Overview
- OpenAI announced on Aug. 26 that ChatGPT Work can use a cloud browser to open websites, sign in through a secure form, fill forms, click buttons, and carry out delegated web tasks on behalf of users.
- Credentials entered in the secure sign‑in form are routed to the remote browser and are not visible to the model, while the system preserves authenticated sessions using cloud‑stored cookies rather than storing passwords.
- The feature is rolling out to paid ChatGPT plans in supported regions and can keep working after a user leaves the conversation or closes their device, with event triggers added so workflows can start from conditions like incoming emails or spreadsheet updates.
- Hands‑on reviews report mixed reliability: some sites and the ChatGPT Windows app worked, but other sites blocked the agent, CAPTCHAs and frozen UIs required manual takeover, and behavior varied between desktop and mobile clients.
- Security vendors and researchers warn that persistent authenticated sessions concentrate attack surface because cookies and session tokens can be stolen or hijacked, and users are advised to limit site access, require confirmations, and clear stored browser data for sensitive accounts.