New analysis reveals that the best way AI companies invoice by tokens hides the true value from customers. Suppliers can quietly inflate fees by fudging token counts or slipping in hidden steps. Some programs run further processes that don’t have an effect on the output however nonetheless present up on the invoice. Auditing instruments have been proposed, however with out actual oversight, customers are left paying for greater than they understand.
In almost all instances, what we as shoppers pay for AI-powered chat interfaces, reminiscent of ChatGPT-4o, is at the moment measured in tokens: invisible models of textual content that go unnoticed throughout use, but are counted with precise precision for billing functions; and although every alternate is priced by the variety of tokens processed, the consumer has no direct solution to verify the depend.
Regardless of our (at greatest) imperfect understanding of what we get for our bought ‘token’ unit, token-based billing has turn into the usual strategy throughout suppliers, resting on what might show to be a precarious assumption of belief.
Token Phrases
A token isn’t fairly the identical as a phrase, although it typically performs the same function, and most suppliers use the time period ‘token’ to explain small models of textual content reminiscent of phrases, punctuation marks, or word-fragments. The phrase ‘unbelievable’, for instance, is perhaps counted as a single token by one system, whereas one other would possibly cut up it into un, believ and ready, with each bit rising the fee.
This technique applies to each the textual content a consumer inputs and the mannequin’s reply, with the value primarily based on the entire variety of these models.
The problem lies in the truth that customers don’t get to see this course of. Most interfaces don’t present token counts whereas a dialog is occurring, and the best way tokens are calculated is difficult to breed. Even when a depend is proven after a reply, it’s too late to inform whether or not it was truthful, making a mismatch between what the consumer sees and what they’re paying for.
Latest analysis factors to deeper issues: one examine reveals how suppliers can overcharge with out ever breaking the principles, just by inflating token counts in ways in which the consumer can not see; one other reveals the mismatch between what interfaces show and what’s really billed, leaving customers with the phantasm of effectivity the place there could also be none; and a third exposes how fashions routinely generate inner reasoning steps which might be by no means proven to the consumer, but nonetheless seem on the bill.
The findings depict a system that appears exact, with precise numbers implying readability, but whose underlying logic stays hidden. Whether or not that is by design, or a structural flaw, the end result is identical: customers pay for greater than they’ll see, and infrequently greater than they anticipate.
Cheaper by the Dozen?
Within the first of those papers – titled Is Your LLM Overcharging You? Tokenization, Transparency, and Incentives, from 4 researchers on the Max Planck Institute for Software program Techniques – the authors argue that the dangers of token-based billing prolong past opacity, pointing to a built-in incentive for suppliers to inflate token counts:
‘The core of the issue lies in the truth that the tokenization of a string isn’t distinctive. For instance, contemplate that the consumer submits the immediate “The place does the subsequent NeurIPS happen?” to the supplier, the supplier feeds it into an LLM, and the mannequin generates the output “|San| Diego|” consisting of two tokens.
‘Because the consumer is oblivious to the generative course of, a self-serving supplier has the capability to misreport the tokenization of the output to the consumer with out even altering the underlying string. As an example, the supplier might merely share the tokenization “|S|a|n| |D|i|e|g|o|” and overcharge the consumer for 9 tokens as a substitute of two!’
The paper presents a heuristic able to performing this type of disingenuous calculation with out altering seen output, and with out violating plausibility beneath typical decoding settings. Examined on fashions from the LLaMA, Mistral and Gemma sequence, utilizing actual prompts, the tactic achieves measurable overcharges with out showing anomalous:

Token inflation utilizing ‘believable misreporting’. Every panel reveals the share of overcharged tokens ensuing from a supplier making use of Algorithm 1 to outputs from 400 LMSYS prompts, beneath various sampling parameters (m and p). All outputs have been generated at temperature 1.3, with 5 repetitions per setting to calculate 90% confidence intervals. Supply: https://arxiv.org/pdf/2505.21627
To handle the issue, the researchers name for billing primarily based on character depend somewhat than tokens, arguing that that is the one strategy that provides suppliers a cause to report utilization actually, and contending that if the purpose is truthful pricing, then tying value to seen characters, not hidden processes, is the one possibility that stands as much as scrutiny. Character-based pricing, they argue, would take away the motive to misreport whereas additionally rewarding shorter, extra environment friendly outputs.
Right here there are a variety of additional concerns, nonetheless (most often conceded by the authors). Firstly, the character-based scheme proposed introduces further enterprise logic which will favor the seller over the buyer:
‘[A] supplier that by no means misreports has a transparent incentive to generate the shortest doable output token sequence, and enhance present tokenization algorithms reminiscent of BPE, in order that they compress the output token sequence as a lot as doable’
The optimistic motif right here is that the seller is thus inspired to supply concise and extra significant and priceless output. In observe, there are clearly much less virtuous methods for a supplier to scale back text-count.
Secondly, it’s cheap to imagine, the authors state, that firms would probably require laws to be able to transit from the arcane token system to a clearer, text-based billing technique. Down the road, an rebel startup might resolve to distinguish their product by launching it with this type of pricing mannequin; however anybody with a really aggressive product (and working at a decrease scale than EEE class) is disincentivized to do that.
Lastly, larcenous algorithms such because the authors suggest would include their very own computational value; if the expense of calculating an ‘upcharge’ exceeded the potential revenue profit, the scheme would clearly don’t have any benefit. Nonetheless the researchers emphasize that their proposed algorithm is efficient and economical.
The authors present the code for his or her theories at GitHub.
The Change
The second paper – titled Invisible Tokens, Seen Payments: The Pressing Must Audit Hidden Operations in Opaque LLM Companies, from researchers at the College of Maryland and Berkeley – argues that misaligned incentives in business language mannequin APIs usually are not restricted to token splitting, however prolong to whole courses of hidden operations.
These embody inner mannequin calls, speculative reasoning, software utilization, and multi-agent interactions – all of which can be billed to the consumer with out visibility or recourse.

Pricing and transparency of reasoning LLM APIs throughout main suppliers. All listed companies cost customers for hidden inner reasoning tokens, and none make these tokens seen at runtime. Prices differ considerably, with OpenAI’s o1-pro mannequin charging ten occasions extra per million tokens than Claude Opus 4 or Gemini 2.5 Professional, regardless of equal opacity. Supply: https://www.arxiv.org/pdf/2505.18471
Not like standard billing, the place the amount and high quality of companies are verifiable, the authors contend that immediately’s LLM platforms function beneath structural opacity: customers are charged primarily based on reported token and API utilization, however don’t have any means to substantiate that these metrics mirror actual or vital work.
The paper identifies two key types of manipulation: amount inflation, the place the variety of tokens or calls is elevated with out consumer profit; and high quality downgrade, the place lower-performing fashions or instruments are silently used rather than premium parts:
‘In reasoning LLM APIs, suppliers typically preserve a number of variants of the identical mannequin household, differing in capability, coaching knowledge, or optimization technique (e.g., ChatGPT o1, o3). Mannequin downgrade refers back to the silent substitution of lower-cost fashions, which can introduce misalignment between anticipated and precise service high quality.
‘For instance, a immediate could also be processed by a smaller-sized mannequin, whereas billing stays unchanged. This observe is tough for customers to detect, as the ultimate reply should seem believable for a lot of duties.’
The paper paperwork situations the place greater than ninety p.c of billed tokens have been by no means proven to customers, with inner reasoning inflating token utilization by an element better than twenty. Justified or not, the opacity of those steps denies customers any foundation for evaluating their relevance or legitimacy.
In agentic programs, the opacity will increase, as inner exchanges between AI brokers can every incur fees with out meaningfully affecting the ultimate output:
‘Past inner reasoning, brokers talk by exchanging prompts, summaries, and planning directions. Every agent each interprets inputs from others and generates outputs to information the workflow. These inter-agent messages might devour substantial tokens, which are sometimes in a roundabout way seen to finish customers.
