Skip to content
AI Atlas
ModelActiveOpen weightsIdentity probable

Nemotron 3.5 Content Safety

NVIDIAfamily · Nemotron 3.5

NVIDIA Nemotron 3.5 Content Safety is a compact 4B-parameter multimodal guardrail model from NVIDIA, fine-tuned from Google Gemma-3-4B. It moderates both inputs to and responses from LLMs and VLMs, accepting...

Open in Graph
data quality56

Updated 4 h ago · first seen 11 Sept 2026

model_01M294WVXCH17ZR022YTQHBCGC

Overview

Identity

Canonical model
Yesidentity confidence: mediumOne row per real model release. Artifacts (checkpoints, quantisations, conversions) and folded evaluation variants point here.
Official checkpoints
official_checkpoints = hf_repo identifiers carried by the model itself; artifacts are separate entities pointing here through canonical_id.
Artifacts
None recordedSeparate entities (checkpoint · quantization · conversion · packaging) pointing to this model through canonical_id.
Provider deployments
2
API aliases
nvidia/nemotron-3.5-content-safetyIdentifiers under which providers and evaluators refer to this model.
Folded evaluation variants
0Effort / thinking variants (…-high, …-non-reasoning) are result configurations of this model, not separate models. Their old URLs redirect here.

Openness

Open weightsweights downloadable; 7 dimensions unknown.

Weights downloadable under a permissive or Creative Commons licence allowing commercial use; code or data may be missing.

  • Weights

    Yes

  • Inference code

  • Training code

  • Training data

  • Dataset

  • Commercial use

  • Redistribution

  • Derivatives

dimensions marked null are unknown, not false

Key facts

Release date

Source:OpenRouter public model & pricing listingT2observed 13 h agomedium

Openrouter id

Source:OpenRouter public model & pricing listingT2observed 13 h agomedium

Architecture

Hugging Face repo

Source:OpenRouter public model & pricing listingT2observed 13 h agomedium

Capabilities

Modalities

Modalities
imagetext
Input
imagetext
Output
text

Capabilities

  • Tool calling

    No

    OpenRouter public model & pricing listing · T2

  • Structured output

    Yes

    OpenRouter public model & pricing listing · T2

  • Reasoning

    Yes

    OpenRouter public model & pricing listing · T2

  • Vision

    Yes

    OpenRouter public model & pricing listing · T2

  • Audio

    Unavailable

  • Fine-tuning available

    Unavailable

Context window

Source:OpenRouter public model & pricing listingT2observed 13 h agomedium

Max output

Source:OpenRouter public model & pricing listingT2observed 13 h agomedium

Provider deployments, cheapest output first
ProviderContextInput / 1MOutput / 1MStatusObservedSource
NVIDIA NIM / build.nvidia.comcheapest outputnvidia/nemotron-3.5-content-safety:free128Kout 8.19Kactive4 h agosince 11 Sept 2026openrouter.aiT2
OpenRouternvidia/nemotron-3.5-content-safety:free128Kout 8.19Kactive3 min agosince 12 Sept 2026openrouter.aiT2
NVIDIA NIM / build.nvidia.comnvidia/nemotron-3.5-content-safety131.1Kout 118Kactive4 h agosince 11 Sept 2026openrouter.aiT2
OpenRouternvidia/nemotron-3.5-content-safety131.1Kout 118Kactive3 min agosince 12 Sept 2026openrouter.aiT2

USD per 1M tokens as published by each provider; native units (per-request fees, flex/priority tiers) are kept verbatim. Rows are append-only — every price change is kept in the history below. Cost of a workload →

Price history

Step lines per provider; amber markers are recorded changes. Click a marker or a row for the evidence behind that price.

Output price · USD / 1M tokens 2 providers

Output price history of Nemotron 3.5 Content Safety$0$0.05$0.10$0.15$0.20$0.25Sept 26Sept 26Sept 26Sept 26Sept 26NVIDIA NIM / build.nvidia.com: first observed → $0.20 · 11 Sept 2026NVIDIA NIM / build.nvidia.com: $0.20 → $0 · 11 Sept 2026OpenRouter: first observed → $0.20 · 12 Sept 2026OpenRouter: $0.20 → $0 · 12 Sept 2026
  • NVIDIA NIM / build.nvidia.com
  • OpenRouter
  • OpenRouter$0.20$012 Sept 2026
  • OpenRouterfirst observed $0.2012 Sept 2026
  • NVIDIA NIM / build.nvidia.com$0.20$011 Sept 2026
  • NVIDIA NIM / build.nvidia.comfirst observed $0.2011 Sept 2026

Input price · USD / 1M tokens 2 providers

Input price history of Nemotron 3.5 Content Safety$0$0.05$0.10$0.15$0.20$0.25Sept 26Sept 26Sept 26Sept 26Sept 26NVIDIA NIM / build.nvidia.com: first observed → $0.20 · 11 Sept 2026NVIDIA NIM / build.nvidia.com: $0.20 → $0 · 11 Sept 2026OpenRouter: first observed → $0.20 · 12 Sept 2026OpenRouter: $0.20 → $0 · 12 Sept 2026
  • NVIDIA NIM / build.nvidia.com
  • OpenRouter
  • OpenRouter$0.20$012 Sept 2026
  • OpenRouterfirst observed $0.2012 Sept 2026
  • NVIDIA NIM / build.nvidia.com$0.20$011 Sept 2026
  • NVIDIA NIM / build.nvidia.comfirst observed $0.2011 Sept 2026

Versions & Artifacts0

Version history

Context windowfirst observation only

11 Sept 2026current

Max outputfirst observation only

11 Sept 2026current

Opennessfirst observation only

12 Sept 2026current

Each hop is a claim: click a value for its source, tier and observation time. Nothing is overwritten — a new observation closes the previous claim.

Artifacts 0

No artifact (checkpoint, quantisation, conversion or packaging) points to this model yet.

Change history

Temporal, append-only claims: a new observation closes the previous claim instead of overwriting it. Rewind the record with the as-of picker.
1 claims · 1 propertiesShow all properties

Weights availableweights_available1

Claim history for Weights available
ValueValid from → toStatusSourceConfidenceExtractor
YescurrentcurrentAI Atlas curated registry (YAML, versioned in git, every entry carries its source URL)T2highderived

Claims are temporal and append-only: a new observation closes the previous claim (valid_to) instead of overwriting it. Conflicting claims from different sources are kept side by side and flagged — never averaged. Methodology →

Provenance

Attributed facts

18

Source tiers

T218

Freshest observation

4 h ago

Conflicts

None

Source documents 1

Source documents
SourceDocumentTypeTierLast observedSnapshots
OpenRouter public model & pricing listingopenrouter.ai/api/v1/models catalogueT2· Quality secondary3 min ago11

Tier 1 = official/primary, 2 = quality secondary, 3 = community, 4 = unverified. Every snapshot is archived; see all sources and the methodology.

Data quality (56/100) measures how well AI Atlas knows this entity — completeness, primary-source ratio, freshness, conflicts — never how good the model is. Methodology →