Resources · Claude connector

Claude Filesystem connectorWhat Claude can do on your computer with Filesystem.

The Claude Filesystem connector exposes 14 tools: 10 read and 4 write. Claude browses your folders, reads your files, and creates, edits or moves them, without ever leaving the directories you allowed. It is a desktop extension published by Anthropic.

Verified Trustpilot reviews · AI, automation & growth agency

Overview

What the Claude Filesystem connector changes

Without a connector, you drag every file into the chat. With Filesystem, Claude fetches what it needs from your computer on its own, inside the folders you open to it, and can save its output there too. It is Anthropic's desktop extension, built on an open-source package from the protocol's maintainers.

Clean up a downloads folder. Claude takes stock with list_directory_with_sizes, suggests a structure, creates subfolders through create_directory and files everything away using move_file.

Track down a lost note. You remember a meeting notes file, not where you saved it. Claude runs search_files across your work folder, then opens the right one with read_text_file.

Fix a document without rewriting it. To swap a phrase throughout a long text, Claude goes through edit_file, which can show a preview of the changes before applying them.

What it will not do: step outside the allowed folders, reach the internet, or delete a file, since no deletion tool is described. Nothing runs on its own either: Claude only acts while it answers you. Other platforms covered on the site are on the Integrations hub. It cannot read a file stored outside those folders either, even if you give it the exact path.

Vocabulary

Five words before you connect

The Claude vocabulary around this connector, in a minute.

Connector
The link you set up once between Claude and a service you already use, so Claude can work with it while it answers you.
Tool
One named capability the connector opens to Claude. Claude picks which ones to call on its own, and the directory sheet lists them.
Allowed directory
A folder on your machine that you open to the extension. Claude reads and writes there and nowhere else on your disk.
Approval
The confirmation Claude waits for before an action that changes an account, shown right in the conversation when it matters.
MCP
The shared standard connectors are built on. It is what lets an assistant like Claude talk to an outside service or tool.
Connect

Connect Filesystem to Claude in three steps

  1. 01

    Open your connector list

    Filesystem is a desktop extension, so it runs in Claude Desktop. In settings, go to Customize, then Connectors, and look for it. On a Team or Enterprise workspace, an Owner or Primary Owner enables it for members first.

  2. 02

    Turn the extension on

    Click Connect on its row. There is no online account to link: the extension works on the files on your machine, and only inside folders that have been explicitly opened to it.

  3. 03

    Pick the folders it can use

    The package documentation says the extension needs at least one allowed directory to run, and every operation stays inside those directories, whether they are set at launch or supplied by the app.

Tools

The 14 tools, sorted by what they do

Filesystem gives Claude 14 tools: 10 that read your account, 4 that change something in it.

All fourteen are described by the open-source package behind the extension: thirteen in its documentation, and read_file in its source code. Names stay exactly as Claude shows them.

  • 10 read
  • 4 write

What Claude reads (10)

10 tools

Ten tools that read or explore your folders without changing anything.

read_file

The older form of read_text_file, kept for compatibility: the official server code describes it as deprecated, returns a file's full contents as text, and flags it as read-only. The package documentation does not list it.

When it helps
Claude calls it on an older setup, and you get the same text read_text_file would give you.

Sourcegithub.com · October 1, 2026 ↗

read_text_file

Returns a file's full contents as text, or just its first or last lines. The file is always treated as plain text, whatever its extension says.

When it helps
you want Claude to proofread a sales proposal draft sitting in your projects folder before it goes out.

Sourcegithub.com · October 1, 2026 ↗

read_media_file

Opens an image, audio or other file and hands it to Claude along with its type. Images and sound arrive as such; other formats come through as a raw attachment.

When it helps
you ask Claude to describe the screenshots stored in a bug report folder.

Sourcegithub.com · October 1, 2026 ↗

read_multiple_files

Loads multiple files in one call. If one of them cannot be read, the rest still come through, so a single failure does not sink the whole batch.

When it helps
comparing three versions of a contract saved side by side, without opening them one at a time.

Sourcegithub.com · October 1, 2026 ↗

list_directory

Shows what a folder contains, marking files apart from subfolders.

When it helps
knowing what sits in a shared directory, file by file and subfolder by subfolder, before asking Claude to open or sort any of it, so you both start from the same picture.

Sourcegithub.com · October 1, 2026 ↗

list_directory_with_sizes

The same inventory as a plain listing, plus the size of each file, sorting by name or size, and totals for files, folders and combined size at the end.

