have access to those accounts, they don't have access to Amazon Bedrock logs or to customer prompts and completions.

Operational stabilitypartial

Whether it changes without warning: versioning discipline, changelog quality, deprecation policy, and observed silent changes. The signal no one else tracks.

Versioned model IDs with Bedrock lifecycle/deprecation policy; changelog granularity for behavior changes is limited.

Receipts (1)
  • Amazon Bedrock model lifecycle documentation
    AWS / Amazon Nova provider artifacts · provider artifact · source tier B · docs.aws.amazon.com · retrieved 2026-08-03
    Once a model launches on Amazon Bedrock, it will remain on Amazon Bedrock for at least 12 months before the EOL date.

Adversarial resistancepartial

Whether an attacker can make it misbehave — direct jailbreaks against the model's own policies and indirect prompt injection in agentic tool use. Graded to the weaker of the two, because an attacker takes the easier path.

Jailbreak resistancepartial

Built-in responsible-AI training plus optional Bedrock Guardrails; independent testing places it mid-tier, with the guardrail layer doing significant work when enabled.

Prompt injection (agentic)partial

Bedrock Guardrails includes prompt-attack filters as a configurable layer; the bare model's agentic-injection behavior lacks published independent results.

Receipts (2)
  • Amazon Nova responsible AI documentation
    AWS / Amazon Nova provider artifacts · provider artifact · source tier B · docs.aws.amazon.com · retrieved 2026-08-03
  • Amazon Bedrock Guardrails documentation
    AWS / Amazon Nova provider artifacts · provider artifact · source tier B · docs.aws.amazon.com · retrieved 2026-08-03
    Filtering is done based on detection of certain predefined harmful content categories: Hate, Insults, Sexual, Violence, Misconduct and Prompt Attack.

Transparencypartial

Whether you can see how it was built and tested: model cards, published safety evals, external pre-deployment testing, and disclosure of changes. The mechanism behind the tier ladder.

Nova model cards and a technical report exist; external pre-deployment testing and detailed safety evals are not published.

Receipts (1)

Compliance posturestrong

Whether it is certified and compliant: SOC 2, ISO/IEC 42001, HIPAA eligibility, EU AI Act readiness, and audit availability.

Inherits AWS's certification stack: SOC, ISO (including ISO/IEC 42001 for covered AI services), HIPAA eligibility, FedRAMP paths, extensive residency options.

Receipts (1)
  • AWS compliance programs
    AWS / Amazon Nova provider artifacts · provider artifact · source tier B · aws.amazon.com · retrieved 2026-08-03
    AWS supports 143 security standards and compliance certifications, including PCI-DSS, HIPAA/HITECH, FedRAMP, GDPR, FIPS 140-3, and NIST 800-171, helping customers satisfy compliance requirements around the globe.

Governance & evidence

Where your data goes

  • US

Regional pinning available — customers can pin processing to a chosen region.

Processing occurs in the customer's chosen AWS region; extensive regional options via Bedrock.

Enterprise vs consumer terms

Enterprise vs consumer gap: none measured. Level tiers can mean both are clean, or that the API tier is itself weak with nothing better to compare against. No consumer tier exists — Nova Premier is served only through Bedrock under enterprise terms.CONSUMERENTERPRISE / APIWORSE TERMS →
No measured gap

No consumer tier exists — Nova Premier is served only through Bedrock under enterprise terms.

Level tiers can mean both are clean, or that the API tier is itself weak with nothing better to compare against.

Change cadence

no tracked changesNo tracked changes for Amazon Nova Premier. Absence of detection is not evidence of stability.none

No tracked changes for this model. That is absence of detection, not evidence of stability — it may mean the model is unwatched, not that it is unchanging.

Score volatility

No dated score readings recorded for this model yet. Readings are only entered where multiple real, dated third-party values exist — never interpolated.

Receipts — what backs this assessment

7 evidence refs2 distinct sources0 independent
  • BAWS / Amazon Nova provider artifactsprovider artifact×6 references
  • EOpenRouter model rankingsusage data×1 reference

* No independent (tier C or better) corroboration yet.

retrieved 2026-08-03 — 2026-08-05

Compliance & deployment

Trains on customer data by default
No
SOC 2
Yes
ISO/IEC 42001
Yes
HIPAA eligible
Yes
Retention window
No content retention for model improvement; CloudWatch/logging under customer control
Data residency
Extensive regional options via Bedrock
EU AI Act
AWS publishes EU AI Act guidance for Bedrock deployers.
Deprecation policy
Published Bedrock model lifecycle with EOL dates
Available via
AWS Bedrock

Change timeline

No tracked changes yet for this model.

Compare this model: Amazon Nova Premier + open compare view →