OpenAI Introduces Text Watermarking for ChatGPT and Codex to Meet EU AI Act Requirements

11 Sources

Share

OpenAI announced it will add invisible watermarks to ChatGPT and Codex text outputs in the European Union using its textGrain technology. The move complies with EU AI Act transparency rules requiring machine-readable identification of AI-generated content, though the watermark can be weakened through editing.

News article

OpenAI Deploys Invisible Watermark for EU Compliance

OpenAI announced Monday it will begin adding an invisible watermark to text generated by ChatGPT and Codex for users in the European Union over the coming weeks

1

. The text watermarking initiative addresses the EU AI Act transparency rules that took effect on August 2, requiring AI companies to mark AI-generated content in a machine-readable way

1

. The watermark will apply to eligible ChatGPT and Codex users on all plans within the EU, while API developers worldwide can opt into the feature for select models starting today, though it remains off by default

1

3

. OpenAI stated it is not making text watermarking a global default at launch, taking a regional approach to learn from real-world use and feedback

3

.

How textGrain Technology Works

The watermark operates through OpenAI's proprietary textGrain system, which adds an invisible statistical signal to the model's word choices rather than inserting an actual visible symbol

4

5

. The system subtly shapes word selections, leaving a detectable pattern that readers cannot see but specialized detectors can identify

1

. Because the watermark lives within the words themselves, it travels with the text when copied and pasted

1

. OpenAI published a technical report co-written with researchers from the University of Pennsylvania and Yale, demonstrating how a secret key sorts next-word predictions to create hundreds of subtle nudges that detectors can spot using only the text and the key

1

. The company claims textGrain matched or exceeded other approaches like Google DeepMind's SynthID for text, which also serves as the basis for watermarking Anthropic announced in August

2

5

.

Detection Limitations and Editing Vulnerabilities

OpenAI acknowledges significant limitations in its watermarking technology. In tests of 400-token passages, replacing 10% of words with synonyms reduced detection rates from approximately 92% to 66%, while replacing 25% of words dropped detection to just 17%

4

. At a 1% false-positive target, OpenAI detected the watermark in about 80% of 200-token psychology responses, compared with roughly 95% when text reached 400 tokens

4

. The company admits that shorter passages, mathematics content, and translated text present particular detection challenges

1

4

. OpenAI cautioned that a missing watermark does not prove human authorship, as text could be too short, heavily edited, or generated by another company's AI

1

. The watermark does not identify the user, reveal prompts or conversations, or indicate how much human judgment, editing, or creativity contributed to the final work

1

4

.

Controlled Access to Detection Tools

Due to these limitations, OpenAI is restricting initial detector access to approved researchers and expert organizations who can evaluate reliability and responsible uses

1

4

. The company stated it will adapt its approach as evidence, standards, and regulatory requirements evolve, expanding detector access when results can be interpreted responsibly

3

. OpenAI emphasized that strong performance under ideal conditions does not guarantee reliable detection in everyday use

5

. The company plans to make the technology available in open source so others can refine it

5

.

Performance Impact and Industry Context

OpenAI reported seeing no meaningful change in its models' performance with watermarking enabled

1

. Across benchmarks used to assess GPT-6 Astra, the company observed no meaningful performance differences with and without watermarking

3

4

. The announcement follows Anthropic's decision two months earlier to watermark text generated by Claude globally, which drew backlash from users who argued they supplied the instructions, context, and decisions while Claude served merely as a tool

1

. OpenAI had previously built a text watermark but held off on releasing it, partly over concerns that users would switch to rivals without watermarking, The Wall Street Journal reported in 2024

1

. Article 50 of the EU AI Act mandates that providers of generative AI systems make text outputs identifiable in a machine-readable way, with pre-existing entities required to comply by December 2

5

. Anthropic, Google, Meta, Microsoft, and OpenAI are among companies committed to following the EU's code of practice on AI-generated content

1

.

Today's Top Stories

© 2026 TheOutpost.AI All rights reserved