Cowork
Cowork is an Anthropic product mentioned as part of Claude’s product surface. The newsletter references it only as one of the products covered by Anthropic’s containment approach.
Key Highlights
- Cowork is an Anthropic tool for multi-step AI work involving files, plugins, connectors, and app-linked workflows.
- Anthropic repeatedly groups Cowork with claude.ai and Claude Code in its cross-product agent containment strategy.
- Key product signals include local model support, Windows launch, live dashboards, and financial-services agent templates.
- Feedback from Santiago highlights a common AI product challenge: balancing safe file permissions with low-friction UX.
- For AI PMs, Cowork is a useful case study in packaging agent capabilities into practical, governed workflow software.
Cowork
Overview
Cowork is an Anthropic tool that appears across Claude’s broader product surface as a workspace for multi-step AI tasks. Based on newsletter mentions, it supports file access, plugins, MCP connectors, multi-step task execution, and integrations with apps and files. It is also positioned alongside claude.ai and Claude Code in Anthropic’s product stack, suggesting Cowork is part of Anthropic’s effort to operationalize agentic workflows beyond simple chat.For AI Product Managers, Cowork matters because it sits at the intersection of agent UX, enterprise workflow automation, and AI safety. The mentions tie it to practical product capabilities like live dashboards, financial-services agent templates, local-model support, and team productivity workflows, while also highlighting usability friction and Anthropic’s containment architecture. That makes Cowork a useful case study in how frontier-model companies are packaging agents into end-user tools while balancing utility, permissions, integrations, and risk controls.
Key Developments
- 2026-01-18: Clement Delangue unveiled local model support in Cowork, enabling users to keep data on-device instead of sending it to the cloud.
- 2026-02-11: Cowork launched on Windows with full macOS feature parity, including file access, multi-step task execution, plugins, and MCP connectors.
- 2026-03-03: Santiago criticized Cowork’s multi-step file workflow as too cumbersome for handling many or frequently changing files, arguing that native chat-based file support would be smoother.
- 2026-04-21: Claude gained the ability to build live dashboards and trackers in Cowork, connected to apps and files and refreshed with current data whenever opened.
- 2026-05-06: Claude released ready-to-run financial services agent templates for tasks like pitch building, valuation reviews, and month-end book closes, available as plugins in Cowork and Claude Code or deployable via cookbooks as Managed Agents.
- 2026-06-07: Anthropic engineers described their containment approach for increasingly capable agents across claude.ai, Claude Code, and Cowork.
- 2026-06-22: Fiona Fung explained that her Claude Code and Cowork teams use Claude Routines and cloud code remote sessions to automate management tasks such as summarizing feedback, generating pull requests, and verifying work against in-repo specs.
- 2026-06-25: Anthropic shared more detail on layered defenses used across claude.ai, Claude Code, and Cowork, including environmental sandboxing, model-layer safeguards, limiting external content, and telemetry on permission approvals and blocked actions.
- 2026-06-29: Cowork was referenced in Marc Baselga’s discussion of Fiona Fung’s “latent demand” insight, tying the tool to internal product-development learnings at Anthropic.
- 2026-07-13: Anthropic engineering again highlighted Cowork as one of the products covered by its cross-product agent containment strategy, reinforcing its role in Anthropic’s agent deployment surface.
Relevance to AI PMs
1. Study it as an agent product pattern: Cowork shows how AI tools are evolving from chat interfaces into workflow environments with files, plugins, connectors, and repeatable task execution. PMs can use it as a reference for designing agent experiences that combine planning, tools, and data access.2. Learn from the UX tradeoffs: The Santiago feedback on file workflows is a practical reminder that permissions and safety steps can create friction. PMs building agent products should map where setup overhead slows users down and look for ways to preserve safety while reducing task-switching and repetitive handoffs.
3. Use it as a benchmark for safe automation: Cowork’s repeated inclusion in Anthropic’s containment writeups makes it relevant for PMs thinking about approval flows, sandboxing, connector security, and blast-radius reduction. It illustrates that successful agent products need both strong capability surfaces and explicit operational guardrails.
Related
- Anthropic: Cowork is an Anthropic product and is repeatedly discussed as part of Anthropic’s broader Claude product surface.
- Claude: Cowork appears to be one environment where Claude-powered workflows are packaged into end-user experiences.
