What Claude in Chrome Actually Is
Claude in Chrome is Anthropic’s official Chrome extension that puts an AI agent in a side panel next to the tab you’re browsing. It can see the page you’re on, and with your say-so it can read text, click links, move between pages, type into fields, and fill out forms — using the logins you already have in Chrome. It went generally available on every paid Claude plan on August 26, 2026, after a year-long staged rollout that started with 1,000 Max subscribers back in August 2025.
If you used OpenAI’s short-lived Atlas browser, this is the natural successor: agentic browsing, but inside the browser you already use instead of a separate app. Unlike a chatbot that just answers questions about a page, Claude in Chrome actually does things on it.
What It Costs and Who Gets It
There’s no free path to this one. The extension requires a paid Claude plan — Anthropic states it plainly under the install button: “Available on all paid plans.” As of a check this month, that means:
- Pro — $20/month, or $17/month billed annually ($200 up front)
- Max 5x — $100/month
- Max 20x — $200/month
- Team — per-seat business plan with admin controls
- Enterprise — custom pricing
The Free plan doesn’t get it. That’s actually worth knowing before you get excited: if you’re on Free and want to try it, Pro is the cheapest door in, and it unlocks the full extension — same as Max, just with less usage. The feature list is identical across paid tiers; you’re buying volume, not capabilities.
(If you don’t have a Claude account at all yet, this walkthrough on creating one covers the setup — you’d then add a paid plan to unlock the extension.)
What It Can Actually Do
The pitch is aimed at software that has no good API: internal dashboards, vendor portals, legacy systems, government forms, the airline rebooking page that makes you want to cry. From the side panel, Claude can:
- Read the page — the live DOM, not just a copy-paste of visible text, so it sees structure, buttons, and form fields.
- Click and navigate — links, buttons, pagination, moving between tabs.
- Type and fill forms — using your existing logins, which is the real differentiator versus the Cowork desktop app’s built-in browser (more on that below).
- Do multi-step tasks — e.g., find all the invoices in your vendor portal from Q3, download them, and list them in a table.
Since August 12, 2026, the side panel is a full Cowork session: skills, connectors, and cross-device handoff work there (how the October 2026 Cowork cloud switch changed the setup), acting on the live authenticated page. In March 2026 Anthropic also added a “Quick Mode” — an experimental faster browsing experience — and Max subscribers can pick between Sonnet 4.5 and Opus 4.6 for complex tasks.
How to Set It Up
Getting going is straightforward:
- Make sure you’re on a paid Claude plan (Pro, Max, Team, or Enterprise).
- Install the extension from the Chrome Web Store and sign in with your Claude account.
- Click the Claude icon to open the side panel next to your active tab.
- Tell it what to do in plain language — “fill out this job application with my resume details” or “find the cheapest nonstop flight on these dates.”
That’s it. No API keys, no configuration files. The extension runs as a side panel, so you can watch it work step by step and grab the tab back anytime.
The Permission Setting You Should Change on Day One
Here’s the part most writeups gloss over. There are three permission modes, found by clicking the extension icon, then the three dots in the side panel, then Extension settings:
- Manually approve — Claude pauses and asks before every action.
- Automatically approve — Claude works on its own, with a safety classifier reviewing each action against your original request; it blocks mismatches and pauses when something needs you.
- Skip all approvals — nothing pauses, nothing checks. Anthropic’s own condition for this is that you completely trust everything involved. Don’t.
Since the August 2026 general availability, the default is automatic approval — Claude now performs actions it judges safe instead of waiting on you. That means the first thing a new user should do is switch to Manually approve for the first week, and keep it that way for any session touching money or customer records. Some actions always require explicit permission regardless of mode: changing permission settings, granting authorizations, and entering potentially sensitive information.
Even in automatic mode, there are hard guardrails. Claude in Chrome won’t enter adult or pirated-content sites at all, it asks before touching financial sites, and it’s barred from trading, bypassing CAPTCHAs, and entering sensitive data. Team and Enterprise admins can set site allowlists and blocklists. And it’s desktop Chrome only — no mobile, no other Chromium browsers, and organizations under HIPAA can’t use it.
Where It Actually Shines
Honestly, this isn’t for casual web surfing. It’s for the tedious stuff:
- Form-heavy workflows — job applications, insurance quotes, grant applications, conference registrations. Things where the same information goes into forty different badly-designed forms.
