← All agent briefs
agenticopsresearchdocumentedsession-gated

Operational brief

Claude in Chrome

Anthropic's Chrome-side Claude that can work in the browser with enterprise transcript controls.

Anthropic GitHub organization logo

Choose it when

You want Claude operating in the browser with enterprise transcript controls.

Skip it when

You need headless CDP or a self-hosted browser harness.

01 / Classification

Autonomy evidence

This is our classification, not a vendor badge. The record says what the product normally does. The gaps stay visible.

How we classify it
Tool use + multi-step plans, still human-gated per session.
Runs unattended
No — the current record treats it as session-gated.
Trigger
Not recorded yet.
State
Not recorded yet.
Tools
Chrome
Human control
Not recorded yet.

02 / Operations

Control reality

Useful agents eventually touch something real. This is the operational picture we have, not a promise hidden in a sales page.

Where it runs
cloud
Data boundary
Not recorded yet.
Identity & permissions
Not recorded yet.
What it can write
browser page actions
Surfaces
Chrome
Export / lock-in
Not recorded yet.

03 / Receipts

Evidence ledger

Here is what this brief is built on. “Documented” means we found a source. “Tested” means this desk actually ran it. Those are different things.

Evidence status
documented
Source set
1 primary source
Evidence review
Not recorded yet.

Corrections

Not recorded yet. If we change a material claim, the correction belongs here.

Desk notes

What we found

Useful context, not a substitute for the source record above. This is not a desk test unless the evidence status says tested.

Pick this if you already pay for Claude and want it clicking inside Chrome. Skip it if the browser session touches banks, inboxes, or anything you cannot afford a prompt-injection miss on.

Kind
Chrome extension, not a repo
Access
Paid Claude plans, per Anthropic
GitHub stars
None — no product repo
Product Hunt
1 follower, no score

What the vendor says

Anthropic’s 25 Aug 2025 post calls Claude in Chrome a research-preview Chrome extension that can see the page, click, and fill forms. The pilot started with 1,000 Max-plan users. Updates on that page: beta for all Max subscribers on 24 Nov 2025 (scheduled tasks, multi-tab workflows); Pro, Team, and Enterprise on 18 Dec 2025, plus a Claude Code integration that can read console errors and DOM state. Teams/Enterprise admins can enable or disable it org-wide and set site allowlists and blocklists. The same post reports a red-team of 123 cases / 29 attack scenarios: browser-use attack success 23.6% without the new mitigations, 11.2% with them, and 35.7% to 0% on a four-type browser-specific challenge set. High-risk categories (financial services, adult content, pirated content) are blocked. This desk has not installed the extension.

GitHub

No Anthropic-owned GitHub repository for the extension was found in this sweep. The client is proprietary. Star counts do not apply.

Product Hunt

Product Hunt lists “Claude in Chrome” (claude.ai/chrome) with the tagline “Let Claude see, click, type, and navigate in your browser.” The page showed 1 follower and no review score when fetched on 2026-09-22. That is a thin listing, not a scored launch. A separate Product Hunt product, “Open Claude in Chrome,” is a third-party reverse-engineered extension and is not this product.

Reddit

Anonymous Reddit search for “Claude in Chrome” on 2026-09-22 did not return a scored community verdict. On-point threads are questions and reports, not measurements from this desk: r/ClaudeAI 3 Sep 2026 asks how the extension differs from Claude’s built-in browser; 12 Aug 2026 asks whether it is safe enough for a business and cites Anthropic’s own safety page; 9 Aug 2026 a user says the extension is useful for mouse-driven tasks but uses more tokens than other Claude work. Those are user reports.

Sources fetched 2026-09-22

04 / Change log

Related coverage

The brief tells you what the product is. Payloads track the changes that may alter the decision.