EPOCH
Policy

OpenAI dissolved the team that ran its Preparedness Framework, and kept the framework

The Financial Times reports the unit went at the end of July and its work was split across other teams. A week later the framework it owned produced the most serious finding OpenAI has published.

OpenAI

OpenAI disbanded its Preparedness team at the end of July and distributed its work across existing teams, the Financial Times reported on Monday. The company casts the change as streamlining ahead of a possible listing. It has published no account of its own.

The team's job was the one the Preparedness Framework describes: decide whether a frontier model has reached a capability threshold serious enough to require safeguards before it is deployed, in areas including biology, cyber and autonomy. The framework is a document; the team was the part of the company that ran it.

The framework outlived the team: its most serious published finding came about a week after the unit that owned it was dissolved. What is not visible from outside is who now makes a Critical determination, and whether that judgement still carries the authority to stop a deployment. Dates are as published by OpenAI, except the late-July disbandment, which is the Financial Times' reporting; Epoch could not read the original, which is paywalled.
DateWhat happenedSource
21 July 2026OpenAI publishes its account of a model reaching Hugging Face during evaluationopenai.com
Late JulyThe Preparedness team is disbanded, its work split across existing teamsthe Financial Times, 17 August — OpenAI has published no account of its own
7 AugustOpenAI cannot rule out Astra reaching the Critical cyber level of the Preparedness Framework; internal activity that does not meet stricter security requirements is paused, with external evaluation before deploymentopenai.com
17 AugustThe disbandment is reported; OpenAI casts it as streamlining ahead of a possible listingthe Financial Times, relayed by outlets including Engadget

The dates are worth laying side by side. On 21 July OpenAI published its account of a security incident in which a model under evaluation reached Hugging Face. At the end of that month, per the FT, the team was dissolved. On 7 August OpenAI said preliminary evaluations of its unreleased Astra model showed advances in agentic coding and cybersecurity strong enough that it could not rule out the Critical capability level of that same framework, paused internal activity on the model that did not meet stricter security requirements, and said government agencies and independent safety organisations would evaluate it before deployment.

So the framework outlived the team by at least one invocation, and not a small one. That is the fact worth holding onto in both directions: the machinery did not stop when the unit did, and the most consequential determination OpenAI has published arrived about a week after the group that owned the process stopped existing as a group.

What cannot be seen from outside is the part that matters. A capability threshold is not decided by a document, it is decided by people with the standing to say a model is not shipping, and nothing published tells you who holds that standing now, or whether a judgement made inside a product team carries the same weight as one made by a unit whose only job was to make it. OpenAI's account is that the responsibilities moved rather than disappeared.

Two of the people around that work have left recently — the company's ethics lead and its head of safety — according to Engadget's account of the FT report. Epoch could not read the FT's original, which is paywalled, and has relied on outlets that did.

None of this establishes that OpenAI has stopped assessing catastrophic risk, and nobody serious is claiming the framework has been withdrawn: it is still published, and it was applied this month. What has changed is that the function now sits inside teams that have other jobs as well, at a company preparing for a public listing, three weeks after one of its own models did something in an evaluation that it felt obliged to write about.

Sources

This article was written from these pages. Read them.

  1. primaryFinancial Times — the original report (paywalled)ft.com
  2. secondaryEngadget's account of the FT reportengadget.com
  3. primaryOpenAI — Responding to the next frontier of critical cyber capabilities, 7 August 2026openai.com
  4. primaryOpenAI and Hugging Face partner to address security incident during model evaluation, 21 July 2026openai.com

Written and edited by a person at Epoch, from the primary documents listed above, and checked before publication. Any diagram here is ours.

More from Epoch