← Reddit

Using CoWork with multiple clients

Reddit · Ajf-2024 · August 11, 2026
A CoWork user sought to extend platform usage to multiple client projects while maintaining complete data isolation, having already integrated with HubSpot, Clay, and HeyReach.

Detailed Analysis

The Reddit thread highlights a practical governance question emerging as Claude's CoWork feature moves from personal productivity tool to a platform managing sensitive third-party business data. The original poster, a marketer using CoWork for demand generation and executive assistant work, has already integrated HubSpot, Clay, and HeyReach into their own account. The challenge they raise is architectural: how to onboard client accounts using the same tool categories without risking cross-contamination of data between separate client environments — a concern that touches on data isolation, access control, and the underlying trust model of agentic AI tools operating across multiple integrated services.

This question matters because it exposes a gap between how agentic AI products are typically designed (single-user, single-workspace) and how they're actually being used in the wild — by freelancers, consultants, and agencies managing multiple clients simultaneously. CoWork, Anthropic's agentic workspace tool that connects Claude to external services like CRM platforms and outreach tools, was likely built with individual power-users in mind, but its adoption by service providers who juggle several clients' HubSpot instances, Clay enrichment workflows, and HeyReach campaigns simultaneously creates a new class of requirements: strict tenant isolation, scoped credentials, and auditable separation of data streams. Without clear built-in mechanisms for multi-account or multi-workspace separation, users are left improvising solutions — separate CoWork accounts per client, separate browser profiles, or manual credential switching — none of which are elegant or foolproof at scale.

The stakes are non-trivial. Marketing and sales tools like HubSpot and Clay contain proprietary customer lists, pipeline data, and outreach sequences that agencies are contractually and ethically obligated to keep segregated between competing or unrelated clients. A single agent inadvertently pulling data from Client A into a workflow for Client B — even accidentally, through shared memory, cached context, or misconfigured integrations — could constitute a serious breach of client trust and potentially a legal liability. This is a recurring theme in enterprise AI adoption: the more capable and autonomous an agent becomes at chaining together API calls and executing multi-step workflows, the more critical it becomes to have hard boundaries around what data it can access and when, rather than relying on the model's judgment alone to keep contexts separate.

More broadly, this thread reflects a maturation point for agentic AI tools as they move beyond single-user chatbot interactions into becoming infrastructure for professional service delivery. As tools like CoWork gain traction among consultants, agencies, and freelancers — a growing segment of the AI power-user base — Anthropic and competitors will likely face increasing pressure to build formal multi-tenancy features: workspace-level permissions, isolated credential vaults, audit logs, and perhaps client-specific sub-accounts nested under a single CoWork subscription. This mirrors a pattern seen across SaaS history, where tools built for individuals eventually need enterprise- or agency-grade access controls once professional users start relying on them for client-facing, revenue-generating work. How Anthropic responds to this kind of grassroots demand — whether through official multi-account features or by leaving it to users to engineer workarounds — will be a signal of how seriously it's investing in CoWork as infrastructure for professional services, not just personal productivity.

Read original article →