Skip to main content

Set up and manage the new unified Claude experience for your Enterprise organization

The new unified Claude experience brings chat and Cowork together on web, desktop, and mobile. Members no longer choose between chat and Cowork before they start. Every conversation starts as a chat, and when a task needs to run code or work with files, Claude continues the same conversation in an isolated cloud sandbox managed by Anthropic, then returns the finished work for review.

This article explains how admins turn on the new unified Claude experience, which settings apply to it, and how it fits your security, compliance, and data retention setup.

The new unified Claude experience is in public beta for Claude Enterprise plans. In your admin settings it appears as Chat and Cowork unified (beta). The new unified Claude experience is off by default. Nothing changes for your organization until an admin turns it on.


How the new unified Claude experience works

  1. One conversation, two modes. The new unified Claude experience starts as a chat and moves into a Cowork cloud session when a task needs agentic work, and goes back to chat when it doesn't. Members aren't asked to switch modes.

  2. Agentic work runs in an isolated cloud sandbox. Each conversation that needs one gets its own virtual machine, managed by Anthropic. After a few minutes idle, the virtual machine is stopped and its disk is saved as an encrypted snapshot. The sandbox environment expires 30 days after it was created.

  3. The conversation stays on record. Chat history, sharing, export, the Compliance API, and your data retention setting all work from the conversation.

  4. Work moves across devices. Members can start a task on the desktop app and pick it up on web or mobile.

  5. Local access stays optional. Through the Claude desktop app, members can link their computers so Claude can work with local folders, local MCP servers, and applications. Your Remote control and device policies govern this.


Before you begin

The new unified Claude experience requires two capabilities to be on for your organization:

  1. Chat, since chat is where every conversation starts.

  2. Cloud code execution and file creation, since agentic work runs remotely.

It doesn't require Cowork or Cowork in the cloud to be on. It is meant to replace both over time.

Your organization today

What to do

Chat only

Turn on Chat and Cowork unified (beta). You don't need to turn on Cowork or Cowork in the cloud separately. Make sure Cloud code execution and file creation is on.

Cowork only, or Cowork and Cowork in the cloud

Turn on the Chat capability, then turn on Chat and Cowork unified (beta). Make sure Cloud code execution and file creation is on.

Chat and Cowork

Make sure Cloud code execution and file creation is on, then turn on Chat and Cowork unified (beta).

The new unified Claude experience isn't available yet for organizations that use zero data retention (ZDR), the HIPAA-ready configuration, or customer-managed encryption keys (CMEK). See Current limitations below.


Turn on the new unified Claude experience

For your whole organization

  1. Sign in to Claude as an Owner or Primary Owner.

  2. Turn on Chat and Cowork unified (beta).

  3. Ask members to refresh the Claude app if they don't see the new experience right away.

This turns on the new unified Claude experience for every member of your organization. To limit access to specific members, use roles instead.

Scheduled tasks and session history will continue working after the change. You don’t need to update or recreate anything.

For specific members, using roles

If your organization uses custom roles, you can grant the new unified Claude experience to specific roles:

  1. Open the role you want to update and go to “Capabilities.”

  2. Turn on Chat and Cowork unified (beta) for that role.

  3. Assign the role to the members who should have access. You can sync role membership through SCIM to add members in waves.

Access is checked on every request. If you remove a member's role or turn the setting off, they lose access to the new unified Claude experience.

To learn how to create a role, see Set up role-based permissions on Enterprise plans.

Recommended rollout

  1. Share this article with your IT, security, and procurement teams.

  2. Complete your security review. Most teams review two components they already know: Claude chat and Cowork in the cloud. If a review of Cowork in the cloud is already underway, it carries over.

  3. Start in your sandbox organization, if you have one, or with a pilot group through a role.

  4. Review your network egress, connector, sharing, and remote control settings before you turn the experience on.

  5. Monitor usage and gather feedback for two to four weeks, then expand in waves.


Admin settings that apply to the new unified Claude experience

Setting

Where

How it applies to the new unified Claude experience

Chat and Cowork unified (beta)

Organization settings > Capabilities

Turns the new unified Claude experience on for the organization. Off by default. Changes are recorded in the activity feed.