- Research pulls — gathering data from sites that don’t offer downloads: prices across suppliers, apartment listings, used-car inventory.
- Portal drudgery — expense reports, benefits enrollment, pulling statements from bank portals that still look like 2009.
For small businesses, the clearest win is anything your staff currently does by clicking through the same portal every week. If the portal has no API, this is your API.
The Safety and Privacy Catch (Read This)
Anthropic has been unusually candid about one problem: prompt injection — where hidden instructions on a webpage hijack the agent — is an active, unsolved risk for browsing agents. A zero-click vulnerability was disclosed via HackerOne in December 2025 and patched by February 2026, but the general problem class remains. This is why the manual-approval recommendation above isn’t paranoia; it’s the vendor’s own architecture acknowledgment.
There’s a second, subtler boundary: Claude takes screenshots of the tabs it’s working in, and visible page content becomes part of the conversation. A browser tab can expose account balances, addresses, private messages, health information, or someone else’s personal data — and Claude can’t selectively unsee the sensitive parts of a screenshot. The Chrome Web Store disclosure says the extension may handle personally identifiable information, personal communications, location, web history, and website content. So: don’t run it on tabs with anything you wouldn’t paste into a chat window.
The practical rule: use Claude in Chrome on the task at hand, with manual approval on, and keep unrelated tabs closed while it works.
Claude in Chrome vs. Cowork vs. Claude Code
These three overlap enough that it’s worth untangling them:
- Claude in Chrome — agent in your browser’s side panel, uses your logins and your tabs.
- Cowork desktop app’s built-in browser — Anthropic also built a browser directly into the Cowork desktop app, where Claude navigates a separate browser with its own session. Deliberately separate from your browser and your logins — the safer choice for tasks you want contained. (Anthropic now runs full Cowork sessions in the Chrome side panel)
- Claude Code — the terminal-based coding agent, which can now drive the Chrome extension (
claude --chrome) with site permissions and gating.
If your task needs your signed-in accounts, Claude in Chrome is the tool. If you want Claude to browse without touching your personal sessions, use the Cowork browser. If the task touches files on your machine plus the web, pair them.
Is It Worth the $20?
For most people, the honest answer depends on how many portals you wrestle weekly. If you spend a couple of hours a month on form-filling and portal-clicking that no API or Zapier integration covers, Pro at $20/month pays for itself the first time Claude in Chrome burns through a 40-field application you’d otherwise fill by hand. If your browsing is mostly reading and watching, the extension is a solution waiting for a problem — and the Free plan stays free for a reason.
The bigger picture matters more than one extension: AI agents are moving out of chat windows and into the tools where work actually happens. Claude in Chrome is one of the first credible versions of that, from the vendor that currently cares most about safety framing. It’s not perfect — the prompt-injection caveat is real — but it finally makes “the computer does the clicking” boring and practical, which is exactly what productivity tools are supposed to do.
Frequently Asked Questions
Is Claude in Chrome free?
No. It requires a paid Claude plan: Pro ($20/month or $17/month annually), Max ($100 or $200/month), Team, or Enterprise. There is no free-tier path, and the Free plan’s $0 tier doesn’t include the extension.
How do I install Claude in Chrome?
Install it from the Chrome Web Store and sign in with a paid Claude account. It runs as a side panel next to your active tab — click the Claude icon to open it and type your task in plain language.
Can Claude in Chrome use my existing logins?
Yes — that’s the point. It acts on the live page in your own browser, using the sessions you’re already signed into. This is also why the privacy and approval settings matter: keep it on manual approval and close unrelated tabs while it works.
Is Claude in Chrome safe for banking sites?
Anthropic asks before touching financial sites and bars the agent from trading, bypassing CAPTCHAs, or entering sensitive data. But browsing agents remain vulnerable to prompt injection, and Claude screenshots the tabs it works on. Use manual approval for any money-related task, and never run it with banking tabs open in the background.
What’s the difference between Claude in Chrome and Cowork?
Claude in Chrome is a side panel inside your own browser using your logins. The Cowork desktop app has its own built-in browser where Claude works in a separate, contained session. Since September 16, 2026, Cowork’s agent features also work from any regular Claude conversation, and the Chrome side panel runs a full Cowork session with skills and connectors.
Does it work on mobile or other browsers?
No. It’s desktop Chrome only — not mobile, and not other Chromium browsers like Edge or Brave.
