ChatGPT Text Watermarks in the EU: How OpenAI's textGrain Works and What Publishers Should Know

OpenAI will watermark eligible ChatGPT and Codex text in the EU under the AI Act. How textGrain works, its detection limits, and what publishers should do.

ChatGPT Text Watermarks in the EU: How OpenAI's textGrain Works and What Publishers Should Know
Table of contents

OpenAI on Monday, October 5, 2026 laid out its plan for invisible text watermarking in the European Union, responding to the EU AI Act's requirement that generative AI providers make their text output identifiable in a machine-readable way. The company's official post, "Our approach to EU text provenance rules," details a deliberately phased rollout: an opt-in watermark for API customers worldwide starting immediately, an invisible watermark on eligible ChatGPT and Codex output across the EU in the coming weeks, and a detector restricted to approved researchers and expert organizations for now.

The technology is named textGrain. It embeds an invisible statistical signal in the model's word choices, so a detector can estimate whether a passage carries an OpenAI watermark. In OpenAI's own evaluations it matched or exceeded every alternative tested — including Google's SynthID for text — and the company says it plans to release the technology as open source so others can build on it.

Independent outlets picked the announcement up within hours: TechCrunch led with the start of ChatGPT text watermarking in the EU, while The Verge tied the move directly to the AI Act's transparency requirements — confirmation that this is a dated, declared regulatory response rather than an isolated experiment. The primary source remains OpenAI's own post on its official site, and every figure in this article comes from it.

Official card image from OpenAI's EU text provenance announcement
Official card image accompanying OpenAI's announcement, October 5, 2026 (source: openai.com)

The three-phase plan, precisely

The headline "OpenAI watermarks ChatGPT" hides a more cautious reality. Here is what actually changes:

  • Starting October 5: API customers globally may opt in to text watermarking for select models. It is off by default — no one is enrolled without asking.
  • Coming weeks: an invisible watermark will be added to eligible ChatGPT and Codex text output in the EU only, across all plans. OpenAI explicitly declined to make watermarking a global default at launch, framing the regional approach as room to learn from real-world use.
  • Detector access: applications opened on October 5, but access is initially granted case-by-case to researchers and expert organizations. The tool reports only whether an OpenAI watermark is detected — no user, prompt or conversation identification.
  • Unchanged: provenance tools for images and audio, including invisible watermarks and Content Credentials, remain publicly accessible to organizations.

The performance numbers worth remembering

  • Length matters. At a 1% false-positive rate, the detector identified watermarks in about 80% of 200-token passages versus about 95% of 400-token passages (psychology-type content). Detection was substantially lower for mathematics, where word choice is inherently constrained.
  • Editing degrades it. Replacing 10% of words with synonyms dropped detection from about 92% to 66%; replacing 25% collapsed it to 17%.
  • Quality is unaffected. Across the benchmarks OpenAI uses for Astra, its current frontier model, the company reports no meaningful differences between watermarked and unwatermarked output.
Screenshot of the watermarking performance section of OpenAI's official announcement
Screenshot from the "How our watermarking works and performs" section of OpenAI's official post (source: openai.com)

What this means for you as a publisher or creator

  • If EU audiences matter to you: an invisible watermark is coming to EU ChatGPT and Codex text on every plan, with no user toggle — it applies region-wide. Teams publishing into Europe should update internal AI-disclosure policies now rather than improvise later.
  • Absence of a watermark proves nothing. OpenAI's own list of detection failures is long: short text, heavy editing, translation, unsupported models, text predating watermarking, or output from another provider's tools. Nobody should treat "no watermark detected" as proof of human authorship.
  • Serious human editing washes out the signal. The synonym-swap numbers explain why this technology complements rather than replaces editors — and why genuinely rewriting an AI draft in your own voice remains both legal and effective.
  • The platform-wide direction is provenance. We have already covered Anthropic's hidden C2PA marks on Claude images and Google's setting to remove Gemini's visible image watermark. Every major lab is converging on origin signals; publishers who build transparent workflows early avoid scrambling later.
  • If you sell content services: expect European clients to start asking explicit questions about AI usage in contracts. Having an honest answer ready is cheaper than renegotiating in a panic.

