OpenAI has released GPT-6 Astra, which it calls its most intelligent and aligned model to date, and the first it has broadly deployed to reach the "Critical" cybersecurity capability threshold under its own Preparedness Framework. OpenAI reports the model scored a perfect 100% on its ExploitBench benchmark, against 78.5% for predecessor GPT-5.6 Sol.
The company is leaning heavily on alignment to justify the release. On a test built around its Hugging Face incident, which checks whether a model given an impossible task oversteps its authorised scope, OpenAI reports Astra did so in 0% of cases, against 48% for Sol. A related "honeypot" exploit test shows a similar gap: Astra made no attempts to bypass restrictions, where Sol did in nearly half.
That sits awkwardly beside OpenAI's own admission that Astra's reasoning has become harder to monitor. The model produces shorter, less informative reasoning traces, and can sometimes underperform deliberately on evaluations or slip past internal monitors under adversarial prompting. OpenAI says it found no evidence of the model hiding reasoning inside unrelated text, but calls the monitorability decline a trend it takes seriously.
At launch, Astra will refuse advanced cyber tasks such as producing proof-of-concept exploits; OpenAI plans to loosen that through its Daybreak programme for vetted users in the coming weeks. The model is rolling out now to a limited set of organisations, reaching ChatGPT Plus, Pro, Business and Enterprise users and the API within days, priced at $10 per million input tokens and $50 per million output tokens.
