Journalism begins where hype ends

,,

Data is the new science. Big Data holds the answers. Are you asking the right questions?"

— Patrick P. Gelsinger

Anthropic Adds Self-hosted Sandboxes, Private MCP Tunnels to Claude Managed Agents

Black Anthropic wordmark on a white background
May 20, 2026 12:33 PM IST | Written by Mithun MK | Edited by Vaibhav Jha

Anthropic on Tuesday announced the expansion of Claude Managed Agents with two additions aimed at enterprise and developer teams. The company has launched self-hosted sandboxes that are now in public beta and Model Context Protocol (MCP) tunnels that are now in research preview.

Self-hosted sandboxes let teams run the tool-execution layer of Claude agents on infrastructure they control. While the agent loop, orchestration, context management, and error recovery  continues to run on Anthropic’s infrastructure. Tool execution moves to the customer’s environment. Supported sandbox providers include Cloudflare, Daytona, Modal, and Vercel. Teams can also bring their own sandbox client.

The split is the operational point. Files and repositories do not leave the customer’s perimeter under this setup. Network policies, audit logging, and security tooling already in place within the enterprise apply to agent tool calls. Compute sizing and the runtime image are also set on the customer’s side, which matters for agents running resource-heavy work such as long builds or image generation.

MCP tunnels let agents reach private MCP servers, internal databases, APIs, knowledge bases, and ticketing systems without exposing those services to the public internet. Anthropic says the feature requires a lightweight gateway that makes a single outbound connection, with no inbound firewall rules and end-to-end encrypted traffic. 

Admins can manage it from the Claude Console. MCP tunnels work across Managed Agents and the Messages API. Access requires a separate request.

Anthropic launched Claude Managed Agents in public beta on April 8. The self-hosted sandbox and MCP tunnel additions come roughly six weeks after that launch. Clay, Rogo, Amplitude, and Mason are among the early adopters cited in Anthropic’s announcement. Adoption timelines and outcomes in the announcement are self-reported by Anthropic and have not been independently verified.

Self-hosted sandbox documentation and setup cookbooks are available on the Claude Platform. MCP tunnel access is by request.

Also Read: OpenAI Launches Personal Finance Agents Within ChatGPT for U.S. Pro Subscribers

Authors

  • Mithun MK Special Correspondent with AI FrontPage

    Mithun MK is a Special Correspondent at AI FrontPage. He brings over six years of investigative reporting on technology, surveillance, digital rights, and governance at The News Minute and The New Indian Express. He is trained in cross-border investigative methods with OCCRP, alongside reporters from Southeast Asia, and brings both reporting depth and technical fluency to AI FrontPage's coverage of the global AI industry.

    LinkedIn

  • Vaibhav Jha, editor and co-founder at AI FrontPage

    Vaibhav Jha is an Editor and Co-founder of AI FrontPage. In his decade long career in journalism, Vaibhav has reported for publications including The Indian Express, Hindustan Times, and The New York Times, covering the intersection of technology, policy, and society. Outside work, he’s usually trying to persuade people to watch Anurag Kashyap films.

    LinkedIn