Back to feed
Simon Willison·

How we contain Claude across products

Signal
75
Hype
15
In three linesAnthropic publishes detailed documentation on sandboxing techniques across Claude.ai, Claude Code, and Cowork. Uses gVisor (Claude.ai), Seatbelt/Bubblewrap (Claude Code local), and full VMs (Cowork). Includes process sandboxes, filesystem boundaries, and egress controls to prevent credential exfiltration.
Read source
Your take?
ClaudeClaude CodeAnthropicAI safetyAI Agents

Summary generated by Claude — human-verified