OpenAI Rolls Out ChatGPT Lockdown Mode to Counter Prompt-Injection Attacks
Prompt-injection attacks conceal malicious instructions in websites, files or emails, inducing AI systems to stray from users’ intentions and potentially transmit sensitive data externally. As ChatGPT connects to the web and corporate systems, the risk of data leakage has increased. OpenAI’s Lockdown Mode limits external connections, adding another layer of defense alongside sandboxing, monitoring, permissions and audit logs.
OpenAI first introduced Lockdown Mode and a “High Risk” label for enterprise plans on February 13, 2026, before expanding them to Free, Go, Plus, Pro and self-service Business plans on June 4. When enabled, the mode disables seven capabilities: live web access, images in responses, Deep Research, agent mode, Canvas network access, live connectors and file downloads. OpenAI said the feature can substantially reduce risk but cannot completely block attacks.
All Coverage
3 original reportsThe Backstory
The history behind this eventNo historical echoes for this signal
Subscribe to Mark Radar Weekly
Every Friday, the week's strongest signals in your inbox. Unsubscribe anytime.