- Claude Code: Frequently mentioned alongside Cowork, especially for shared plugins, templates, team workflows, and containment approaches.
- claude.ai: Named together with Cowork and Claude Code in Anthropic’s cross-product containment architecture.
- MCP: Cowork supports MCP connectors, indicating interoperability with external tools and systems.
- Managed Agents: Financial-services templates available in Cowork could also be deployed via cookbooks as Managed Agents.
- Claude Routines: Fiona Fung’s team used Claude Routines in workflows spanning Claude Code and Cowork, suggesting operational automation around the product.
- Claude Desktop / desktop-commander-mcp: Related as part of the surrounding Claude tool and connector ecosystem.
- Boris Cherny, Fiona Fung, Clement Delangue, Santiago: Individuals associated with Cowork-related launches, commentary, or product/team insights.
- latent demand: Cowork was referenced in discussions of product signals and internal demand discovery within Anthropic teams.
Newsletter Mentions (11)
“#2 📝 Anthropic Engineering How we contain Claude across products - Anthropic engineers describe techniques for limiting the potential blast radius of increasingly capable agents by building containment across claude.ai, Claude Code, and Cowork.”
How Anthropic limits AI agent blast radius #1 𝕏 Alexandr Wang shows that Muse Spark 1.1 outperforms Opus, Grok 4.5, and Gemini on a new challenging finite model theory/theoretical CS benchmark, underlining its advanced reasoning capabilities. #2 📝 Anthropic Engineering How we contain Claude across products - Anthropic engineers describe techniques for limiting the potential blast radius of increasingly capable agents by building containment across claude.ai, Claude Code, and Cowork. The article shares learnings and engineering approaches used to keep product integrations safe and reliable. #3 ▶️ The Correct Way to Build and Manage AI Agents in 47 Minutes | Jared Zoneraich Peter Yang Devon orchestrates a master AI agent to launch ten cloud-based child agents in parallel, each running in its own VM to redesign a landing page and perform automated integration tests via Devon’s Test App feature. Master Devon session spawned 10 child Devons in parallel, each running in its own VM to clone the codebase, apply redesign changes on a new Git branch, and open a pull request. Devon’s Test App feature ran integration tests in a live browser VM by programmatically clicking specified UI elements on the updated landing page to verify link functionality. A single Devon agent maintained a continuous 9-hour run on Cognition’s cloud platform without human supervision, showcasing extended asynchronous execution.
“#10 in Marc Baselga highlights Fiona Fung’s “latent demand” insight from Anthropic’s Claude Code and Cowork teams.”
Referenced only as part of the latent-demand discussion around Anthropic products and teams.
“Layered defenses—environmental sandboxes/VMs/egress controls, model-layer system prompts/classifiers/training, and limiting external content—are used across claude.ai, Claude Code, and Cowork; telemetry shows users approved roughly 93% of permission prompts, Claude Code auto mode blocks about 83% of overeager behaviors before execution, Claude Opus 4.7 holds prompt-injection success to ~0.1% on single attempts (~5–6% after 100 adaptive attempts), and Claude Mythos Preview was judged too high-risk to ship in April 2026.”
Cowork is named as one of the products under Anthropic's layered defense approach. It is not otherwise elaborated on in the newsletter.
“Fiona Fung explains how her Claude Code and Cowork teams at Anthropic use Claude Routines and cloud code remote sessions to automate manager tasks—summarizing feedback, generating pull requests, and verifying against in-repo specs—enabling engineers to ship eight times more code per quarter.”
#3 ▶️ How the most AI-pilled product team builds products | Fiona Fung (Claude Code and Cowork) Lennys Podcast Fiona Fung explains how her Claude Code and Cowork teams at Anthropic use Claude Routines and cloud code remote sessions to automate manager tasks—summarizing feedback, generating pull requests, and verifying against in-repo specs—enabling engineers to ship eight times more code per quarter. Anthropic engineers ship eight times as much code per quarter in 2026 compared to 2021–2025, according to an internal AnthropicAI X.com status update. Fiona schedules a daily Claude Routine to scan all Slack feedback channels and emails, output theme summaries by morning, and auto-create PRs for bug fixes and polish.
“Anthropic engineers describe their approach to limiting the potential blast radius of increasingly capable agents by building containment systems across claude.ai, Claude Code, and Cowork.”