‘All tokens consumed throughout agent coordination, together with generated prompts, responses, and tool-related directions, are sometimes not surfaced to the consumer. When the brokers themselves use reasoning fashions, billing turns into much more opaque’
To confront these points, the authors suggest a layered auditing framework involving cryptographic proofs of inner exercise, verifiable markers of mannequin or software identification, and unbiased oversight. The underlying concern, nonetheless, is structural: present LLM billing schemes rely on a persistent asymmetry of data, leaving customers uncovered to prices that they can’t confirm or break down.
Counting the Invisible
The ultimate paper, from researchers on the College of Maryland, re-frames the billing downside not as a query of misuse or misreporting, however of construction. The paper – titled CoIn: Counting the Invisible Reasoning Tokens in Business Opaque LLM APIs, and from ten researchers on the College of Maryland – observes that the majority business LLM companies now disguise the intermediate reasoning that contributes to a mannequin’s closing reply, but nonetheless cost for these tokens.
The paper asserts that this creates an unobservable billing floor the place whole sequences might be fabricated, injected, or inflated with out detection*:
‘[This] invisibility permits suppliers to misreport token counts or inject low-cost, fabricated reasoning tokens to artificially inflate token counts. We discuss with this observe as token depend inflation.
‘As an example, a single high-efficiency ARC-AGI run by OpenAI’s o3 mannequin consumed 111 million tokens, costing $66,772.3 Given this scale, even small manipulations can result in substantial monetary influence.
‘Such info asymmetry permits AI firms to considerably overcharge customers, thereby undermining their pursuits.’
To counter this asymmetry, the authors suggest CoIn, a third-party auditing system designed to confirm hidden tokens with out revealing their contents, and which makes use of hashed fingerprints and semantic checks to identify indicators of inflation.

Overview of the CoIn auditing system for opaque business LLMs. Panel A reveals how reasoning token embeddings are hashed right into a Merkle tree for token depend verification with out revealing token contents. Panel B illustrates semantic validity checks, the place light-weight neural networks examine reasoning blocks to the ultimate reply. Collectively, these parts permit third-party auditors to detect hidden token inflation whereas preserving the confidentiality of proprietary mannequin habits. Supply: https://arxiv.org/pdf/2505.13778
One element verifies token counts cryptographically utilizing a Merkle tree; the opposite assesses the relevance of the hidden content material by evaluating it to the reply embedding. This permits auditors to detect padding or irrelevance – indicators that tokens are being inserted merely to hike up the invoice.
When deployed in checks, CoIn achieved a detection success fee of almost 95% for some types of inflation, with minimal publicity of the underlying knowledge. Although the system nonetheless depends upon voluntary cooperation from suppliers, and has restricted decision in edge instances, its broader level is unmistakable: the very structure of present LLM billing assumes an honesty that can’t be verified.
Conclusion
In addition to the benefit of gaining pre-payment from customers, a scrip-based forex (such because the ‘buzz’ system at CivitAI) helps to summary customers away from the true worth of the forex they’re spending, or the commodity they’re shopping for. Likewise, giving a vendor leeway to outline their personal models of measurement additional leaves the buyer at midnight about what they’re really spending, when it comes to actual cash.
Just like the lack of clocks in Las Vegas, measures of this type are sometimes aimed toward making the buyer reckless or detached to value.
The scarcely-understood token, which might be consumed and outlined in so some ways, is probably not an acceptable unit of measurement for LLM consumption – not least as a result of it may possibly value many occasions extra tokens to calculate a poorer LLM lead to a non-English language, in comparison with an English-based session.
Nonetheless, character-based output, as recommended by the Max Planck researchers, would probably favor extra concise languages and penalize naturally verbose languages. Since visible indications reminiscent of a depreciating token counter would most likely make us just a little extra spendthrift in our LLM periods, it appears unlikely that such helpful GUI additions are coming anytime quickly – at the least with out legislative motion.
* Authors’ emphases. My conversion of the authors’ inline citations to hyperlinks.
First revealed Thursday, Could 29, 2025