OpenAI Help: Lockdown Mode
Summary
OpenAI has released Lockdown Mode, a security feature that prevents the final stage of data exfiltration (stealing and sending sensitive information) from prompt injection attacks (tricking an AI by hiding malicious instructions in its input) by blocking outbound network requests. However, Lockdown Mode does not stop prompt injections from appearing in the content ChatGPT processes, meaning attackers can still manipulate the AI's responses through cached web content or uploaded files.
Solution / Mitigation
Enable Lockdown Mode, which is rolling out to eligible personal accounts (Free, Go, Plus, and Pro tiers) and self-serve ChatGPT Business accounts. According to the source, Lockdown Mode uses deterministic mechanisms (fixed, rule-based processes) to restrict exfiltration vectors, rather than relying on AI systems to detect attacks.
Classification
Affected Vendors
Related Issues
Original source: https://simonwillison.net/2026/Jun/5/openai-help-lockdown-mode/#atom-everything
First tracked: June 6, 2026 at 02:00 AM
Classified by LLM (prompt v3) · confidence: 92%