09/09/2026 | News release | Distributed by Public on 09/09/2026 15:59
Giving AI access to business systems requires confidence in how it will act. With this in mind, Astra is our most aligned model yet, with stronger adherence to human intent and authorization.
During training, we tested Astra on our internal computer use safety benchmark which tests models against the hardest business scenarios such as exposing confidential information, sharing a dashboard too broadly, or deleting data. In this evaluation, Astra produced unintended outcomes 89% less often than GPT-5.6 Sol and 74.7% less often than Claude Fable 5.1. Additional confirmation and automated review further improved performance for GPT-6 Astra and GPT-5.6 Sol.
Organizations can also decide how broadly to deploy Astra. New enterprise admin controls let them restrict access to approved websites and desktop applications, manage uploads and downloads, and control browsing history. ChatGPT Work and Codex also include safeguards such as confirmation policies, which can require approval before consequential actions, and automated review of potentially unsafe or unauthorized tool calls. These controls allow teams to start with a limited configuration and expand access over time.
To further access, alongside Astra, we're also launching new enterprise plugins in ChatGPT Desktop. Powered by the latest browser use capabilities, plugins from Oracle Analytics, Power BI (a Microsoft Fabric service), Navan, and Avalara make it easier to access familiar enterprise applications.
Astra (opens in a new window) is also the first model to reach the Critical cybersecurity capability threshold under our Preparedness Framework . With that increased capability, we've strengthened protections (opens in a new window) against both misuse and the model taking unauthorized actions including training Astra to respect safety and security boundaries, improving its resistance to attempts to bypass safeguards, and deploying automated checks designed to block harmful responses.
Zero Data Retention is available for eligible API customers on supported endpoints, subject to approval.