{
 "license": "CC-BY-4.0",
 "attribution": "Fide AI, Agentic Cyber Explorer",
 "url": "https://agentic-cyber-explorer.pages.dev/events/openai-lockdown-mode-elevated-risk-2026/",
 "asOf": "2026-09-26",
 "id": "openai-lockdown-mode-elevated-risk-2026",
 "date": "2026-02-13",
 "datePrecision": "day",
 "title": "OpenAI adds Lockdown Mode and Elevated Risk labels to ChatGPT to limit prompt injection exfiltration",
 "lane": "defense",
 "kind": "tool-release",
 "summary": "OpenAI introduced Lockdown Mode, an optional setting that deterministically disables or limits capabilities an attacker could exploit through prompt injection, such as live web access, image support in responses, Deep Research, Agent Mode, live connectors and file downloads. Elevated Risk labels flag network-related features in ChatGPT, Atlas and Codex that carry extra risk. Lockdown Mode first launched for enterprise-type plans, and a June 4, 2026 update says it is rolling out to personal and self-serve Business accounts.",
 "whyItMatters": "A major vendor chose to offer capability removal, not only detection, as the stronger control for high-risk users.",
 "actors": [
  "openai"
 ],
 "topics": [
  "prompt-injection",
  "data-exfiltration",
  "access-controls"
 ],
 "atlas": [
  "tools",
  "untrusted-content"
 ],
 "artifacts": [],
 "sources": [
  {
   "url": "https://openai.com/index/introducing-lockdown-mode-and-elevated-risk-labels-in-chatgpt/",
   "publisher": "OpenAI",
   "title": "Introducing Lockdown Mode and Elevated Risk labels in ChatGPT",
   "date": "2026-02-13",
   "type": "primary",
   "accessed": "2026-09-25"
  },
  {
   "url": "https://www.helpnetsecurity.com/2026/02/16/chatgpt-lockdown-mode-elevated-risk/",
   "publisher": "Help Net Security",
   "title": "ChatGPT gets new security feature to fight prompt injection attacks",
   "date": "2026-02-16",
   "type": "secondary",
   "accessed": "2026-09-25"
  }
 ],
 "keyFacts": [
  {
   "fact": "Initial availability: ChatGPT Enterprise, Edu, ChatGPT for Healthcare and ChatGPT for Teachers; admins enable it in Workspace Settings by creating a role.",
   "locator": "OpenAI post, 'Helping organizations protect employees' section"
  },
  {
   "fact": "In Lockdown Mode, web browsing is limited to cached content so no live network requests leave OpenAI's network; features without strong deterministic data-safety guarantees are disabled.",
   "locator": "OpenAI post, 'Helping organizations protect employees' section"
  },
  {
   "fact": "A June 4, 2026 update says Lockdown Mode is rolling out to personal and self-serve ChatGPT Business accounts.",
   "locator": "OpenAI post, update note"
  }
 ],
 "significance": 3,
 "fideQuestions": [],
 "methods": [
  "agent-data-exfiltration",
  "capability-restriction",
  "indirect-prompt-injection"
 ],
 "review": "assistant-drafted",
 "addedOn": "2026-09-25"
}