Anthropic’s agent containment pattern for Claude products #1 📝 Anthropic Engineering How we contain Claude across products - Anthropic engineers describe their approach to limiting the potential blast radius of increasingly capable agents by building containment systems across claude.ai, Claude Code, and Cowork. The post explains lessons learned and design decisions for safe deployment across products.
“Claude launched ready-to-run financial services agent templates for building pitches, conducting valuation reviews, and month-end book closes, available as plugins in Cowork and Claude Code or deployable via cookbooks as Managed Agents.”
#3 𝕏 Claude launched ready-to-run financial services agent templates for building pitches, conducting valuation reviews, and month-end book closes, available as plugins in Cowork and Claude Code or deployable via cookbooks as Managed Agents. Also covered by: @Claude , @Claude Code Blog
“Claude now builds live dashboards and trackers in Cowork connected to your apps and files, refreshing with current data each time you open them.”
#10 𝕏 Claude now builds live dashboards and trackers in Cowork connected to your apps and files, refreshing with current data each time you open them. #11 𝕏 Harrison Chase breaks down the end-to-end infrastructure for deploying long-horizon AI agents—covering task scheduling, state persistence, vector retrieval, prompt templating, and monitoring.
“#17 𝕏 Santiago warns that Cowork’s multi-step file workflow—granting folder access, copying files, then generating a plan—slows you down when dealing with many or changing files, and suggests native chat-based file support for a smoother experience.”
#16 𝕏 Boris Cherny shares that running `/setup-terminal` in Apple Terminal enables native paste support—see code.claude.com/docs/en/terminal-config for setup details. #17 𝕏 Santiago warns that Cowork’s multi-step file workflow—granting folder access, copying files, then generating a plan—slows you down when dealing with many or changing files, and suggests native chat-based file support for a smoother experience.
“Claude launched Cowork on Windows, delivering full MacOS feature parity with file access, multi-step task execution, plugins, and MCP connectors. Also covered by: @Boris Cherny”
#4 𝕏 Claude launched Cowork on Windows, delivering full MacOS feature parity with file access, multi-step task execution, plugins, and MCP connectors. Also covered by: @Boris Cherny
“Local Model Support in Cowork : Clement Delangue @ClementDelangue unveiled Cowork for local models , enabling users to keep data on-device instead of remote cloud.”
From X AI Product Launches & Updates Free Vibe Coding in AI Studio with Gemini 3 : Logan Kilpatrick @OfficialLoganK announced that you can now vibe code with Gemini 3 Flash and Gemini 3 Pro for free in Google AI Studio. Introducing AI Skills “npm” : Guillermo Rauch @rauchg launched 𝚜𝚔𝚒𝚕𝚕𝚜, an open, agent-agnostic ecosystem of AI capabilities installable via an npm-like CLI. Local Model Support in Cowork : Clement Delangue @ClementDelangue unveiled Cowork for local models , enabling users to keep data on-device instead of remote cloud. AI Tools & Applications Context Minimization in AI Agents : Phil Schmid @_philschmid noted that as AI agents improve at “discovery” , you can provide minimal context and then iterate when it fails.
Related
An AI coding assistant environment used for running evaluation skills and agentic workflows. In this issue it is mentioned as a runtime for ai-evals-course material and as an agent in an OpenRouter-like system.
An AI company best known for Claude. It is referenced implicitly through Claude’s memory and Cowork features.
Anthropic’s assistant, discussed here for shared memory across chat and Cowork. The feature is relevant to PMs because it enables cross-task context reuse and user-controlled memory.
A newsletter contributor or source mentioned multiple times for sharing AI product commentary. He is cited on WAN 3.0 and an OpenRouter-like agents system.
An interoperability protocol for connecting AI systems and tools. Here it is described through a public roadmap covering long-running workloads, local-server HTTP, discovery, identities, permissions, and generated SDKs.
An AI practitioner mentioned for discussing cybersecurity refusals and an unspecified system called Fable. He is cited as the source of a safety-related update.
Co-founder and CEO of Hugging Face, referenced for comparing model cost-per-task and performance. His comment highlights the economics of choosing models in real-world PM and agent workflows.
Anthropic’s desktop product for using Claude in a native app experience. The newsletter highlights enterprise availability across major cloud and enterprise environments.
Stay updated on Cowork
Get curated AI PM insights delivered daily — covering this and 1,000+ other sources.
Subscribe Free