OpenAI announced textGrain, a text-watermarking system that embeds an invisible statistical signal through subtle changes in word selection, to support the EU AI Act’s machine-readable identification requirements for AI-generated text. Watermarking is available globally as an opt-in for supported API models and remains disabled by default; OpenAI plans to automatically watermark eligible ChatGPT and Codex outputs in the European Union over the following weeks. The initiative extends the company’s broader content-provenance work, complementing existing image and audio tools.
Detection improves with passage length but is less reliable for short or constrained content, including source code, and deteriorates substantially after editing. OpenAI reported no meaningful degradation in coding benchmark performance, but did not specify code-detection rates or the scope of eligible Codex output. Detector access will initially be limited to approved researchers and expert organizations, rather than automatically provided to API customers. For security and compliance teams, watermarks should be treated as a limited provenance signal—not proof of accuracy, ownership, user identity, or human contribution—and their absence does not establish human authorship.

See the reporting duties and controls this puts on the clock.
5 events from the most recent confirmed update back to the earliest known activity.
OpenAI announced textGrain and made text watermarking available globally as an off-by-default option for supported API models, while announcing a phased rollout for eligible ChatGPT and Codex outputs in the European Union. It also opened applications for restricted detector access and published evaluations showing that detection weakens for shorter, constrained, or edited text.
OpenAI extended its use of Google's SynthID watermarking to supported audio.
OpenAI added Google's SynthID watermarks to supported images, providing an invisible provenance signal alongside image metadata.
OpenAI began adding C2PA-based Content Credentials to generated images to record their origin and history.
Anthropic announced watermarking for supported Claude models in August, saying it would apply the technology globally because it lacked a reliable regional restriction mechanism. The watermark applies across supported Claude products and interfaces, including its API and Claude Code.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See what this changes for your reporting obligations and which controls it puts on the clock.
4 references tracked. Mallory keeps watching after this page renders.
thenewstack.io
Open sourceopenai.com
Open sourceopenai.com
Open sourceopenai.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.