Claude Code

Anthropic

Vendor

Agentic coding tool for terminal, IDE, desktop and web that reads codebases, edits files, runs commands and handles git workflows.

Curated by Tiberiu ArvaVerified

Proprietary

Strengths

  • Runs on Bedrock, Vertex and Foundry
  • Managed settings and permission policies
  • OpenTelemetry usage export

Practitioner note

Route through Bedrock, Google Cloud Agent Platform or Microsoft Foundry to keep inference and billing inside an existing cloud estate; enforce managed permissions centrally, since the agent can execute shell commands on developer machines.

Warning

Claude Code: The public GitHub repo is not open source: LICENSE.md is an Anthropic copyright notice that points to the Commercial Terms of Service. No OSI license applies.

Governance posture

Reviewed 2026-09-30
PartialData residency

Inference region follows the chosen provider (AWS/GCP/Azure regions); Anthropic-direct plans offer US-only inference on Enterprise; local transcripts cached on the developer machine.

Source
YesDeployment model

Local client with inference via Anthropic, Amazon Bedrock, Claude Platform on AWS, Google Cloud Agent Platform or Microsoft Foundry; cloud sessions can run in self-hosted environments. (saas, hybrid)

Source
PartialAudit logging

Enterprise audit logs and Compliance API; OpenTelemetry export of prompts (opt-in), tool results and permission decisions; CloudTrail / Cloud Audit Logs / Azure Monitor on cloud providers.

Source
YesSOC 2

Anthropic SOC 2 Type I and Type II cover commercial products (Claude for Work, Anthropic API).

Source
YesISO 27001

Anthropic ISO/IEC 27001:2022 covers commercial products (Claude for Work, Anthropic API).

Source
YesISO 42001

Anthropic ISO/IEC 42001:2023 covers commercial products (Claude for Work, Anthropic API).

Source
UnknownEU AI Act

Assessed limited-risk by product category (general-purpose assistant); no published Anthropic EU AI Act conformity statement for this product. (role: limited-risk)

YesLicense risk

Proprietary tool under Anthropic Commercial Terms; model choice limited to Claude. (medium)

Source

EU AI Act obligations

Risk tier: Limited risk · as of 2026-08-23

Source-backed information mapped from Claude Code's tracked risk tier — not legal advice. Obligations depend on how your organisation deploys the system; see the full obligation reference and timeline.

Article 4AI literacy

Providers and deployers must take measures to ensure a sufficient level of AI literacy in staff and other persons operating AI systems on their behalf.

Applies from

Official text
Article 50Transparency for certain AI systems

People must be informed when they interact with an AI system; synthetic audio, image, video, and text content must be marked as artificially generated, and deepfakes disclosed.

Applies from

Official text

Explore the category

Compare this tool against the rest of its category and the cloud platform foundation layer.