
Mitigating the risk of prompt injections in browser use
The browser extension is a beta feature with unique risks—stay alert and protect yourself from bad actors.

A helping hand across all your tabs
Claude can navigate, click, and fill forms in your browser. Works with Claude Code, Cowork, and Claude Desktop for end-to-end workflows. Available in beta to all paid subscribers.
Let your browser work for you. Claude can navigate, click buttons, and fill forms on Chrome.
Pair Claude in Chrome with Cowork to turn web research into polished content. Chrome navigates and gathers information, Cowork produces Excel models, comparison decks, and reports without having to copy and paste.
Connect development workflows to Chrome for a partner that tests and iterates with you.

Bring Claude into your workflow to make apps work better, without leaving the browser.

Start a workflow and move on. Claude completes tasks while you focus elsewhere.

Set reports, updates, and check-ins to run daily or weekly without manual triggers.
Claude can navigate your analytics dashboard, extract the numbers you need, and compile them into a summary. No exports, no tab-switching, no manual copying.
Claude can sort through your Drive, create a folder structure, move files where they belong, and flag duplicates and old files for you to review. You approve the changes instead of doing the sorting yourself.
Claude can read your calendar, pull context from email threads, flag which meetings you need to prepare for, and book rooms if they’re missing. Run it every evening and start each day knowing what's coming.
Claude in Chrome visits competitor sites and pulls pricing, features, and positioning. Cowork compiles everything into a formatted PowerPoint ready for your next strategy meeting.
Claude can read your calendar, match attendees to Salesforce contacts, and draft activity logs for each call. You add notes and approve before anything gets created.
Claude can scan through your inbox, identify marketing emails, newsletters, and automated notifications, then present them as a list for you to review before deleting in bulk.
Claude can work in your browser and desktop
Pair Claude in Chrome with Cowork to turn research and action on the web into polished content on your desktop, without any manual handoff.
Claude in Chrome visits sites, reads data, clicks buttons, fills forms, and pulls data
Context flows automatically from Chrome to Cowork without copying and pasting
Cowork produces Excel models and comparison decks or on-brand reports
Claude brings AI directly to your browser. While powerful, this creates risks that bad actors may try to exploit.
Only grant permissions to familiar websites while learning how Claude works.
Always confirm before Claude handles financial, personal, or work-critical tasks.
Some sites may hide instructions that override yours. If Claude acts unexpectedly, pause and review.
Help improve safety by flagging concerning behavior through feedback options.
Developers can use Claude Code to build and test directly in Chrome. This integration enables faster iteration on browser-based projects.
Desktop app users can start a task in Claude Desktop and let it handle work in the browser without switching windows by enabling Claude in Chrome as a connector.
Avoid financial transactions, password management, or anything involving sensitive personal data. Start with trusted sites and familiar workflows where you're comfortable having Claude take actions. Never use it for high-stakes decisions without careful supervision. And, of course, make sure your use complies with our acceptable use policy. Learn more.
Pre-approve actions that Claude can take on websites before you start working. You can review Claude's approach upfront, then let it run. Claude will still ask before taking certain irreversible or potentially harmful actions, like making a purchase. For trusted workflows, you can choose to skip all permissions, but you should supervise Claude closely. While some safeguards exist for sensitive actions, malicious actors could still trick Claude into unintended actions. Learn more.
Browser AI faces unique security risks, like prompt injection attacks, where malicious actors might try to trick Claude into unintended actions, such as sharing your bank information or deleting important files. While we’ve implemented protections, they aren’t foolproof. Attack vectors are constantly evolving and Claude may hallucinate, leading to actions that you did not intend. We’ve shared our testing results, including possible attack scenarios, so you can make informed decisions, and strongly encourage you to read about the risks before using this product. Read blog post.
On its own, Claude in Chrome helps you navigate, extract information, and take actions in your browser. Paired with Cowork, Chrome becomes the research layer for larger tasks. Claude gathers information from the web, then Cowork produces finished files like Excel workbooks, PowerPoint decks, and formatted reports.
This article helps you resolve common issues with Claude in Chrome and explains how to provide feedback.
Using this feature and giving feedback directly improves what Claude can do.
This is a Google extension. The use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements.