On September 21, 2026, security researchers and journalists detailed how OpenAI’s ChatGPT advertising pixel uses a cookie called __obi to link users’ ChatGPT identities to activity on third party sites. The analyses show the cookie is set on the .openai.com domain with cross-site attributes and then sent back when advertisers load OpenAI’s measurement pixel, along with hashed contact data and page paths.
This article aggregates reporting from 4 news sources. The TL;DR is AI-generated from original reporting. Race to AGI's analysis provides editorial context on implications for AGI development.
The __obi story matters because it is one of the first times we have seen frontier AI and classic adtech fuse at a very low level. OpenAI is not just serving banner ads, it is using an account-linked cookie that rides along on pixel requests from ordinary ecommerce and content sites, giving it Meta-style visibility into what ChatGPT users do elsewhere on the web. That is a sharp break from the public narrative that ChatGPT conversations are siloed and private.
For the race to AGI, this kind of data pipeline is strategically valuable. Off-site behavioral signals can help train better recommendation layers, personalization models and reinforcement loops around assistant behavior. If OpenAI can safely and lawfully mine that stream, it gains a powerful moat over labs that are still limited to synthetic or on-platform data. At the same time, pushing the limits of GDPR-style consent models invites regulatory and reputational risk that could trigger clampdowns on data access for the whole industry.
The bigger picture is that AI labs are converging on the same playbook that made social networks so dominant: track users everywhere, tie that to identity, and feed it back into feedback-driven models. If public backlash or regulators decide that is a step too far for AI assistants, OpenAI may be forced to re-architect this system, and rival labs will think twice before copying it.