GadgetBond

  • Latest
  • How-to
  • Tech
    • AI
    • Amazon
    • Apple
    • CES
    • Computing
    • Creators
    • Google
    • Meta
    • Microsoft
    • Mobile
    • Samsung
    • Security
    • Xbox
  • Transportation
    • Audi
    • BMW
    • Cadillac
    • E-Bike
    • Ferrari
    • Ford
    • Honda Prelude
    • Lamborghini
    • McLaren W1
    • Mercedes
    • Porsche
    • Rivian
    • Tesla
  • Culture
    • Apple TV
    • Disney
    • Gaming
    • Hulu
    • Marvel
    • HBO Max
    • Netflix
    • Paramount
    • SHOWTIME
    • Star Wars
    • Streaming
Add GadgetBond as a preferred source to see more of our stories on Google.
Font ResizerAa
GadgetBondGadgetBond
  • Latest
  • Tech
  • AI
  • Deals
  • How-to
  • Apps
  • Mobile
  • Gaming
  • Streaming
  • Transportation
Search
  • Latest
  • Deals
  • How-to
  • Tech
    • Amazon
    • Apple
    • CES
    • Computing
    • Creators
    • Google
    • Meta
    • Microsoft
    • Mobile
    • Samsung
    • Security
    • Xbox
  • AI
    • Anthropic
    • ChatGPT
    • ChatGPT Atlas
    • Gemini AI (formerly Bard)
    • Google DeepMind
    • Grok AI
    • Meta AI
    • Microsoft Copilot
    • OpenAI
    • Perplexity
    • xAI
  • Transportation
    • Audi
    • BMW
    • Cadillac
    • E-Bike
    • Ferrari
    • Ford
    • Honda Prelude
    • Lamborghini
    • McLaren W1
    • Mercedes
    • Porsche
    • Rivian
    • Tesla
  • Culture
    • Apple TV
    • Disney
    • Gaming
    • Hulu
    • Marvel
    • HBO Max
    • Netflix
    • Paramount
    • SHOWTIME
    • Star Wars
    • Streaming
Follow US
AIOpenAISecurityTech

OpenAI kills passwords for ChatGPT with new Advanced Account Security

OpenAI's Advanced Account Security also covers Codex users.

By
Shubham Sawarkar
Shubham Sawarkar's avatar
ByShubham Sawarkar
Editor-in-Chief
I’m a tech enthusiast who loves exploring gadgets, trends, and innovations. With certifications in CISCO Routing & Switching and Windows Server Administration, I bring a sharp...
Follow:
- Editor-in-Chief
May 2, 2026, 2:48 AM EDT
Share
We may get a commission from retail offers. Learn more
ChatGPT logo and wordmark in white on a soft blue and orange gradient background, representing OpenAI’s ChatGPT platform.
Image: OpenAI
SHARE

OpenAI just took a significant step toward protecting its growing user base from one of the most persistent threats in digital security – account takeover. On April 30, 2026, the company officially launched Advanced Account Security (AAS), a new opt-in feature for ChatGPT accounts that essentially throws passwords in the trash and replaces them with something far harder to beat.

The timing makes sense. ChatGPT has evolved from a curious experiment into a tool millions of people rely on for sensitive work – think legal research, medical queries, confidential business strategy, and personal matters that you probably wouldn’t want a stranger reading through. An account can now hold months or years of deeply personal conversations and connect to third-party workflows, making it a juicy target for attackers. OpenAI knows this, and AAS is its answer.

At its core, Advanced Account Security swaps out traditional password-based login for passkeys or physical security keys, making the entire sign-in process phishing-resistant by design. Phishing – where an attacker tricks you into entering your credentials on a fake login page – is one of the oldest and most effective attacks in the book, and it works specifically because passwords can be stolen and replayed. With passkeys and hardware security keys, there’s no password to steal. The cryptographic handshake happens between your device and the server, and there’s nothing for a fake website to capture.

One of the more notable changes is what happens to account recovery. Most people don’t think about recovery options until they’re locked out, but those same recovery paths – email and SMS – are also the ones attackers love to exploit. A compromised email account or a SIM swap attack can let someone bypass everything else and reset their way into your ChatGPT. AAS closes that door entirely: email and SMS recovery are disabled, and only backup passkeys, physical security keys, or recovery keys can be used to get back in. The trade-off is real – OpenAI’s own support team won’t be able to help you recover your account if you lose access. If you lose both your security key and your recovery key, your account and its conversation history are gone. That’s a meaningful responsibility shift, and OpenAI is upfront about it.

