Skip to main content
The Human Bit
← All signals
Claude✓ ReviewedTest carefullyChecked 3 September 2026

Claude Enterprise can now ask your security team before it answers.

Inference hooks route every Claude Enterprise prompt, context and tool response through a customer security server for an allow-or-deny verdict before the model sees it, one policy across chat, Claude Code and Cowork.

Bit, the Human Bit guide

Bit’s takeaway

What not to assumeDo not treat an inference hook as proof that nothing sensitive reaches the model; it enforces the policy somebody wrote, including that policy's gaps.

What changed

Anthropic launched inference hooks in beta for Claude Enterprise. Requests travel over a signed WebSocket to a data-loss-prevention server the customer controls, which returns allow or deny before inference begins. It covers chat, Claude Code, Cowork and tool calls through MCP connectors, skills and plugins, integrates with Netskope, Palo Alto Networks, Proofpoint and Zscaler or a custom server, and supports shadow mode, role exclusions and percentage rollouts.

Why it matters

Until now, stopping sensitive data reaching an AI model relied on training and hope. A checkpoint before inference turns policy into enforcement, but it also means somebody has to write the policy, and a badly tuned one silently blocks legitimate work or waves through what it should not.

Who should care

  • Security and compliance teams governing enterprise AI use
  • IT leaders rolling Claude out to teams handling regulated data

What to do

Start in shadow mode against real traffic and read what would have been blocked before enforcing anything. Assign an owner for false positives, and treat the hook as one control in a review chain, not proof that nothing sensitive gets through.

The human take

Tools change fast. Your judgment matters more.

A person writes the policy, owns the false positives and decides what the checkpoint should catch. The hook only enforces that judgement.

Affected guidance

Put this to work

Verified facts

  • Anthropic launched inference hooks in beta for Claude Enterprise, routing prompts, context and tool responses through a customer-controlled security server for an allow-or-deny verdict before inference, across chat, Claude Code and Cowork.Checked

Sources and method

Checked
Review due
Owner
The Human Bit editorial

The Human Bit Weekly

The useful changes, not every launch.

One short issue every Monday. What changed, what it means for your work, and the part that stays yours.

The Human Bit records when and how consent was given. Subscription is confirmed only after the email provider accepts the request.