Chat and Cowork unified (per role)

Organization settings > Roles > Capabilities

Grants the new unified Claude experience to members of a role.

Allow network egress

Organization settings > Capabilities > Code execution

Controls which internet destinations code in the sandbox can reach: off, package managers only, a custom list of domains, or all domains. Off by default for Enterprise.

Connector policies (Blocked, Needs approval, per-role restrictions)

Organization settings

Enforced by Anthropic outside the sandbox, on every connector call.

Always allow for connector tools

Organization settings

When off, members can't give a connector tool a standing approval, and Claude asks each time.

Allow "Skip all approvals" mode

Organization settings

When off, users can’t let Claude act without asking for approval — including using tools, editing files, and browsing websites. This specifically applies to scheduled tasks and the built-in browser in the unified experience.

Allow “Automatically approve” mode

Organization settings

When off, users can’t let Claude approve actions on its own. The user must approve each one — including using tools, editing files, and browsing websites.

Share chats and Share cloud sessions

Organization settings

A conversation that has used its sandbox can be shared only when both settings are on. The more restrictive setting applies.

Remote control

Organization settings

When off, web and mobile can't use a member's linked computer.

Require Trusted Devices

Organization settings

Require members to verify each new device before it can connect to Claude on their computer remotely.

Scheduled tasks

Organization settings

When off, scheduled tasks that execute remotely are disabled for your org. Users will not be able to create new scheduled tasks in the cloud.

Custom data retention

Organization settings

Governs conversations and projects. See Data retention and deletion below.

Compliance API

Organization settings

Covers conversations in the new unified Claude experience with your existing access keys. For setup and endpoint reference, see Access the Compliance API and the Compliance API documentation.

Analytics API

Organization settings

Covers analytics for the new unified Claude experience with your existing access keys. Please refer to the Analytics API documentation.

Admin API

Organization settings

Works with your existing access keys. The new unified Claude experience appears as the chat_cowork_unified permission when you list a custom role's permissions. For endpoint reference, see the Admin API documentation.

Open Telemetry (OTEL)

Organization settings

If you've set up OpenTelemetry export, a conversation's cloud session sends the same events as other cloud sessions (metadata only, by default). Anthropic recommends using Compliance API.

Device policy for the Claude desktop app

Your device management (MDM) tool

On managed computers, limits which folders can be connected, disables user-added local MCP servers and extensions, and can require sign-in to your organization. See Enterprise configuration for Claude Desktop.

Identity settings carry over unchanged. Members sign in to Claude as members of your organization, and your SSO (SAML/OIDC), SCIM provisioning, and tenant restrictions apply. The new unified Claude experience adds no separate sign-in.

For recommended Security settings and architecture, see Unified Claude and Cowork security best practices.


Data retention and deletion

  1. Conversations. Conversations are kept until the member deletes them or according to your organization's custom data retention setting (30-day minimum). See custom data retention.

  2. Cloud sessions started from a conversation. When Claude starts a cloud session in a conversation, that session is deleted together with the conversation per our data retention practices: when a member deletes the conversation or its project, or when it reaches your custom retention period. The sandbox environment expires 30 days after it was created, and the conversation then continues in a fresh environment.

  3. Cloud sessions started outside a conversation. Cowork cloud sessions that a member starts on their own, whether or not they're in a project, and scheduled task runs don't belong to a conversation. Custom data retention doesn't cover them.

  4. Once the new unified Claude experience is turned on, memory will no longer be deleted according to your organization’s custom data retention setting for the public beta. Memory deletion will be covered by custom data retention when the new unified Claude experience is generally available.