Sessions also get tighter. Under AAS, sign-in sessions are intentionally shortened so that even if your device is compromised or a session token is stolen, the window of exposure is much smaller. Users also get instant alerts when a new login happens, and they can review and manage all active sessions across every device they’re signed into. It’s the kind of transparency that’s standard in banking apps but has been slow to arrive in AI platforms.

There’s also a privacy angle that many users will appreciate. AAS automatically excludes your conversations from being used to train OpenAI’s models. Previously, users had to manually opt out of that setting. For anyone doing sensitive professional work inside ChatGPT – lawyers, doctors, security researchers, journalists – having that automatically locked in is a meaningful reassurance.

The feature also extends protection to Codex, OpenAI’s AI-powered coding tool. That matters because Codex users often work with proprietary code, unreleased projects, and sensitive software infrastructure. Protecting those accounts with the same level of security as a ChatGPT consumer account is a straightforward call, but it’s worth noting that OpenAI is thinking about its developer ecosystem as part of this security push, not just casual users.

To make the shift to hardware-based authentication less of a barrier, OpenAI has partnered with Yubico – the company behind YubiKeys – to offer users a co-branded bundle of two security keys. The bundle includes the YubiKey C Nano, which is designed to sit inside your laptop’s USB-C port and stay there for everyday authentication, and the YubiKey C NFC, which works for backup use across laptops and mobile devices. The two-key bundle is priced at $68, and it’s available to all eligible users through the security settings on the web – not just AAS enrollees. Yubico CEO Jerrod Chong put it directly: “Ultimately, our intent is to drastically reduce the threat of unauthorized access to sensitive data in OpenAI accounts worldwide.” Users can also bring their own FIDO-compliant security key from any other vendor, or stick with software-based passkeys if they prefer a hardware-free setup.

The feature is particularly aimed at what OpenAI describes as “high-risk” users – journalists, elected officials, political dissidents, and researchers who are more likely to be targeted by nation-state actors or sophisticated attackers. But “high-risk” is a relative term. In 2025 and 2026, a growing number of professionals fall into this category simply because of the work they do. The feature being available to everyone, including free-tier accounts, is a smart move – it normalizes stronger authentication rather than treating it as a premium perk.

AAS is also getting a mandatory rollout within OpenAI’s Trusted Access for Cyber program. Starting June 1, 2026, individual members of this program who access OpenAI’s most advanced and permissive cyber-capable models will be required to have AAS enabled. Organizations can alternatively attest that their single sign-on workflows already include phishing-resistant authentication. This signals OpenAI’s recognition that stronger security isn’t optional when the models in question are powerful enough to be used in national security contexts.

It’s worth noting that this isn’t entirely new territory in the tech industry. Google has offered a similar Advanced Protection Program for Gmail and Google accounts for nearly a decade, and it uses essentially the same playbook – physical security keys, restricted account recovery, and tighter session management. That OpenAI is now building something comparable reflects how seriously it’s taking its role as core AI infrastructure, as the company itself described it. When you’re the platform that businesses, governments, and individuals are building critical workflows on top of, the accountability for security goes up significantly.

OpenAI has made clear that this is just the beginning. The company says it plans to extend Advanced Account Security to enterprise environments as well – where the stakes for a single compromised account can cascade across an entire organization. For now, anyone who wants to enroll can do so through the Security section of their ChatGPT account on the web, starting today.


Discover more from GadgetBond

Subscribe to get the latest posts sent to your email.

Topic:ChatGPTOpenAI Codex
Leave a Comment

Leave a ReplyCancel reply

Most Popular

Xbox Game Pass explained: plans, perks, and play

What is cloud gaming?

The real purpose of Microsoft PC Manager

Universal is re-releasing The Fast and the Furious for its 25th anniversary

Apple removes many menu icons in macOS 27

Apple’s subscription overhaul brings bundles, group plans, and retention

The next Xbox could arrive with a new business model

Apple keeps Siri out of the AI girlfriend business

New to PlayStation Plus? Here’s how the service really works

What is Xbox Cloud Gaming and how does it work?