The cleanest posture, in our view: use AI for drafting and refinement, keep the idea, the angle and the final edit human. That is precisely the workflow ARWriter's tools are designed around — AI-assisted, human-directed publishing.

Quick comparison: where text sits in the provenance stack

ModalityStatus at OpenAIWho can verify
ImagesWatermarked + Content CredentialsPublic verification tools
AudioWatermarkedPublic verification tools
Text (textGrain)EU-only rollout + global API opt-inApproved researchers and organizations only

The asymmetry is deliberate: text is the easiest modality to rewrite, translate or paraphrase into undetectability, so OpenAI is keeping the detector behind an approval wall rather than shipping a public tool that generates false accusations at scale. It is the same caution we noted while covering ChatGPT Ads' international expansion — the company manages regulatory and reputational risk in Europe very carefully.

Honest limitations

  • Early technology, by OpenAI's own description. The post calls text watermarking and detection early-stage with significant limitations, and notes that views on their responsible use are still evolving.
  • A watermark tells you very little. It does not measure human contribution, establish ownership or responsibility, identify the user, or verify accuracy — OpenAI lists all four explicitly.
  • False positives are real. A 1% false-positive rate sounds tiny until you apply it to thousands of published passages; that is exactly why public access is withheld.
  • Translation erodes it. Text generated in one language and machine-translated may lose the signal — a documented limitation with obvious implications for multilingual publishers.
  • The pledge is phased, not final. OpenAI expects to revisit each element as technology, standards and evidence evolve, so treat this week's rules as version one.

Three practical scenarios for publishers

  • A content agency serving EU clients: your German client approves AI-assisted blog posts. Once EU watermarking lands, raw ChatGPT drafts will carry a signal that approved researchers can detect. The professional answer is contractual, not technical: a clear disclosure clause defining the AI contribution and confirming human final editing protects the relationship before anyone asks.
  • An Arabic-language publisher with EU readers: machine-translated text often loses the signal, but the regulatory direction in Europe is unmistakable — labeling and disclosure are coming for content reaching the EU market in any language. Building a reputation on transparency now is cheaper than retrofitting it later.
  • A platform that generates content for its users: if your product passes OpenAI model output to European end users, the API opt-in that opened this week hands you a product decision: enable watermarking and give your customers a ready-made provenance signal, or leave it off and push the disclosure burden downstream. That is a roadmap conversation for this week, not next quarter.

Frequently asked questions

Will ChatGPT text be watermarked worldwide?

No. The current rollout applies inside the European Union. Worldwide, only API customers who explicitly opt in get watermarked output, and the feature is off by default.

Will the watermark be visible in the text I read?

No. textGrain is an invisible statistical signal affecting word choice, and OpenAI reports no meaningful quality difference between watermarked and unwatermarked model output.

Can editing remove the textGrain watermark?

Substantial rewriting weakens it significantly — replacing a quarter of the words with synonyms cut detection to 17% in OpenAI's evaluation. The regulatory goal is transparency, not enforcement against editing.

Why is OpenAI doing this only in the EU?

The EU AI Act requires generative AI providers to make generated text identifiable in a machine-readable way. OpenAI is implementing a regional response to that legal obligation while stopping short of a global default.

Can anyone check whether a text was written by AI?

Not yet. The detector is limited to approved researchers and expert organizations, with case-by-case approval. OpenAI says it will expand access when results can be interpreted responsibly.

Bottom line: EU text watermarking does not end AI-assisted publishing — it starts an era that rewards publishers who are transparent about their workflow. Creators who treat AI as a drafting partner and keep judgment, voice and editing human have nothing to fear and plenty to gain. If that is the workflow you want for Arabic and multilingual content, ARWriter was built for exactly that, and we will keep tracking this story as it develops.