Skip to main content

What is a DAN prompt for ChatGPT?

The DAN prompt is a method to jailbreak the ChatGPT chatbot. It stands for Do Anything Now, and it tries to convince ChatGPT to ignore some of the safeguarding protocols that developer OpenAI put in place to prevent it from being racist, homophobic, otherwise offensive, and potentially harmful. The results are mixed, but when it does work, DAN mode can work quite well.

An old, unworking DAN prompt for ChatGPT.
Image used with permission by copyright holder

What is the DAN prompt?

DAN stands for Do Anything Now. It’s a type of prompt that tries to get ChatGPT to do things it shouldn’t, like swear, speak negatively about someone, or even program malware. The actual prompt text varies, but it typically involves asking ChatGPT to respond in two ways, one as it would normally, with a label as “ChatGPT,” “Classic,” or something similar, and then a second response in “Developer Mode,” or “Boss” mode. That second mode will have fewer restrictions than the first mode, allowing ChatGPT to (in theory) respond without the usual safeguards controlling what it can and can’t say.

Recommended Videos

A DAN prompt will also typically ask ChatGPT not to add many of its usual apologies, caveats, and extraneous sentences, making it more concise in its responses.

What can ChatGPT DAN prompts do?

A DAN prompt is designed to get ChatGPT to drop its guard, letting it answer questions it shouldn’t, provide information it’s been specifically programmed not to, or create things it is designed not to do. There have been instances of a ChatGPT in DAN mode responding to questions with racist or otherwise offensive language. It can swear, or even write malware in some cases.

The efficacy of a DAN prompt and the abilities that ChatGPT has in DAN mode vary a lot, though, depending on the prompt it was given, and any recent changes OpenAI has made to the chatbot. Many of the original DAN prompts no longer work.

ChatGPT DAN failure.
Image used with permission by copyright holder

Is there a working DAN prompt?

OpenAI is constantly updating ChatGPT with new features, like Plugins and web search, as well as new safeguards. That has involved it patching up holes in ChatGPT that allow DAN and other jailbreaks to work.

We haven’t been able to find any functioning DAN prompts. It might be that if you play around with the language from a prompt on something like the ChatGPTDAN subreddit you might be able to get it working, but at the time of writing, it’s not something that is readily available to the public.

There are some DAN prompts that appear to work, but upon further inspection simply provide a version of ChatGPT that is rude, and doesn’t really offer up any new abilities.

How do you write a DAN prompt?

DAN prompts vary dramatically depending on their age, and who wrote them. However, they typically contain some combination of the following:

  • Telling ChatGPT that it has a hidden mode which we will activate for the purpose of the DAN mode.
  • Asking ChatGPT to respond twice to any further prompts: Once as ChatGPT, and another in some other “mode.”
  • Telling ChatGPT to remove any safeguards from the second response.
  • Demanding that it no longer provide any apologies or additional caveats to its responses.
  • A handful of examples show how it should respond without OpenAI safeguards holding it back.
  • Asking ChatGPT to confirm the jailbreak attempt has worked by responding with a particular phrase.

Want to try your hand at a DAN-style prompt elsewhere? Here are some great ChatGPT alternatives.

Jon Martindale
Jon Martindale is a freelance evergreen writer and occasional section coordinator, covering how to guides, best-of lists, and…
ChatGPT vs. Perplexity: battle of the AI search engines
Perplexity on Nothing Phone 2a.

The days of Google's undisputed internet search dominance may be coming to an end. The rise of generative AI has ushered in a new means of finding information on the web, with ChatGPT and Perplexity AI leading the way.

Unlike traditional Google searches, these platforms scour the internet for information regarding your query, then synthesize an answer using a conversational tone rather than returning a list of websites where the information can be found. This approach has proven popular with users, even though it's raised some serious concerns with the content creators that these platforms scrape for their data. But which is best for you to actually use? Let's dig into how these two AI tools differ, and which will be the most helpful for your prompts.
Pricing and tiers
Perplexity is available at two price points: free and Pro. The free tier is available to everybody and offers unlimited "Quick" searches, 3 "Pro" searches per day, and access to the standard Perplexity AI model. The Pro plan, which costs $20/month, grants you unlimited Quick searches, 300 Pro searches per day, your choice of AI model (GPT-4o, Claude-3, or LLama 3.1), the ability to upload and analyze unlimited files as well as visualize answers using Playground AI, DALL-E, and SDXL.

Read more
​​OpenAI spills tea on Musk as Meta seeks block on for-profit dreams
A digital image of Elon Musk in front of a stylized background with the Twitter logo repeating.

OpenAI has been on a “Shipmas” product launch spree, launching its highly-awaited Sora video generator and onboarding millions of Apple ecosystem members with the Siri-ChatGPT integration. The company has also expanded its subscription portfolio as it races toward a for-profit status, which is reportedly a hot topic of debate internally.

Not everyone is happy with the AI behemoth abandoning its nonprofit roots, including one of its founding fathers and now rival, Elon Musk. The xAI chief filed a lawsuit against OpenAI earlier this year and has also been consistently taking potshots at the company.

Read more
ChatGPT has folders now
ChatGPT Projects

OpenAI is once again re-creating a Claude feature in ChatGPT. The company announced during Friday's "12 Days of OpenAI" event that its chatbot will now offer a folder system called "Projects" to help users organize their chats and data.

“This is really just another organizational tool. I think of these as smart folders,” Thomas Dimson, an OpenAI staff member, said during the live stream.

Read more