{"id":75235,"date":"2026-04-25T07:29:50","date_gmt":"2026-04-25T07:29:50","guid":{"rendered":"https:\/\/www.devopsschool.com\/blog\/?p=75235"},"modified":"2026-04-25T07:29:50","modified_gmt":"2026-04-25T07:29:50","slug":"complete-visibility-table-what-your-employer-can-see-on-claude-enterprise","status":"publish","type":"post","link":"https:\/\/www.devopsschool.com\/blog\/complete-visibility-table-what-your-employer-can-see-on-claude-enterprise\/","title":{"rendered":"Complete Visibility Table: What Your Employer Can See on Claude Enterprise"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">The Core Principle (Read This First)<\/h2>\n\n\n\n<p>Regardless of which surface you use \u2014 browser, desktop app, mobile, CLI, or browser extension \u2014 <strong>as long as you&#8217;re signed into your company&#8217;s Enterprise account, the data flows into your company&#8217;s organizational scope.<\/strong> The interface is just the door; the data lives in the same Anthropic infrastructure tied to your employer&#8217;s tenant.<\/p>\n\n\n\n<p>What changes between surfaces is <strong>what data gets sent in the first place<\/strong> \u2014 not who can see it once it&#8217;s sent.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">Master Table: Surface-by-Surface Visibility<\/h2>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>Surface<\/th><th>What Gets Sent to Anthropic (and visible to employer)<\/th><th>What Stays Local (NOT visible to employer)<\/th><\/tr><\/thead><tbody><tr><td><strong>\ud83c\udf10 Browser (claude.ai)<\/strong><\/td><td>Every prompt you type, every Claude response, every file you upload, every project you create, chat titles, artifacts, web search queries, connector data fetched (Slack\/GDrive content), memory summaries, incognito chats (yes \u2014 included in exports)<\/td><td>Other browser tabs, your bookmarks, your browser history outside Claude, files on your computer that you didn&#8217;t upload<\/td><\/tr><tr><td><strong>\ud83d\udcbb Desktop App (Mac\/Windows)<\/strong><\/td><td>Same as browser \u2014 all prompts, responses, files, projects. Plus any Desktop Extensions you use.<\/td><td>Files on your local disk you didn&#8217;t share with Claude, other desktop apps, system-level activity<\/td><\/tr><tr><td><strong>\ud83d\udcf1 Mobile App (iOS\/Android)<\/strong><\/td><td>All prompts, responses, photos you upload, voice mode transcripts, mobile-specific platform info (iOS\/Android), device ID<\/td><td>Other apps on your phone, photos you didn&#8217;t upload, location (unless shared), contacts<\/td><\/tr><tr><td><strong>\u2328\ufe0f Claude Code (CLI in terminal)<\/strong><\/td><td><strong>Every file Claude reads<\/strong> (full contents), every prompt you type, every command Claude runs, every command&#8217;s output, every code edit\/diff, full session transcripts, git context Claude sees, environment variables Claude reads (\u26a0\ufe0f including <code>.env<\/code> secrets if exposed)<\/td><td>Files Claude <strong>didn&#8217;t<\/strong> read, your local shell history, other terminal windows, processes Claude didn&#8217;t touch, databases\/APIs Claude didn&#8217;t connect to<\/td><\/tr><tr><td><strong>\ud83c\udf10 Claude Code on the Web<\/strong><\/td><td>Everything CLI sends + the cloned repo runs in <strong>Anthropic-managed VM<\/strong>, so even more is exposed (entire repo accessible to the sandbox)<\/td><td>GitHub credentials (handled via secure proxy, never enter the sandbox)<\/td><\/tr><tr><td><strong>\ud83e\udde9 Claude for Chrome (browser extension)<\/strong><\/td><td>Pages Claude reads\/acts on, prompts, what Claude does on websites, form data Claude fills in or extracts<\/td><td>Pages you visit when extension is not active, your other browsing<\/td><\/tr><tr><td><strong>\ud83d\udcbc Claude for Slack<\/strong><\/td><td>Slack messages Claude is asked to process, prompts you send, channels Claude accesses<\/td><td>Slack DMs\/channels Claude wasn&#8217;t invited to or asked about<\/td><\/tr><tr><td><strong>\ud83d\udcca Claude for Excel \/ PowerPoint \/ Word<\/strong><\/td><td>The spreadsheet\/doc\/deck content sent to Claude, your prompts, Claude&#8217;s edits<\/td><td>Other files on your computer, files you didn&#8217;t open with Claude<\/td><\/tr><tr><td><strong>\ud83d\udd0c Connectors (GDrive, Gmail, Jira, etc.)