Opsin has announced the integration of Claude Cowork into its AI governance platform, providing security and governance teams with visibility and guardrails for Anthropic's autonomous agent. Claude Cowork allows non-developer employees to connect the AI to tools such as Slack, Gmail, HubSpot, and internal file systems to execute tasks autonomously. As Anthropic expands Cowork to web and mobile platforms with cloud-hosted sessions, the potential for ungoverned data movement increases. Opsin's update aims to mitigate these risks by monitoring tool calls and connector usage across all devices, ensuring that enterprise security teams can enable the tool without sacrificing control over sensitive corporate data.
Monitoring Autonomous Actions in Claude Cowork
Claude Cowork differs from Claude Enterprise chat by taking direct actions rather than simply answering questions. It can read and write files, update CRM records, search emails, and pull data from internal systems via connectors. Because these agents operate on behalf of employees using their individual permissions, they can trigger chains of tool calls that may move sensitive data to unauthorized external services. This risk is compounded by the fact that employees can connect Cowork to data sources independently without a formal security review or a central record of the connection.
The expansion of Cowork to web and mobile as of August 3 means sessions are now hosted in Anthropic's cloud. This allows tasks to run in the background around the clock, even when no device is online. Consequently, risky activity is no longer limited to a managed laptop or a standard workday. Opsin addresses these gaps by providing full visibility into who is running sessions, the specific prompts used, and every tool call the agent executes. By capturing chats and actions with full context across desktop, web, and mobile, Opsin transforms what would be a manual investigation into a simple lookup for security teams.
Managing Connector Risks and Data Exposure
A primary security concern with Claude Cowork is the use of connectors, which Opsin now inventories across the entire deployment. Opsin tracks which employees and sessions are utilizing specific connectors and verifies this usage against established organizational governance policies. This prevents scenarios where a connector approved for one team's workflow is used by another team to handle regulated data in violation of policy, or where an entirely unapproved tool is connected to the corporate environment.
Furthermore, Opsin provides alerts on risky actions by analyzing tool calls based on the data they touch. While summarizing a public document is considered routine, Opsin is designed to alert security teams if an agent reads sensitive folders—such as employee compensation data—and attempts to send that information through an external connector. This capability addresses a limitation in traditional Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) tools, which typically monitor predictable channels. Because an agent can chain tool calls across email, files, and SaaS apps in a single session, it creates an unpredictable channel that Opsin is positioned to govern. This integration brings Claude Cowork into Opsin's broader coverage, which already includes Claude Enterprise, Claude Managed Agents, Microsoft Copilot, ChatGPT Enterprise, and Google Gemini.
Key Takeaways
- Claude Cowork enables non-developers to connect AI to tools like HubSpot, Gmail, and Slack to execute autonomous tasks.
- As of August 3, Cowork sessions are hosted in Anthropic's cloud, allowing tasks to run on web and mobile devices even when offline.
- Opsin provides visibility into all Cowork tool calls and inventories connectors to ensure they align with corporate governance policies.
TechInsyte's Take
In our view, the integration of Opsin with Claude Cowork signals a critical shift in the AI landscape: the transition from "Chatbots" to "Agents." While the productivity potential of an autonomous agent that can update a CRM or search a file system is high, it introduces a significant governance vacuum. The fact that employees can "just click connect" to link sensitive data sources without security oversight is a major vulnerability for any CISO.
By providing a layer of visibility into the "chain of tool calls," Opsin is attempting to solve the "black box" problem of agentic AI. This suggests that for enterprise adoption of autonomous agents to be viable, third-party governance tools must evolve to monitor actions, not just prompts. We believe this move positions Opsin as a necessary intermediary for firms that want to avoid the binary choice of either blocking useful AI tools or accepting unquantified data risks.
Source: BUSINESSWIRE