OpenAI Introduces Advanced Account Security for High‑Risk Users
Enable Advanced Account Security for users at risk of digital attacks.
Enable Advanced Account Security for high‑risk users.
Summary
OpenAI has launched Advanced Account Security, an opt‑in setting that strengthens sign‑in protections for users at increased risk of digital attacks. The new feature requires passkeys or physical security keys, disabling password‑based login, and removes email and SMS recovery in favor of backup passkeys, security keys, and recovery keys. Sessions are shortened, and users receive alerts for new logins, while conversations from these accounts are automatically excluded from model training.
The rollout includes a partnership with Yubico, offering discounted YubiKey bundles to enable phishing‑resistant authentication. Trusted Access for Cyber members will be required to enable Advanced Account Security starting June 1, 2026, or they may attest to having phishing‑resistant authentication in their single sign‑on workflow. The feature is designed to protect high‑risk users such as journalists, elected officials, and researchers while maintaining strong account recovery controls.
Key changes
- Requires passkeys or physical security keys, disabling password login.
- Disables email and SMS recovery, using backup passkeys, security keys, and recovery keys.
- Shortens sessions and provides login alerts.
- Automatically excludes account conversations from model training.
- Yubico partnership offers discounted YubiKey bundles.
- Trusted Access for Cyber members must enable Advanced Account Security from June 1, 2026.