<\/strong><\/td><td>The specific data Claude pulled via the connector for your prompt, the prompt itself, Claude&#8217;s response using that data<\/td><td>Connector data Claude didn&#8217;t fetch for a specific request<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">What Employer Can See \u2014 By Mechanism (All Surfaces)<\/h2>\n\n\n\n<p>These three mechanisms apply across <strong>every surface<\/strong> above:<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>Mechanism<\/th><th>Available To<\/th><th>What It Reveals<\/th><th>Available On<\/th><\/tr><\/thead><tbody><tr><td><strong>Analytics Dashboard \/ API<\/strong><\/td><td>Owners &amp; Admins<\/td><td>Per-user message counts, conversations created, files uploaded, projects, models used, connectors used, Claude Code commits\/PRs\/lines of code \u2014 <strong>no content<\/strong><\/td><td>Team &amp; Enterprise<\/td><\/tr><tr><td><strong>Audit Logs<\/strong><\/td><td>Owners &amp; Primary Owners<\/td><td>Every login (with IP, device, user agent), every chat created\/deleted, every file upload, every project action, conversation rename labels \u2014 <strong>metadata + IPs, no chat content<\/strong><\/td><td><strong>Enterprise only<\/strong><\/td><\/tr><tr><td><strong>Data Exports<\/strong><\/td><td>Primary Owner only<\/td><td><strong>Full chat content, full file contents, all prompts and responses across all surfaces, including incognito chats<\/strong><\/td><td>Team &amp; Enterprise<\/td><\/tr><tr><td><strong>Compliance API<\/strong><\/td><td>Primary Owner only<\/td><td><strong>Real-time programmatic access to chat data, file content, and Claude Code session logs<\/strong> \u2014 pipes into Splunk\/Datadog\/SIEM<\/td><td><strong>Enterprise only<\/strong><\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">Detailed Surface Breakdowns<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">\ud83c\udf10 Browser (claude.ai)<\/h3>\n\n\n\n<p><strong>Visible to employer:<\/strong> Every message, every uploaded file, project knowledge bases, chat titles, artifacts you create, web search queries, results from connectors, memory summaries, voice transcripts, incognito chats (yes), login IPs\/devices.<\/p>\n\n\n\n<p><strong>NOT visible:<\/strong> Your other browser activity. The employer doesn&#8217;t see what other tabs you have open or what you&#8217;re searching on Google.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">\ud83d\udcbb Desktop App<\/h3>\n\n\n\n<p>Same data flow as the browser \u2014 desktop is just a packaged web view. <strong>No extra privacy<\/strong> from using the desktop app vs. browser. Treat them as identical for visibility purposes.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">\ud83d\udcf1 Mobile App<\/h3>\n\n\n\n<p>Same data flow as browser\/desktop, plus the audit log specifically captures <code>client_platform<\/code> (iOS or Android), so employer can tell you used Claude from a phone vs. a computer.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">\u2328\ufe0f Claude Code (Command Line) \u2014 The Highest-Risk Surface<\/h3>\n\n\n\n<p>This is where developers most often misunderstand. <strong>The CLI is local; the AI is not.<\/strong><\/p>\n\n\n\n<p>What gets sent:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Every file Claude reads<\/strong> is transmitted in full to Anthropic&#8217;s servers<\/li>\n\n\n\n<li><strong>Every prompt<\/strong> you type<\/li>\n\n\n\n<li><strong>Every bash command<\/strong> Claude runs (and its output)<\/li>\n\n\n\n<li><strong>Every code change<\/strong> (diffs, commits Claude touches)<\/li>\n\n\n\n<li><strong>Full session transcripts<\/strong> (locally cached for 30 days at <code>~\/.claude\/projects\/<\/code> AND on Anthropic&#8217;s servers)<\/li>\n\n\n\n<li><strong>Environment variables Claude reads<\/strong> \u2014 including <code>.env<\/code> files (Claude Code has been documented to auto-load <code>.env<\/code> files, potentially exposing secrets)<\/li>\n<\/ul>\n\n\n\n<p>What stays local:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Files Claude <strong>didn&#8217;t read<\/strong>. Claude Code uses selective file reading \u2014 only files explicitly opened\/read are transmitted, not your entire disk.