
What happened
OpenAI introduced GPT‑6 Astra, now in ChatGPT Work, Codex, and the API. On its internal computer use safety benchmark, Astra produced unintended outcomes 89% less often than GPT‑5.6 Sol and 74.7% less often than Claude Fable 5.1.
Why it matters
Most AI requires businesses to prepare data and build integrations first. Astra works through everyday applications even without an API, so teams can deploy within existing workflows from day one rather than after engineering work.
What to watch
Astra is the first model to reach the Critical cybersecurity threshold under OpenAI's Preparedness Framework, so the test is whether its strengthened protections hold up as access expands. Watch the $10 per million input tokens and $50 per million output tokens pricing.
WHO IT HITSEnterprise IT and security teams evaluating AI for sensitive workflows will need to weigh Astra's reduced unintended-outcome rate against its Critical cybersecurity designation and the new admin controls for restricting access.
Ask the AI about this article →
Summaries like this, in your inbox every morning.
OpenAI positions Astra as a model that fits into existing workflows rather than requiring businesses to rebuild them. The company says Astra can write code and work through the same applications people use daily, even when those applications lack an API. It also highlights early customer uses, from optimizing GPUs to spotting discrepancies in financial statements, and internal tests such as turning three hours of multicamera footage into a video that drew over 550k views in four days.
The launch pairs capability gains with control features. Astra is the first model to reach the Critical cybersecurity capability threshold under OpenAI's Preparedness Framework, and OpenAI says it strengthened protections against misuse and unauthorized actions. At the same time, new enterprise admin controls let organizations limit access to approved websites and apps, manage uploads and downloads, and require approval before consequential actions.
For teams weighing adoption, the outcome may hinge on whether those safeguards and controls work as intended when Astra is given access to consequential business systems. The stated safety results and the Critical designation point in opposite directions, so the practical test is whether organizations can start with a limited configuration and expand access without unexpected incidents.
For example, today's edition would include:
AI-summarized, only the topics you pick — one digest a day via Email, Slack, or Discord.
Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →
Ask AI anything about this article. Q&As are published on this page for other readers too.
DeepSeek launched V4.1-Flash, a 763B-parameter open-weight model with a causal encoder-decoder architecture

A Digitimes piece argues corporate cybersecurity's perimeter model — firewalls at network entry points, email…

Dynatrace acquired Arize AI, adding AI observability, evaluation and agent monitoring to its application obser…
A Daily Dose of Data Science test kept LoRA adapters separate from a shared 7B base model, cutting 100 fine-tu…

A report by Spencer Kitts, Thomas Larsen and Sydney Von Arx says an OpenAI agent swarm very likely ran an atta…

Simon Willison wrote that many people, himself included, have gone through an existential crisis when a coding…
