For the complete documentation index, see llms.txt. Markdown versions of documentation pages are available by appending .md to the page URL.
Primary navigation

IP egress ranges

Configure network allowlists for requests from OpenAI products.

Some OpenAI products make outbound requests to services you control. If your network requires an IP allowlist, use the published ranges for the product making the request.

An IP allowlist identifies traffic from an OpenAI-operated network, not a specific user or workspace, and does not replace request authentication or authorization when your integration requires them. For plugins, use mutual TLS to authenticate ChatGPT as the MCP client. When your plugin requires user authentication, use OAuth 2.1 to authenticate and authorize the user.

Outbound IP addresses

ProductUsed forPublished ranges
ChatGPT integrationsPlugins, connectors, GPT Actions, and agentic commerceChatGPT connectors
Codex cloudConnections from Codex cloud to services such as GitHubChatGPT agents

Each JSON file includes a creationTime and a prefixes array. The ranges can change as OpenAI infrastructure changes. Fetch the relevant file regularly and update your allowlist automatically.