How Anthropic contains Claude across products — sandboxes, VMs, and egress controls
Published 2026-05-30Ingested 2026-06-01AI Engineering PracticesHigh
Summary
Anthropic published a detailed account of how it constrains Claude agents across its product surfaces, built on the principle of hard boundaries — process sandboxes, virtual machines, filesystem restrictions, and egress controls. The governing maxim: "if credentials never enter the sandbox, they can't be exfiltrated, regardless of whether the cause is a user, a model finding a 'creative' path, or an attacker." The containment posture is treated as defense-in-depth that does not rely on the model
Radar Context
Claude Code
Alignment: Reinforces current position
Related Positions: AI Governance and Risk, Agentic Workflows
Related Partnerships: Anthropic
anthropicagent-securitysandboxinggvisorvirtual-machinesegress-controlclaude-codeclaude-coworkgovernancedata-exfiltration