Sam Altman says OpenAI wants Astra widely available, but the model’s own cyber capabilities have triggered extra safety controls that are slowing its release.
OpenAI has classified Astra as its first “critical” model under its own cybersecurity safety policy — a designation that has put the brakes on broader release while the company adds extra controls. That’s the headline figure here: not that the model is powerful, but that OpenAI’s internal framework judged it risky enough to warrant a category it had never previously applied to any of its models.
Sam Altman, OpenAI’s chief executive, posted on the matter, making clear the company’s position on access. He said Astra is a powerful model and that OpenAI is actively working to make it generally available. He also said he doesn’t think keeping powerful models restricted to a chosen few is a good strategy — a pointed statement in an industry where gated access to frontier AI has become increasingly common.
What Is Astra, and Where Does It Stand?
Astra is OpenAI’s next major frontier model. It is not yet publicly available, and OpenAI has not confirmed a final product name, pricing structure, or release date. So for now, it remains an announced model rather than a released one — a distinction worth keeping clear.
The “critical” classification comes from OpenAI’s Preparedness Framework, the company’s internal policy for assessing how dangerous a model’s capabilities might be. Astra is the first model to receive that top-tier cybersecurity rating under the framework. OpenAI has said the model’s cyber capabilities specifically are what triggered the escalation, and that additional safety work is needed before it goes out to the wider public.
At the same time, the company has said it is slowing development activities that don’t meet the heightened safety requirements now in place. That’s a notable admission — it means the release timeline is being shaped not by commercial deadlines but by the pace at which safety controls can be built and verified.
Altman’s Position: Wide Access, Not Gatekeeping
Altman’s comments push back against a model of AI distribution where only select partners, researchers, or paying enterprise customers get access to the most capable systems. His framing — that restricting powerful models to a chosen few isn’t a good strategy — aligns with a broader argument OpenAI has made about democratising access to frontier AI.
But there’s a tension here that the numbers make plain. The same company saying it wants broad access has also told its own safety teams to slow down because the model’s cyber capabilities are, by their own assessment, serious enough to require controls that don’t yet exist. Those two things can both be true at once, but they do pull in opposite directions.
Altman’s phrase “a little bit longer” — used in relation to the release timing — suggests the delay is real but not indefinite. No specific timeline has been confirmed.
The Preparedness Framework and What “Critical” Actually Means
OpenAI’s Preparedness Framework is the policy document that sets out how the company evaluates risk across categories including cybersecurity, biological threats, and broader societal harm. The framework uses a tiered classification system, and Astra reaching the “critical” level for cybersecurity is the first time any OpenAI model has done so.
What that means in practice: OpenAI has said it is putting additional monitoring and controls in place, and that development activities which don’t meet the new requirements are being paused or slowed. The company hasn’t published a detailed breakdown of what specific cyber capabilities triggered the classification, but the public acknowledgement alone is notable. AI companies don’t typically volunteer that their own models have reached internal danger thresholds.
The Preparedness Framework was designed precisely for this situation — to create a structured process for deciding when a model needs more safety work before release. The fact it’s being applied here suggests the framework is functioning as intended, though critics of self-regulation in AI will note that OpenAI is still the one making the call about its own products.
Industry Context: Gated Access vs Open Release
The debate over who gets access to the most capable AI models is not new. OpenAI’s GPT-4 launched with tiered access. Anthropic’s Claude Opus 4.7 and Google’s Gemini 2.5 are both available broadly but with usage limits and enterprise tiers. The question of whether frontier models should be open, gated, or somewhere in between has no settled answer in the industry.
Altman’s comments suggest OpenAI’s preference, at least in principle, is against gatekeeping. And yet the Preparedness Framework — OpenAI’s own policy — is currently the reason Astra isn’t available broadly. It’s a position that’s consistent, if a little uncomfortable: we want wide access, just not yet.
No pricing or commercial structure for Astra has been announced.
What This Means for Kent Residents
For anyone in Kent already using OpenAI tools — whether for work, study, or personal use — Astra won’t be available until OpenAI completes its safety work and confirms a release. There’s no confirmed date for that. When Astra does eventually launch, UK consumers will be subject to whatever access structure OpenAI puts in place, including any pricing tiers or regional availability restrictions, so it’s worth watching for announcements on that front.
Source: @sama
OpenAI's Astra Model Delayed by Cybersecurity Concerns as Sam Altman Pushes for Broad Access Quiz
5 questions