// AI NEWS · PLATFORM

OpenAI Will Start Watermarking ChatGPT and Codex Text in the EU to Meet the AI Act

Announced October 5, 2026, OpenAI will add an invisible statistical watermark — called textGrain — to text generated by ChatGPT and Codex for EU users, and offer it as an opt-in setting to API developers worldwide, to satisfy the EU AI Act’s transparency rules.

2026-10-05 · by Moe Ameen

What happened

OpenAI announced on October 5, 2026 that it will begin adding an invisible watermark to text generated by ChatGPT and Codex, starting with users in the European Union. The company published a technical report for the method, which it calls textGrain, alongside the announcement. The rollout reaches eligible ChatGPT and Codex users on all plans over the coming weeks, but only in the EU. Separately, developers using OpenAI’s API anywhere in the world can turn the watermark on for select models starting the same day — it is off by default.

The mark is not a visible symbol. textGrain works by subtly shaping the model’s word choices as it writes, using a secret key to sort next-word predictions across many small nudges, leaving a statistical pattern a reader cannot see but a detector can pick up. Because the signal lives in the words themselves rather than in file metadata, it travels with the text when it is copied and pasted. The technical report was co-written with researchers from the University of Pennsylvania and Yale, and OpenAI says it plans to release textGrain as open source.

The driver is regulation. The EU AI Act’s transparency rules, which took effect on August 2, 2026 under Article 50, require providers of generative AI to mark machine-generated content in a way other systems can identify. OpenAI opened applications for access to its text-watermark detector, which will initially be limited to approved researchers and expert organizations while the company evaluates and improves the technology.

OpenAI was candid about the limits. Editing erodes the signal: in its own testing, replacing about 10% of the words with synonyms dropped detection from roughly 92% to 66%, and replacing 25% dropped it to 17%. Short passages, math answers, and translated text are harder to detect, and the detector produces both false positives and false negatives, especially on shorter texts or specialized domains like mathematics. The company stresses that the watermark does not measure how much a human contributed, establish ownership, identify a user, or verify accuracy — and that the absence of a detected mark does not prove a human wrote something. Treat the specific figures here as launch-window numbers and confirm details against OpenAI’s own documentation.

Why it matters for creators

  • It is text, not just media. Most watermarking news so far has been about AI images, video, and audio; this puts an invisible, copy-paste-surviving signal into the captions, scripts, blog drafts, and newsletters creators run through ChatGPT.
  • It is EU-first, but the direction is universal. The consumer mark is EU-only for now, yet the API toggle is global and the EU AI Act is pushing every major provider the same way — so "no one can tell it is AI" is becoming a weaker bet everywhere, not just in Europe.
  • Editing weakens it, which cuts both ways. Light copy-paste keeps the signal; a heavy rewrite or a translation can erase it. That makes the mark unreliable as a pass/fail "is this AI" test — and means an absent mark proves nothing about who wrote a piece.
  • Detection is gated. The detector is limited to approved researchers and expert organizations at launch, so creators cannot self-check their own text yet — the practical takeaway is to plan disclosure, not to try to audit the mark.
  • It raises the premium on distinctiveness. When provenance signals are everywhere, the durable edge is work that is clearly in your voice and actually reaches an audience — not content engineered to dodge a detector.

How to act on this with Kompozy

There is a fast, high-intent play while this is fresh. "OpenAI is watermarking ChatGPT text — what does it actually mean?" is a question people are searching this week, and most quick recaps blur the detail that matters: the mark is EU-first, it degrades under editing, and the detector is not open to the public. Drop your own clear take into [Kompozy](/) as a source and the engine turns one explainer into a week of coverage in a single pass — a [Blog Article](/glossary/output-buckets) for searchers, a [Carousel](/glossary/hyperframes) that lays out what changes for anyone drafting with AI, a captioned [Persona Short](/glossary/persona-shorts) that explains textGrain to camera, and native text posts — then [Autopilot](/glossary/autopilot) schedules and publishes them across the eight social platforms plus blog and email before the news cools.

The longer game matters more than the recap. As text watermarking spreads from ChatGPT to the rest of the field, the differentiator stops being whether AI touched your copy and becomes whether that copy is distinctive and gets in front of people. That is the job Kompozy is built for: the [Persona Brief](/glossary/persona-brief) governs voice and banned phrases so output reads like you rather than median-prompt AI, and the per-post review gate is where you set a consistent AI-disclosure line once instead of policing it tool by tool. One honest note, because it is the point rather than a loophole: Kompozy generates copy with OpenAI alongside Claude, so text produced through a watermark-enabled model can carry the same signal — the aim is a clean, disclosed body of on-brand work, not a way to strip the mark. For the taxonomy behind all of this, see the glossary on [AI text watermarking](/glossary/ai-text-watermarking).

Quick takeaways

  • On October 5, 2026, OpenAI announced textGrain, an invisible text watermark for ChatGPT and Codex output, rolling out to EU users on all plans over the coming weeks.
  • API developers worldwide can enable the watermark for select models from day one; it is off by default. The ChatGPT/Codex consumer mark is EU-only for now.
  • textGrain shapes the model’s word choices with a secret key, so the signal lives in the text and survives copy-paste; the report was co-authored with University of Pennsylvania and Yale researchers, and OpenAI plans to open-source it.
  • It responds to the EU AI Act’s Article 50 transparency rules, effective August 2, 2026. The detector is limited at launch to approved researchers and expert organizations.
  • It is fragile: replacing ~10% of words cut detection from ~92% to 66% (25% cut it to 17%), short/math/translated text is harder, and a missing mark does not prove human authorship.

Frequently asked questions

What is OpenAI’s ChatGPT text watermark?

It is an invisible statistical mark, called textGrain, that OpenAI announced on October 5, 2026. It subtly shapes the model’s word choices using a secret key so that ChatGPT and Codex output carries a pattern a reader cannot see but a detector can identify. Because the signal is in the words, it survives copy-paste. It is rolling out to EU users first and is available as an opt-in API setting worldwide.

Is the watermark only for EU users?

For ChatGPT and Codex, yes — at launch the consumer watermark is being added only for eligible users in the European Union, on all plans, to meet the EU AI Act’s transparency rules. Developers using OpenAI’s API can turn it on for select models anywhere in the world, but it is off by default. OpenAI has not committed to a specific global consumer rollout date.

Can the ChatGPT text watermark be removed?

Editing weakens it. In OpenAI’s own testing, replacing about 10% of the words with synonyms dropped detection from roughly 92% to 66%, and replacing 25% dropped it to 17%; short passages, math answers, and translated text are also harder to detect. That fragility cuts both ways — because a heavy rewrite can erase the signal, an absent mark does not prove a human wrote the text.

Does the watermark prove a human did not write something?

No. OpenAI is explicit that the watermark does not measure human contribution, establish ownership, identify a user, or verify accuracy, and that a missing mark is not evidence of human authorship. The detector also produces false positives and false negatives, especially on short or specialized text, so it should never be the sole basis for a moderation or academic-integrity decision.

Related news

← All AI news · Get started →