Claude for Chrome
Also known as: Claude in Chrome, Claude browser extension, Anthropic browser agent, Claude Code Chrome extension
Anthropic's browser agent: a Chrome side panel that navigates, clicks, and fills forms with CDP level control, records actions into reusable scheduled shortcuts, bridges to Claude Code and Desktop, and leads the category on safety posture (high risk action approvals, site permissions, published prompt injection defenses). Beta on all paid plans.
Claude for Chrome is Anthropic's browser agent: a side panel extension that lets Claude navigate, click buttons, and fill forms on real pages, pairing with Claude Code, Cowork, and Claude Desktop so browser work feeds directly into coding, documents, and analysis. Third party analysis of the extension documents a recording to workflow system: user actions are captured (DOM snapshots and mouse events via rrweb), optionally narrated by voice, and converted into reusable parameterized shortcuts that can be scheduled for recurring daily, weekly, monthly, or annual execution, with external MCP server connections and a native messaging bridge to the local Claude Desktop or CLI. Safety is the product's signature: permission is required for high risk actions, site level access is user managed, an ask before acting mode is available, and Anthropic launched deliberately slowly (a 1,000 user Max research preview in August 2025) while publishing prompt injection defenses that significantly reduced attack success; first party materials still label the beta a feature with unique risks requiring alertness. It drives the browser at CDP level through the chrome.debugger API, and model access varies by plan, with higher tiers choosing among Anthropic models by task complexity. Indexed under the incumbent ruling as a named, independently installable, documented product; graded from retrieved evidence like any vendor.
Vendor details
Canonical URL
https://claude.com/claude-for-chrome
Category
Browser / computer-use agent
Funding status
Product of Anthropic; launched as a research preview to 1,000 Max subscribers in August 2025 with staged prompt injection defenses, now in beta on all paid Claude plans
Company status
independent
Use cases & customers
Primary use cases
Target customers
Deployment options
Integrations
Works with Claude Code (claude --chrome), Claude Desktop, Cowork, and VS Code for end to end workflows via a native messaging bridge; connects to external MCP servers; drives Chrome and Edge through the chrome.debugger API (CDP), synthesizing trusted-level clicks and keystrokes; manages tab groups per session with agent created secondary tabs.
Sources & related URLs
Capability coverage
7.5 / 14 capabilities · 54%
| Integrations & Tool CallingPairs with Claude Code, Cowork, Claude Desktop, and VS Code for end to end workflows, connects to external MCP servers, and acts on any site in Chrome and Edge, Anthropic materials and extension analysis 2026-07-22 | Full |
|---|---|
| Workflow OrchestrationMulti step in browser task execution with recorded workflows converted into parameterized reusable shortcuts, short of a general workflow orchestrator, Anthropic materials and extension analysis 2026-07-22 | Partial |
| Knowledge Grounding & RAGSession context follows browsing activity but no knowledge grounding or retrieval layer is documented, Anthropic materials 2026-07-22 | Unable to verify |
| Human Oversight & GuardrailsPermission is required for high risk actions, site level access is user managed, an ask before acting mode is available, and skipping permissions for trusted workflows carries explicit supervision guidance, Anthropic materials 2026-07-22 | Full |
| Security, Identity & GovernancePrompt injection defenses with measured reductions in attack success, per site permission management, a deliberately staged rollout, and candid first party risk labeling of the beta, Anthropic materials and press 2026-07-22 | Full |
| Observability & AuditabilityNo run logging, replay, or audit tooling documented for users or administrators, Anthropic materials 2026-07-22 | Unable to verify |
| Memory & State PersistenceSession tab group state is per conversation and reusable shortcuts are covered under packaging; no persistent agent memory layer documented, extension analysis 2026-07-22 | Unable to verify |
| Deployment & Data ResidencyExtension plus cloud models; the native messaging bridge to local Claude Desktop or CLI is architecture rather than a deployment or residency option, extension analysis 2026-07-22 | Unable to verify |
| Prebuilt Agents, Templates & PacksRecording user actions (with optional voice narration) converts into reusable parameterized shortcuts saved as a prompt library with scheduling, a first class recording to workflow packaging system, extension analysis 2026-07-22 | Full |
| Triggers & Channel CoverageSaved shortcuts can be scheduled for recurring daily, weekly, monthly, or annual execution per extension internals analysis; no broader event trigger channels documented, extension analysis 2026-07-22 | Partial |
| Model Flexibility & RoutingHigher plan tiers choose among Anthropic models by task complexity, a documented model selection surface limited to one provider family, integration guide 2026-07-22 | Partial |
| APIs, SDKs & MCP ExtensibilityExternal MCP server connections, a native messaging bridge to Claude Desktop and the Claude Code CLI (claude --chrome), and VS Code availability, extension analysis and integration guide 2026-07-22 | Full |
| Testing, Debugging & OptimizationNo agent testing, simulation, or optimization tooling documented, Anthropic materials 2026-07-22 | Unable to verify |
| Browser & Computer UseThe product is browser control: navigating, clicking, and filling forms through chrome.debugger CDP access that synthesizes trusted level input events, Anthropic materials and CHEQ analysis 2026-07-22 | Full |
Pricing
Included in paid Claude plans
included in Claude subscription plans
What is public
The bundling is public (beta on all paid Claude plans; Max preview gating at a reported $100 to $200 per month in 2025); the current entry plan rate was not captured in retrieved materials.
Variable cost rationale
Flat subscription bundling; model usage limits vary by plan tier rather than metered per action billing.
Sales call required
No — self-serve available
Free / trial
Not available on free plan per retrieved materials
Related vendors
- AgentQL — A self-healing query language for the web: natural language…
- Airtop — Cloud browsers for AI agents that compile plain English workflows…
- Asteroid — Supervised browser and computer use agents for regulated back…
- Astral — Browser based AI marketing agent that operates social platforms like…
- Automat AI — Managed AI agents that operate computers visually to replace legacy…
- Autotab — General AI agent that uses a mouse and keyboard like a person to do…