Also Read
Soccer player Antonee Robinson stands backstage at a sporting event wearing a black team jacket and an accreditation badge while using a pair of unreleased over-ear Beats headphones. The headphones feature a white exterior with dark blue ear cushions and a minimalist Beats logo on the ear cup. Other team members wearing wireless earbuds can be seen in the background as the group prepares to enter the venue.

The new Beats headphones, Antonee Robinson just teased on his way to the World Cup

Promotional banner for Xbox Game Pass Ultimate showcasing a lineup of popular games across multiple genres. The artwork features an anime-style character, an American football player, an adventurer in a fedora, a futuristic armored soldier, and a block-based fantasy game scene. The Xbox logo and "Game Pass Ultimate" branding are displayed prominently in the center, emphasizing access to a wide catalog of console, PC, and cloud gaming titles through a single subscription.

Xbox Game Pass Ultimate: pricing, perks, and how it all fits together

Promotional artwork for PC Game Pass featuring a collage of game characters and worlds. The image includes a red-eyed fantasy character, a tactical soldier, an adventurer wearing a fedora, and a mythological bearded figure with glowing eyes. The Xbox logo and "PC Game Pass" branding appear across the center, highlighting a diverse library of action, adventure, strategy, and role-playing games available through the subscription service.

PC Game Pass in 2026: library, limits, and the new price cut

Promotional Xbox gaming image with the slogan “Play the Way You Want” displayed in large green text at the center. Surrounding the message are multiple gaming devices, including an Xbox console and controller, a gaming handheld, a laptop, a smartphone, and a TV, all showing Xbox games and the Xbox app interface. The artwork highlights Xbox Cloud Gaming and Game Pass, emphasizing the ability to play across console, PC, handheld, mobile, and streaming devices from a single gaming ecosystem.

Xbox Game Pass Premium: the middle tier that might be just right

Xbox Game Pass key art

Xbox Game Pass Essential: who it’s for, what it includes, what it skips

Promotional image for Amazon Luna cloud gaming featuring the Luna logo on a purple gradient background. Multiple devices, including a smart TV, desktop monitor, laptop, tablet, and smartphone, display the same racing game scene with Sonic the Hedgehog and other characters. An Amazon Luna wireless controller is positioned in front of the screens, illustrating seamless game streaming across different devices through Amazon’s cloud gaming platform.

How Amazon Luna works and who it is for

Promotional image for NVIDIA GeForce NOW cloud gaming showcasing games streamed across multiple devices. Large displays feature Pragmata and Counter-Strike 2, while laptops, a handheld gaming device, smartphone, VR headset, racing wheel, and flight simulator controls are arranged on illuminated black platforms. The dark futuristic background with NVIDIA-green wave patterns emphasizes GeForce NOW’s ability to play high-end PC games across screens and gaming hardware through cloud streaming.

What GeForce Now gets right about cloud gaming

Promotional image showcasing a dedicated Siri app experience across Apple devices, including Apple Vision Pro, MacBook, iPad, iPhone, and Apple Watch. The Siri interface displays a conversational AI response about Bosque de Chapultepec, with rich content cards, images, and contextual information synchronized across screens. The MacBook and iPad feature a standalone Siri app layout with suggested topics and search results, while the iPhone and Apple Watch present the same conversation in a mobile-friendly format. The image highlights Apple’s cross-device AI assistant experience, enabling seamless search, knowledge discovery, and contextual interactions throughout the Apple ecosystem.

Siri AI lands in a dedicated app across iPhone, iPad, and Mac

Company Info
  • Homepage
  • Support my work
  • Latest stories
  • Company updates
  • GDB Recommends
  • Daily newsletters
  • About us
  • Contact us
  • Write for us
  • Editorial guidelines
Legal
  • Privacy Policy
  • Cookies Policy
  • Terms & Conditions
  • DMCA
  • Disclaimer
  • Accessibility Policy
  • Security Policy
  • Do Not Sell or Share My Personal Information
Socials
Follow US

Disclosure: We love the products we feature and hope you’ll love them too. If you purchase through a link on our site, we may receive compensation at no additional cost to you. Read our ethics statement. Please note that pricing and availability are subject to change.

Copyright © 2026 GadgetBond. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | Do Not Sell/Share My Personal Information.