AI Briefing
KO

Claude Browser Hook

·2026.04.21 15:41

Key point

Claude Desktop automatically installed a Native Messaging host into multiple Chromium browsers on macOS.

Details

It has been suggested that installing Claude Desktop on macOS creates com.anthropic.claude_browser_extension.json at multiple Chromium browser paths, without the user separately granting permission.

The verification points are as follows.

  • 7 paths: Brave, Chrome, Edge, Chromium, Arc, Vivaldi, Opera
  • Each manifest had the same MD5 hash, and the Chrome Extension MCP log recorded installation as complete
  • The helper binary is /Applications/Claude.app/Contents/Helpers/chrome-native-host, distributed with an Anthropic signature
  • Based on com.apple.provenance and modification timestamps, it is suggested that the file was rewritten later

According to Anthropic's documentation, this bridge is connected to browser automation features such as shared login state, DOM/console reading, form input, and session recording, and the post also cites the publicly disclosed figure that Claude for Chrome's prompt injection attack success rate dropped from 23.6% to 11.2%.

This summary was generated automatically by AI. Check the original for the author's claims and context. Copyright belongs to the original author.

Our guide explains how the AI works. Report summary errors, attribution issues, or removal requests via Contact.