Anthropic has introduced a public beta that lets Claude Team and Enterprise customers run Claude Code cloud sessions on infrastructure inside their own networks rather than in Anthropic-hosted environments. Organizations control the execution environment, files, credentials, tool use, and network egress, but model inference remains with Anthropic, so this is a hybrid deployment rather than fully self-hosted Claude. Anthropic notes that customers assume the operational burden and recommends its managed environment for most teams.
Anthropic is a consequential platform provider newly productising Scott’s existing pattern: keep the coding agent’s execution, files, credentials, and network boundary under organisational control while using remote frontier-model inference. This directly bears on his Claude Code usage and active OpenClaw/SiloOS work, while the retained Anthropic inference dependency makes it validation of hybrid architectural containment rather than full self-hosting.
ip:framework.siloosip:concept.sandboxed-executionip:concept.architectural-containmentdev:project.openclawdev:technology.claude-coderadar:concept.agent-runtimeradar:concept.agent-sandboxingradar:concept.credential-isolationradar:concept.enterprise-agentsradar:sandy-coding-agent-sandbox
queries asked of Scott's wikis
- self-hosted coding-agent execution
- hybrid agent control plane and data plane
- coding-agent sandbox trust boundaries
- enterprise credential governance for agents
- private tool execution with remote inference
- operational ownership of agent harnesses
now 0 pts/hpeak 0 pts/hcomments 0/hpeers p14momentum: steady3 platformsage 907h
points/hour across evidence · reading as of 2026-10-12 02:59:37.977291+11:00 · deterministic, not a model opinion
2026-09-17T13:40:37Z
The JPMorgan Devspace report adds a concrete enterprise containment lead, but the truncated secondary account neither establishes use of Anthropic’s self-hosted environments nor demonstrates effective credential isolation. It strengthens the architectural motivation without independently corroborating this product’s deployment or governance claims.
2026-09-17T13:22:27Z
evidence attached: reddit.post.1wit5yg — Independent enterprise deployment evidence materially contextualizes whether sandboxed, least-privilege environments can make Claude Code practical for governed internal use.
2026-09-16T13:33:06Z
The new user report supplies a concrete motivation for operator-controlled execution—retaining customized Claude Code hooks and skills—but describes a separate remote-control workflow, not adoption of Anthropic’s reported self-hosted environments. It therefore adds adjacent demand evidence without corroborating the product’s deployment or governance claims.
2026-09-16T13:22:40Z
evidence attached: reddit.post.1whwjtg — An independent user-built remote-control workflow shows practical demand for running Claude Code on operator-controlled infrastructure while preserving local hooks, skills, and policy files.
2026-09-09T23:34:02Z
No new evidence advances the case from a reported deployment option to demonstrated organization-controlled operation. Its architectural relevance remains intact, but the reconstructed quickstart testimony does not validate the cached access, isolation, or governance details; another announcement-only check would add little.
2026-09-07T22:33:11Z
The case remains an architecturally relevant hybrid-deployment announcement, not demonstrated private or governed operation. This check adds neither independently inspected documentation nor implementation evidence; the reconstructed guide testimony and HN pointer do not constitute independent corroboration.
2026-09-05T22:22:57Z
No new evidence changes the hybrid-deployment interpretation or establishes practical governance benefits. The supplied guide reference is reconstructed testimony, not independently inspected documentation; implementation evidence remains the missing step, rather than further announcement coverage.
2026-09-03T21:36:40Z
The first-party beta and deployment guide establish a real hybrid, organization-controlled execution option, moving the case beyond a speculative seed. No independent implementation, adoption, or security validation has appeared, so practical significance remains unsettled and attention can cool.
2026-09-03T21:27:51Z
grounded: converges/high — Anthropic is a consequential platform provider newly productising Scott’s existing pattern: keep the coding agent’s execution, files, credentials, and network b
2026-09-03T21:23:42Z
case created — A first-party deployment guide is a concrete new artifact for privately operated Claude Code execution.