<\/li>\n\n\n\n<li>Your shell history outside Claude Code<\/li>\n\n\n\n<li>Local databases, running processes, network services \u2014 unless Claude was told to interact with them<\/li>\n<\/ul>\n\n\n\n<p><strong>Practical implication for repos:<\/strong> If you <code>cd<\/code> into a repo and ask Claude Code to &#8220;understand this codebase,&#8221; Claude will read many files. Each file it reads = sent to Anthropic = retrievable by your Primary Owner via Compliance API.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">\ud83c\udf10 Claude Code on the Web (Cloud Sandbox)<\/h3>\n\n\n\n<p>Even more exposed than CLI. Your <strong>entire repo gets cloned into an Anthropic-managed VM<\/strong>. Everything in that VM is in Anthropic&#8217;s infrastructure under your company&#8217;s account.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">\ud83e\udde9 Claude for Chrome<\/h3>\n\n\n\n<p>The browser extension only sees what you direct it to see, but anything it processes (pages, form data) is sent to Anthropic. Pages you browse without invoking Claude are not sent.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">\ud83d\udd0c Connectors (Slack, Google Drive, Gmail, Jira, etc.)<\/h3>\n\n\n\n<p>Connectors fetch specific data per prompt. So when you ask Claude &#8220;summarize my recent emails,&#8221; the relevant emails get pulled to Anthropic to process \u2014 those email contents are now in your company&#8217;s Claude data scope. Connector data Claude didn&#8217;t fetch stays where it was.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">What&#8217;s Visible \/ Not Visible \u2014 Quick Reference<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">\u2705 Your Employer CAN See<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Full content of every prompt you typed (any surface)<\/li>\n\n\n\n<li>Full content of every Claude response (any surface)<\/li>\n\n\n\n<li>Every file you uploaded or Claude read<\/li>\n\n\n\n<li>Code Claude read in your repos via Claude Code<\/li>\n\n\n\n<li>Commands Claude executed via Claude Code<\/li>\n\n\n\n<li>Every login: time, IP, device, browser<\/li>\n\n\n\n<li>Every chat creation, rename, deletion<\/li>\n\n\n\n<li>Every project you create, share, delete<\/li>\n\n\n\n<li>Connector data Claude pulled (Slack messages, Drive files, etc.)<\/li>\n\n\n\n<li>Voice mode transcripts<\/li>\n\n\n\n<li>Incognito chat contents (via data export, not from UI)<\/li>\n\n\n\n<li>Memory summaries<\/li>\n\n\n\n<li>Artifacts you created<\/li>\n\n\n\n<li>Web searches Claude performed for you<\/li>\n\n\n\n<li>Usage frequency and patterns per user<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">\u274c Your Employer CANNOT See<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Your activity in other apps\/tabs\/windows (anything outside Claude)<\/li>\n\n\n\n<li>Files on your local disk Claude never read<\/li>\n\n\n\n<li>Personal account activity if you also have a personal Claude account on a different email<\/li>\n\n\n\n<li>Your local shell history outside Claude Code sessions<\/li>\n\n\n\n<li>Other people&#8217;s prompts (they can only see their own org&#8217;s data)<\/li>\n\n\n\n<li>The Claude model&#8217;s &#8220;thinking&#8221; beyond what&#8217;s transmitted as output<\/li>\n\n\n\n<li>Anything you typed <em>before<\/em> signing in \/ on a personal device with personal credentials<\/li>\n\n\n\n<li>Activity on local AI tools that aren&#8217;t Claude (Ollama, etc.)<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">\u26a0\ufe0f Common Misconceptions<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>&#8220;Incognito chats are hidden from my employer&#8221;<\/strong> \u2014 False. They&#8217;re hidden from your sidebar, but included in data exports.<\/li>\n\n\n\n<li><strong>&#8220;Deleting a chat erases it&#8221;<\/strong> \u2014 Partial. The deletion is logged. Content may already be in earlier exports\/Compliance API streams.<\/li>\n\n\n\n<li><strong>&#8220;Claude Code is local because I run it in my terminal&#8221;<\/strong> \u2014 False. Code and prompts go to Anthropic&#8217;s cloud.