arjunchint 10 hours ago

Quick takeaways from Anthropic's Research Preview Extension:

- Using VERY HIGH RISK Debugger Permission that malicious websites can exploit to get device access. Very surprising a major tech company shipping product with such risky permissions to consumers. More info on debugger risks: https://dspace.networks.imdea.org/bitstream/handle/20.500.12..., https://issues.chromium.org/issues/40091993.

- Prompt injection risks combined with Debugger permission on user device is asking for trouble.

- Will trigger captchas/bot detection even on your normal browsing due to this permission.

- Kind of slow. Limited to current open tab as opposed to capability of multi tab action because only current active tab get rendered. For example rtrvr.ai can open a batch of tabs and take actions on background tabs.

- For some websites like Bloomberg asking to go to claude.com

quarkcarbon279 10 hours ago

Yeah when building for consumers on their devices, security is of outmost importance. I tried on couple use cases too. They currently use Sonnet and this is very initial version so it sometimes fails on picking the right tools. Some actions fail, for example I used their calendar template it failed to Save in the end.

Would love to see if they have cost breakdown for the task haha. It took so many actions, can be optimized + screenshots for one task.