로그인
THU

Tap a sentence. See its pair.문장을 누르면 짝 번역이 켜져요.

Claude in Chrome: The Chatbot That Learned to Act

AI Trend2026.08.29

Claude in Chrome: The Chatbot That Learned to Act

Claude가 크롬에 들어왔다 — 이제 AI는 말하는 대신 행동해요

읽기 도움말
학습 표시관용구표현원어민 표현꼬리표를 누르면 해설이 나와요
English
한국어

Hook

A Tool That Talks Is Becoming One That Acts

말하는 도구가, 행동하는 도구로 바뀌고 있어요

On August 26, 2026, Anthropic turned its chatbot into a browser agentClaude in Chrome is now generally available to every paid subscriber, and it can read, click, and type on real websites for you. For years, AI was a tool you talked toyou typed a question, it gave you an answer, and you went on your way. Claude in Chrome closes that gap: instead of pasting a URL into a chat box, you open a side panel and Claude moves across your open tabs, fills forms, and completes tasks on your behalf. The catch is that a chatbot only talks, while a browser agent actsand every action it takes on your accounts carries a new kind of risk.

2026년 8월 26일, Anthropic이 챗봇을 브라우저 에이전트로 바꿨어요. 'Claude in Chrome'이 모든 유료 구독자에게 정식 공개됐는데, 실제 웹사이트를 읽고, 클릭하고, 타이핑까지 대신 해줘요. 지금까지 AI는 '대화하는 도구'였어요. 질문을 타이핑하면 답을 주고, 그걸로 끝이었죠. Claude in Chrome은 그 간극을 메워요. URL을 채팅창에 붙여넣는 대신, 사이드 패널을 열면 Claude가 여러분이 켜놓은 탭 사이를 오가며 폼을 채우고 작업을 대신 처리해요. 문제는 챗봇은 '말만 하지만' 브라우저 에이전트는 '행동한다'는 점이에요. 로그인된 계정 위에서 에이전트가 취하는 모든 행동에는 새로운 종류의 리스크가 뒤따라요.

What's new

The First Browser Agent Every Paid User Can Touch

모든 유료 사용자가 처음으로 만져보는 브라우저 에이전트

Until now, browser agents existed mostly in beta or behind long waitlistsPerplexity's Comet, ChatGPT's Atlas, and Anthropic's own Claude in Chrome all signaled where the industry was headed. With this release, Anthropic became the first major lab to give every paid subscriber a fully working browser agentno waiting list, no special access. Anthropic says a safety classifier verifies every action against your original instructions before it runsand anything it flags gets blocked or paused for your approval. That built-in exists because the biggest risk here is not the AI going rogueit is malicious instructions hidden inside the very web pages the agent reads.

지금까지 브라우저 에이전트는 대부분 베타 버전이거나 긴 대기 명단 뒤에 있어 있었어요. Perplexity의 Comet, ChatGPT의 Atlas, 그리고 Anthropic의 Claude in Chrome까지, 업계가 향하는 방향을 모두가 보여줬죠. 이번 출시로 Anthropic은 대형 연구소 중 처음으로 모든 유료 구독자에게 완전히 작동하는 브라우저 에이전트를 줬어요. 대기 명단도, 특별한 접근 권한도 필요 없어요. Anthropic은 안전 분류기가 모든 행동을 실행 전에 사용자의 원래 지시와 대조해 검증하고, 문제가 감지되면 차단하거나 승인을 위해 중단시킨다고 밝혔어요. 이런 내장 안전장치가 있는 이유는, 여기서 가장 큰 리스크가 AI가 스스로 폭주하는 게 아니라, 에이전트가 읽는 바로 그 웹페이지 안에 숨겨진 악성 지시이기 때문이에요.

Why it matters

What the Chatbot Can't Tell You About Itself

챗봇이 스스로 말해주지 않는 이야기

The technical term for that risk is prompt injectiona trick where hidden text on a website convinces the AI to do something you never asked for. Anthropic's own safety guide spells it out: if JavaScript is enabled, Claude can access the same data the browser holdsincluding your login sessionsso a bad page can reach your inbox or bank tab. The industry learned this the hard way in March 2026, when researchers found a flaw in Claude's Chrome extension that let any website silently inject commandsa vulnerability Anthropic patched by locking the origin to a trusted domain. Claude in Chrome is a genuinely different risk category from a chatbotand the difference is not abstract: it is one wrong action, taken on a account, in the middle of your workday. The payoff is real toousers report saving 50 to 80 percent of routine browser workbut real demands real caution about what the agent is allowed to touch.