<\/li>\n\n\n\n<li><strong>&#8220;My company doesn&#8217;t have Compliance API enabled, so I&#8217;m safe&#8221;<\/strong> \u2014 Maybe today, not necessarily forever. Data exports work without Compliance API and capture the same content.<\/li>\n\n\n\n<li><strong>&#8220;My personal Pro account is mixed with work&#8221;<\/strong> \u2014 Only if you signed in with the same email. Different emails = different scopes. Verify which account you&#8217;re signed into.<\/li>\n<\/ul>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">The Decision Framework<\/h2>\n\n\n\n<p><strong>Use your work Claude account (any surface) for:<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Work tasks within your job scope<\/li>\n\n\n\n<li>Company codebases you&#8217;re authorized to access<\/li>\n\n\n\n<li>Work documents, work emails, work projects<\/li>\n<\/ul>\n\n\n\n<p><strong>Switch to a personal Claude account (separate email) for:<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Personal coding projects<\/li>\n\n\n\n<li>Job hunting \/ resume \/ interview prep<\/li>\n\n\n\n<li>Personal finances, health, relationships, legal<\/li>\n\n\n\n<li>Side gigs \/ freelance work<\/li>\n\n\n\n<li>Learning unrelated to your role<\/li>\n\n\n\n<li>Anything you&#8217;d not be comfortable explaining to HR<\/li>\n<\/ul>\n\n\n\n<p><strong>Never put into any Claude surface (work OR personal):<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Production credentials, API keys, passwords<\/li>\n\n\n\n<li>Other people&#8217;s confidential data without authorization<\/li>\n\n\n\n<li>Code from previous employers or competitors<\/li>\n<\/ul>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">The One-Sentence Rule<\/h2>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p><strong>If you&#8217;re signed into your work Claude account, assume your employer can read every prompt, every response, every file, and every line of code that touches Claude \u2014 across all surfaces.<\/strong><\/p>\n<\/blockquote>\n\n\n\n<p>That single rule is conservative, accurate, and will keep you safe in 100% of situations.<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>S.No<\/th><th>Article Title<\/th><th>Reference Link<\/th><\/tr><\/thead><tbody><tr><td>1<\/td><td><strong>What Your Employer Can See on Claude Enterprise \u2013 A Complete Transparency Guide<\/strong><\/td><td><a href=\"https:\/\/aiopsschool.com\/blog\/what-your-employer-can-see-on-claude-enterprise-a-complete-transparency-guide\/\" target=\"_blank\" rel=\"noopener\">https:\/\/aiopsschool.com\/blog\/what-your-employer-can-see-on-claude-enterprise-a-complete-transparency-guide\/<\/a><\/td><\/tr><tr><td>2<\/td><td><strong>Claude Enterprise Transparency Guide for Employees<\/strong><\/td><td><a href=\"https:\/\/www.rajeshkumar.xyz\/blog\/claude-enterprise-transparency-guide-for-employees\/\" target=\"_blank\" rel=\"noopener\">https:\/\/www.rajeshkumar.xyz\/blog\/claude-enterprise-transparency-guide-for-employees\/<\/a><\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Core Principle (Read This First) Regardless of which surface you use \u2014 browser, desktop app, mobile, CLI, or browser extension \u2014 as long as you&#8217;re signed into your company&#8217;s&#8230; <\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"_joinchat":[],"footnotes":""},"categories":[11138],"tags":[],"class_list":["post-75235","post","type-post","status-publish","format-standard","hentry","category-best-tools"],"_links":{"self":[{"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/posts\/75235","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/comments?post=75235"}],"version-history":[{"count":1,"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/posts\/75235\/revisions"}],"predecessor-version":[{"id":75236,"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/posts\/75235\/revisions\/75236"}],"wp:attachment":[{"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/media?parent=75235"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/categories?post=75235"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.devopsschool.com\/blog\/wp-json\/wp\/v2\/tags?post=75235"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}