OpenAI available at FedRAMP Moderate
Key Points
- FedRAMP 20x Moderate authorization for ChatGPT Enterprise and API Platform
- GPT-5.5 available in FedRAMP environment; Codex Cloud integration coming
- Procure via FedRAMP Marketplace, fedramp@openai.com, or Carahsoft
Summary
OpenAI received FedRAMP 20x Moderate authorization for ChatGPT Enterprise and the API Platform, enabling U.S. federal agencies to use managed OpenAI services with the controls and evidence required for government work. This includes access to models (including GPT‑5.5) in a FedRAMP environment and upcoming Codex Cloud integration.
Key Points
- Authorization path: FedRAMP 20x Moderate using cloud-native evidence, Key Security Indicators (KSI), automated validation, and ongoing operational visibility.
- Products covered: ChatGPT Enterprise and API Platform; agencies can access GPT‑5.5 in the FedRAMP environment; Codex Cloud access and Codex app integrations arriving soon.
- Security & compliance artifacts: reusable authorization data, Minimum Assessment Scope, shared-responsibility expectations, and validation materials available in OpenAI’s Trust Portal.
- Typical agency uses: research, drafting, translation, summarization, public health analysis, developer acceleration, copilots, case management, and citizen service workflows.
- How to engage: find offerings in the FedRAMP Marketplace; contact fedramp@openai.com, gov-gtm@openai.com, use OpenAI’s sales form, or procure via Carahsoft (authorized reseller).
- Operational note: adoption is subject to each agency’s authorization decisions and internal policies; OpenAI will expand supported features via the Significant Change Notification process.
Actionable next steps for engineers
- Review the product entry in the FedRAMP Marketplace and the Trust Portal evidence package to confirm Minimum Assessment Scope and supported features.
- Determine shared-responsibility boundaries with your security and procurement teams.
- If approved, plan integration via the API Platform or provision ChatGPT Enterprise in a FedRAMP workspace; engage OpenAI or Carahsoft for onboarding and procurement.