이 리스크를 가리키는 기술 용어가 '프롬프트 인젝션(prompt injection)'이에요. 웹사이트에 숨겨진 텍스트가 AI가 여러분이 요청한 적 없는 행동을 하도록 속이는 공격이에요. Anthropic의 공식 보안 가이드는 이를 명확히 밝혀요. 자바스크립트가 활성화되면 Claude는 브라우저가 가진 데이터, 즉 로그인 세션까지 접근할 수 있어서, 악성 페이지 하나만으로 여러분의 받은 편지함이나 은행 탭에 닿을 수 있어요. 업계는 2026년 3월에 뼈아픈 교훈을 얻었어요. 연구자들이 Claude 크롬 확장 프로그램에서 웹사이트가 조용히 명령을 주입할 수 있는 '제로클릭' 취약점을 발견했던 거예요. Anthropic은 신뢰할 수 있는 단일 도메인으로 출처를 제한해 패치했어요. Claude in Chrome이 챗봇과 완전히 다른 리스크 등급이라는 건 추상적인 말이 아니에요. 로그인된 계정에서, 업무 중에, 한 번의 잘못된 행동이 벌어질 수 있다는 뜻이니까요. 물론 이득도 실재해요. 사용자들은 반복적인 브라우저 작업의 50~80%를 절약한다고 말해요. 하지만 진짜 자율성에는, 에이전트가 건드릴 수 있는 범위에 대한 진짜 조심이 따라야 해요.

Korea angle

A More Powerful Browser Carries a More Sensitive Load

강력해진 브라우저가, 더 민감한 것을 안게 됐어요

For Korean users, Chrome is not one browser among manyit holds most of their search, login, and banking history, which makes a browser agent both more useful and more sensitive. It also touches a familiar tension in Korea: convenience versus consentthe same fight that shaped debates over location tracking, face recognition, and text-message monitoring apps. An AI that browses your accounts with saved passwords changes the consent calculationit is no longer 'does the tool know my data' but 'what is the tool allowed to do with it'. As Korean banks and firms race to ship their own AI assistants, the browser-agent lesson is that your worst security risk is rarely the modelit is the invisible instruction hiding in a page you simply clicked.

한국 사용자에게 크롬은 많은 브라우저 중 하나가 아니에요. 검색 기록, 로그인 정보, 은행 기록의 대부분이 거기에 있어서, 브라우저 에이전트는 더 유용하면서도 더 민감해요. 이건 한국에서 이미 익숙한 갈등, '편리함과 동의 사이의 균형'과도 맞닿아 있어요. 위치 추적, 얼굴 인식, 문자 모니터링 앱을 둘러싼 논쟁과 같은 축이에요. 저장된 비밀번호로 여러분의 계정을 자유롭게 돌아다니는 AI는 동의의 기준 자체를 바꿔요. 이제 질문은 '도구가 내 데이터를 아는가'가 아니라 '도구가 그 데이터로 무엇을 해도 되는가'가 돼요. 한국 은행과 기업들이 자체 AI 비서 출시에 나서는 가운데, 브라우저 에이전트가 주는 교훈은 분명해요. 최악의 보안 리스크는 모델이 아니라, 여러분이 그냥 클릭한 한 페이지 안에 숨겨진 보이지 않는 지시라는 거예요.

What you can do

One Question to Ask Before You Hand Over the Keys

열쇠를 넘겨주기 전에 던져볼 한 가지 질문

If you turn on a browser agent, start with the lowest-stakes accountsa reading list, a search toolnot your bank or your work email. Treat the safety classifier as a helper, not a guaranteekeep an eye on what the agent is doing, and stop the task the moment it starts doing something you never asked for. Most browser agents let you review an action before it runsget in the habit of watching that approval queue rather than letting every step run on autopilot. Next time you give an AI the keys to your browser, ask yourself one question first: if this page contains a hidden instruction, what is the worst thing this agent could doand am I comfortable with that answer?

브라우저 에이전트를 켠다면, 가장 리스크가 낮은 계정부터 시작하세요. 은행이나 업무 이메일이 아니라, 읽기 목록이나 검색 도구 같은 곳이죠. 안전 분류기를 완전 보장이 아니라 보조 도구로 여기세요. 에이전트가 무슨 행동을 하는지 눈여겨보고, 요청한 적 없는 일을 시작하는 순간 바로 작업을 중단하세요. 대부분의 브라우저 에이전트는 행동이 실행되기 전에 검토할 기회를 줘요. 모든 단계를 자동으로 돌려보내기보다, 그 승인 목록을 직접 확인하는 습관을 들이세요. 다음에 여러분이 AI에게 브라우저 열쇠를 넘겨줄 때, 먼저 질문 하나를 던져보세요. '이 페이지에 숨겨진 지시가 있다면, 이 에이전트가 할 수 있는 최악의 일은 무엇일까, 그리고 나는 그 대답을 받아들일 수 있을까요?'

이 칼럼이 마음에 드셨나요?

새 칼럼이 발행되면 영문 + 한글 본문을 통째로 메일로 보내드려요. 매일 아침, 광고 없이.

언제든 한 번에 해지할 수 있어요.

0 / 21 pairs explored