Anthropic Reveals Sandbox Technologies Used Across Claude Products
Key point
Anthropic has revealed the various sandbox and isolation technologies applied to each product, including Claude.ai and Claude Code.
Details
Anthropic detailed the sandbox and isolation technologies used to limit the scope of agent actions across its product lineup, including Claude.ai, Claude Code, and Claude Cowork.
The technologies applied by product are as follows:
- Claude.ai: Process isolation via gVisor
- Claude Code (local execution): Utilizes Seatbelt on macOS and Bubblewrap on Linux
- Claude Cowork: Builds full VM environments using Apple Virtualization framework on macOS and HCS on Windows
These technologies aim to prevent agents from hijacking privileges or leaking data externally through process sandboxes, VMs, file system boundaries, and egress control.
This summary was generated automatically by AI. Check the original for the author's claims and context. Copyright belongs to the original author.
Our guide explains how the AI works. Report summary errors, attribution issues, or removal requests via Contact.