product updateOpenAI

OpenAI rolls out ChatGPT Lockdown mode to all users to block prompt injection data theft

TL;DR

OpenAI has expanded Lockdown mode to all ChatGPT plan tiers, including Free, Go, Plus, Pro, and Business users. The security feature blocks outbound network requests to prevent prompt injection attacks from stealing sensitive data, but disables live web browsing, Deep Research, and Agent mode.

2 min read
0

OpenAI Rolls Out Lockdown Mode to All ChatGPT Users

OpenAI has expanded its Lockdown mode security feature to all ChatGPT users across Free, Go, Plus, Pro, and Business plans, according to ZDNET. The optional setting, which launched in February 2025 for Enterprise, Edu, Healthcare, and Teachers plans, aims to protect users from data theft through prompt injection attacks.

How Lockdown Mode Works

Lockdown mode blocks outbound network requests to the internet and external file services to prevent attackers from exfiltrating sensitive information through malicious prompts. The feature does not prevent prompt injection attacks themselves—attackers can still inject malicious commands that access cached web content or uploaded files.

What Gets Disabled

When enabled, Lockdown mode restricts the following capabilities:

  • Live web browsing: ChatGPT can only access cached content, making search results potentially outdated or unavailable
  • Web image retrieval: The model cannot display or retrieve images from the live web, though users can still upload images and request image generation
  • Deep Research: The feature is completely disabled
  • Agent mode: Unavailable in Lockdown mode
  • Canvas networking: Code generated through Canvas cannot access network resources
  • File downloads: ChatGPT cannot download files for analysis, but can still process uploaded files

Target Use Case

According to the report, Lockdown mode is designed for individuals and organizations handling sensitive or confidential information requiring additional security layers. The feature trades functionality for security by preventing live data connections that could be exploited by prompt injection attacks.

Availability and Activation

The feature is rolling out gradually across all ChatGPT accounts. Users can enable it through Settings > Security > Advanced Security > Lockdown Mode. A warning message explains the restrictions before activation.

What This Means

Lockdown mode represents a defensive approach to prompt injection rather than a solution. By cutting off live network access, OpenAI acknowledges that the underlying vulnerability—the ability to inject malicious instructions into prompts—remains unsolved. Organizations working with highly sensitive data now have a protection option, but at the cost of ChatGPT's web-connected capabilities. The tradeoff reveals the security challenges inherent in AI systems that blend user instructions with dynamic external data sources.

Related Articles

product update

OpenAI launches Lockdown Mode to block prompt injection data exfiltration attacks

OpenAI has released Lockdown Mode, an optional security setting that protects against prompt injection attacks by limiting network requests and image fetching in ChatGPT. The feature is designed for users handling sensitive data and disables some ChatGPT capabilities including Deep Research and Agent Mode.

product update

OpenAI's ChatGPT Memory V3 now profiles users across all conversations, raises accuracy and privacy concerns

OpenAI has deployed Dreaming V3, a background memory synthesis system that builds comprehensive user profiles from chat history. The company reports factual task recall jumped from 41% in 2024 to 82% in 2026, while reducing compute costs by 5X. However, testing reveals the system stores outdated and incorrect information that persists even when users disable memory features.

product update

OpenAI plans ChatGPT redesign to integrate coding tools, image generation, and third-party apps

OpenAI will roll out a redesigned ChatGPT interface in the coming weeks that integrates coding tools, image generation capabilities, and third-party applications from partners including Canva and Booking.com. The overhaul, first reported by The Financial Times, aims to shift users from simple chat interactions to multi-task workflows, particularly targeting enterprise customers.

product update

OpenAI upgrades ChatGPT memory architecture with automatic 'dreaming' synthesis, now available to free users

OpenAI is rolling out a new memory architecture for ChatGPT that automatically synthesizes information across conversations without explicit user prompts. The company announced free tier users will access memory features for the first time, while Plus and Pro users receive expanded memory capacity.

Comments

Loading...