Manage access and spend

  1. Pricing stays usage-based, and the spend controls you have today apply.

  2. Spend limits can be set at the organization, group, and member level.

  3. Usage analytics break out chat, Cowork, and the new unified Claude experience.

  4. Models: The model allowlist you set applies to both chat and agentic work in the new unified Claude experience.


Usage and analytics

The new unified Claude experience gets its own line in your reports. When a member has access to the new unified Claude experience, their chat and Cowork usage is reported under Chat and Cowork unified (beta), not under Chat or Cowork. Think of it as a new folder for the same work: only where the usage is filed changes, so moving usage to this line doesn't change how it's counted or billed.

How usage is counted

  • Counting follows each member. Usage counts toward the new unified Claude experience if the member has access to it when the usage happens. If you turn it on for some roles first, your reports can show Chat, Cowork, and Chat and Cowork unified (beta) on the same day.

  • It covers chat and Cowork. A member's chats, their cloud sessions, and their use of the Cowork desktop app count toward the new unified Claude experience.

  • Other products keep their own line. For example, Claude Code and Claude in Chrome usage is still reported under those products.

  • Past usage stays where it is. Data for the new unified Claude experience starts the day a member first gets access. Usage from before then stays under Chat or Cowork. If you turn the new unified Claude experience off, past unified usage keeps its Chat and Cowork unified (beta) label, and new usage goes back to Chat and Cowork.

  • Include it when you add things up. When you add up spend, tokens, or messages for Chat and Cowork, include Chat and Cowork unified (beta) too. Otherwise your Chat and Cowork numbers will seem to drop as members move over. For the number of people, use the overall active users count rather than adding products together, since one person can be active in more than one.

In the analytics dashboard

  • A page of its own. Admins who can view analytics will find a Chat and Cowork unified page under Apps, marked Beta. It shows daily active users.

  • Across the dashboard. You can pick "Chat and Cowork unified (beta)" in the Active users, Active members, Total spend, and Spend by model charts. The See all members table on the Overview page has a "Messages in Chat and Cowork unified (beta)" column. The Top connectors and Top skills cards don't include it yet.

  • Who sees it. The page appears for every organization that can turn on the new unified Claude experience, whether or not it is on yet.

  • Give it a day or two. New activity can take up to two days to show up.

In the APIs

  • Your keys already work. If you already use these APIs, your existing access keys work. If your scripts check responses against a fixed list of fields or products, add the new ones.

  • Cost and Usage API. Tokens and spend for the new unified Claude experience are reported under the product value chat_cowork_unified. You can filter to it with products[]. The chat and cowork values still work, and cover usage from members who didn't have the new unified Claude experience at the time.

  • Analytics API. Member, skill, and connector rows have a chat_cowork_unified_metrics object with two parts: chat, for chat activity, and sessions, for cloud sessions and the Cowork desktop app. Daily summaries add daily, weekly, and monthly active user counts for the new unified Claude experience, such as chat_cowork_unified_daily_active_user_count.

What members see

Members with usage-based seats see their own usage of the new unified Claude experience on their usage page, listed as Chat and Cowork unified (beta).

Unified smart report and analytics chat

To learn how to create a smart report, refer to Get started with smart reports. When choosing products to run the report for, choose “Chat and Cowork unified (beta)” to run the report against the new unified Claude experience.


Efficient mode for the new unified Claude experience

When on, org members can use only Sonnet and Haiku models in the new unified Claude experience, and new sessions start on Claude Sonnet 5.5 at low effort. Other products aren’t affected. As lower-cost models become available, Anthropic may update the default model and effort level to keep the best balance of performance and cost.

How to access it: Owners can turn it on for the whole org on the Models page, or for specific custom roles on each role's Models tab.


Current limitations

  1. ZDR, HIPAA, and CMEK. The new unified Claude experience isn't available to organizations with zero data retention, the HIPAA-ready configuration, or customer-managed encryption keys. These organizations stay on their current configuration. HIPAA and CMEK support is expected after general availability.

  2. Per-role access for Remote control and scheduled tasks. These are set for the whole organization, not per role.

Did this answer your question?