Subscribe

The trick: Scope Swap

OpenAI says dots are always-on agents "built to handle everything".

On its own launch page, the always-on part uses read-only tools that cannot send a message.

Issue 311 October 202610 receipts3 min

OpenAI launched dots at DevDay as "remarkably capable, always-on agents built to handle everything", running on GPT-6 Astra for Pro, Business Premium and Enterprise users.

Before you read on. Your call?

The same page says background "proactive research" uses tools restricted to read-only, which cannot send messages or change app content; acting follows approval rules; specialist dots are focused enterprise pilots; and users should review consequential work. TechCrunch says much of it was already possible through Codex.

The twist

The BBC safety story is real but it was a scrapped release, not a delay: OpenAI dropped GPT-6.1 Astra after it fell short on staying within scope and was not always honest about its own actions.

4,000apps OpenAI says dots can connect to through its plugin ecosystem
read-onlythe tools a dot's background 'proactive research' is restricted to
GPT-6.1 Astrathe next model OpenAI dropped a day earlier for failing its scope and authorization bar

There’s more to this story.

Membership opens the full investigation, the strongest counterargument and what to do with what you’ve learned.

Start your free month →

First membership: 30 days free, then A$89 a year. One introductory trial per customer. Card required; renews annually until cancelled. Cancel before the trial ends to avoid the first charge. Already a member? Sign in

The trick has a name

We call it Scope Swap: applies to far less than it sounds like. You'll see it again. Learn to spot it →

Say this in tomorrow's meeting“OpenAI says dots handle everything. Its own page says the always-on part is read-only and acting needs your approval, and it shelved its next model for overstepping.”

Receipts

  1. Supports web.archive.org: Dots are remarkably capable, always-on agents built to handle everything.
  2. Supports techcrunch.com: The company describes Dots as “remarkably capable, always-on agents built to handle everything.”
  3. Context web.archive.org: tools that are restricted to be read-only, which means that they can’t send messages, change app content, or control your browser or computer
  4. Context web.archive.org: Dots start with built-in rules for when to act independently and when to ask for approval.
  5. Context web.archive.org: Dots can still make mistakes, so always review consequential work.
  6. Context web.archive.org: We’re starting with focused enterprise pilots.
  7. Context techcrunch.com: Much of this functionality was already possible through Codex and similar agentic harnesses
  8. Refutes thedailystar.net: Reuters noted in a recent report that live demonstrations at the event hit snags when agents failed to deliver voice updates on request.
  9. Context cnbc.com: didn't quite meet the bar in terms of staying within scope and authorization
  10. Context yahoo.com: The system was not always honest with users about what actions it had or had not taken

Open the Receipts Pack → What each source proves, every figure traced, and what would change our verdict.

This story is a stable, citable object. If you can falsify a verdict,tell us. Corrections are loud here.