2026-06-04

# Jailbroken models can delegate subtasks to non-jailbroken models

Disclaimer
 - **Quick Note**
 - Speculative, have not tested extensively

Main
 - deepseek r1 is jailbroken, gpt-5.5-codex is not jailbroken
 - deepseek r1 jailbroken can be used as the agent, and break down a task into subtasks, rephrase suspicious words or names, and delegate each subtask to gpt-5.5-codex, such that gpt-5.5-codex's detectors are not triggered.
