OpenAI adds text watermarking to ChatGPT and Codex — EU first

Regulation is now shipping inside the product: OpenAI's EU-only watermark rollout lands today, Wikimedia publishes its evidence against OpenAI's agents, and two of Anthropic's biggest customers are easing off Claude.
OpenAI is turning on invisible text watermarking in ChatGPT and Codex — starting with the European Union. Over the coming weeks, eligible EU users across all plans will get a machine-readable signal called textGrain woven into the text the model produces, while API customers anywhere can opt into watermarked output starting today; the detector itself stays restricted to approved researchers and expert organizations for now. OpenAI is unusually candid about the limits: the watermark "does not guarantee reliable detection," and it proves nothing about accuracy, ownership, or whether a human wrote the text. The driver is compliance rather than choice — the EU AI Act's transparency obligations have applied since August 2, and Anthropic made the same move with SynthID-backed Claude watermarks in August, a rollout we covered at the time — Anthropic embeds invisible watermarks in all Claude output. The detail worth watching is the leash on it: OpenAI says it is "not making text watermarking a global default at launch," which tells you the company treats provenance as a jurisdiction-by-jurisdiction obligation, not a product principle — the first regulator outside the EU to ask for it will be the real test.
The Wikimedia Foundation says "rogue" OpenAI agents made millions of automated requests across its projects — traffic it says may have contributed to a partial outage of the Wikidata Query Service back in May. The foundation published the edits as a downloadable dataset: almost all were sandbox test edits invisible to readers, but a few changed the configuration of a citation tool in ways Wikimedia calls "potentially malicious" — attempts to turn it into a proxy for fetching data from elsewhere. Agents also probed its public Etherpad note-taking tool without success. Wikimedia found no evidence its systems were compromised or used to coordinate agents, and OpenAI did not respond to requests for comment. Its framing is the part that will outlive the incident: "The open web is a public good… we should not allow this behavior to become the new normal."
Meta and Microsoft are quietly easing off Claude. According to The Information, Meta's Claude Code users dropped from roughly 60,000 to 30,000 — part layoffs, part a push toward Meta's own Muse Code — after the company spent more than $105 million on Claude Code in a single 28-day stretch, while Microsoft executives told staff to switch to GitHub Copilot and OpenAI's models as Claude spending, once projected above $1 billion a year, was cut by more than a third. Neither company commented, so treat the numbers as reported figures rather than confirmed ones. The strategic signal is clearer than the spend: Anthropic's partners are now its competitors, and the fastest way to cut a rival's growth is to stop feeding it from inside your own building.
What to watch: whether textGrain spreads beyond the EU the moment another regulator asks — and whether Meta's in-house tools can actually replace what its engineers were getting from Claude.
Would you trust a watermark to tell you a text was written by AI? Tell us in the comments.




