# OpenAI 推出鎖定模式以防範提示注入攻擊。

*genai · news · 2026-06-07 · The Economic Times*

## Key points

- OpenAI 推出鎖定模式，專門針對處理敏感資料者的提示注入攻擊緩解。
- 鎖定模式停用即時網頁瀏覽及網路圖片擷取，只允許存取快取內容。
- 啟用鎖定模式時，深度研究與代理模式無法使用。
- 鎖定模式將陸續開放給免費、Go、Plus、Pro 及自助式 ChatGPT 商業帳戶。
- 鎖定模式與開發者模式無法同時啟用，啟用其中一項會停用另一項。

Synopsis OpenAI has launched Lockdown Mode to combat prompt injection attacks, a security feature designed for users handling sensitive data. This mode restricts live web browsing and image retrieval from the internet, aiming to prevent data exfiltration by limiting outbound network requests. It is available to eligible personal and business accounts. Listen to this article in summarized format OpenAI has introduced a new security feature called Lockdown Mode, aimed at reducing the risk of prompt injection attacks that can expose sensitive information. According to the company, the feature is not intended for all users. Instead, it is “designed for people and organizations that handle sensitive data and want stricter protection from data exfiltration risks related to prompt injection.” The feature works by limiting certain capabilities that could potentially be exploited by attackers. When enabled, Lockdown Mode disables live web browsing, meaning ChatGPT can only access cached web content. It also turns off the retrieval and display of images from the internet, although users can still generate images. Deep Research and Agent Mode are also unavailable while the setting is active. OpenAI said the feature is being rolled out to eligible personal accounts, including Free, Go, Plus and Pro users, as well as self-serve ChatGPT Business accounts. What is prompt injection? “Prompt injection is a type of social engineering attack specific to conversational AI,” according to OpenAI's website. “Prompt injections occur when a third-party — not the user nor the AI —misleads the model by injecting malicious instructions into the conversation context.” In simple terms, prompt injection is similar to phishing. Just as a scam email may try to trick a person into revealing sensitive information, a prompt injection attempts to manipulate an AI system into carrying out actions or revealing data it should not. OpenAI stressed that Lockdown Mode does not stop prompt injections from appearing in content processed by ChatGPT. “For example, a prompt injection could appear in cached web content or in an uploaded file, and could still affect the behaviour or accuracy of a response,” it said. The goal, instead, is to make it harder for sensitive information to be transferred to attackers by restricting outbound network requests. The company also noted that Lockdown Mode does not affect memory, file uploads, conversation sharing, or whether chats may be used to improve models. How to activate For eligible personal accounts and self-serve ChatGPT Business accounts: Go to Settings. Select Security. Under Advanced security, turn on Lockdown Mode. In the confirmation window, select Turn on. OpenAI said Lockdown Mode and Developer Mode cannot be used together. Enabling one automatically disables the other. When Lockdown Mode is active, a status message appears above the composer. Users can temporarily disable it for a specific chat through the Manage option or the more-options menu, and re-enable it later if needed. (Catch all the Technology News News, and Latest News Updates on The Economic Times.) ...more

**Companies:** OpenAI

[Read the full story on The Economic Times](https://economictimes.indiatimes.com/tech/artificial-intelligence/openai-rolls-out-lockdown-mode-for-users-handling-sensitive-information/articleshow/131566982.cms)

---

Canonical: https://newsio.io/zh-TW/n/236d2c9e-32ec-4eb6-98c0-3bb1ea882917/openai
Summarized by Newsio from The Economic Times. https://newsio.io/how-it-works