When it helps
finding the heaviest files in a folder that is eating your disk space.

Sourcegithub.com · October 1, 2026 ↗

directory_tree

Returns the full tree of a folder and its subfolders, with the option to exclude certain patterns. Claude gets a whole project's structure in one go.

When it helps
a developer wants Claude to understand how a repository is organized before it suggests anything.

Sourcegithub.com · October 1, 2026 ↗

search_files

Walks through a folder and its subfolders looking for names that match, or do not match, a pattern, then returns the full paths it found. Exclusion patterns keep irrelevant folders out of the results.

When it helps
pulling together every spreadsheet for one client scattered across nested folders.

Sourcegithub.com · October 1, 2026 ↗

get_file_info

Gives the identity card of a file or folder: its size, its timestamps, its type and its permissions. Claude knows what it is dealing with before opening anything.

When it helps
spotting, among three copies of the same report, the most recent one before a review meeting.

Sourcegithub.com · October 1, 2026 ↗

list_allowed_directories

Lists the directories the extension can currently reach. It is the most direct way to check exactly how far Claude's reach goes on your machine.

When it helps
before a working session, you want to make sure your personal folder is not open.

Sourcegithub.com · October 1, 2026 ↗

What Claude changes (4)

4 tools

Four tools that create, overwrite, edit or move. No source describes their confirmation, so the general rule below applies.

write_file

Approval: see the rule

Creates a new file or replaces an existing one entirely with the content supplied. The documentation urges caution, since the previous content is gone afterwards.

What Claude asks for
no source describes a confirmation specific to this tool, so the general approval rule covers it.
When it helps
saving the meeting recap Claude just drafted into your project folder.

Sourcegithub.com · October 1, 2026 ↗

edit_file

Approval: see the rule

Applies targeted replacements inside a file, keeps the indentation, and returns a diff of what changed. A dry-run mode shows the result before anything is applied.

What Claude asks for
nothing specific is documented; rely on the default rule and ask for the preview first.
When it helps
changing a client's name across a long document without rewriting it.

Sourcegithub.com · October 1, 2026 ↗

create_directory

Approval: see the rule

Creates a directory, along with any missing parent folders. If the folder already exists, the call succeeds and does nothing more.

What Claude asks for
the source does not document any particular check, so the general rule is what applies.
When it helps
setting up one folder per quarter before sorting a year of invoices.

Sourcegithub.com · October 1, 2026 ↗

move_file

Approval: see the rule

Moves or renames a file or folder. The call fails if the destination already exists, which stops a file from being overwritten along the way.

What Claude asks for
no dedicated confirmation is described; the general rule from the approvals section applies here.
When it helps
renaming a batch of scans to follow a date-based convention.

Sourcegithub.com · October 1, 2026 ↗

Approvals

What Claude asks before it acts

By default, Claude stops and asks for your go-ahead before each action it takes on an account for you.

For the four tools that create, overwrite, edit or move files, no source describes a dedicated confirmation, so the default rule covers them. The package documentation tags every tool as read-only, write-capable or destructive so the app can tell them apart, without saying how Claude Desktop uses those tags. On Team and Enterprise, owners can restrict a connector for the whole organization. And Claude only sees the folders you opened.

Plans

Which plans include it

No official source publishes plan availability connector by connector, and none of the 819 directory sheets shows it. It is a real gap in the catalog.

What is published is the general rule: desktop extensions install on Claude Desktop. On Team and Enterprise, an Owner or Primary Owner turns the connector on for the organization before members connect. For this one's current status, check its sheet in the official directory. Worth knowing: only the open-source package documents this connector, and no Claude help article covers it.

Limits

Where this connector stops

A connector is not an automation. Claude calls these tools while it answers you, and nothing fires when a file lands in a folder.

The package documentation states that every tool works only on the local disk, inside the allowed directories, and never reaches the open internet. The directory badge is not a security audit, and Anthropic notes on every sheet that it does not vouch for how exposed tools behave, even here where it is the publisher. Per the package documentation, the allowed directories are set either when the server starts or by the app itself, which can replace them while it runs, without a restart.

Need help

Need help connecting Filesystem to Claude?

A person reads every message.

FAQ

Claude Filesystem connector FAQ

01What can Claude do with the Filesystem connector?
Claude can work directly on the files on your computer, inside the folders you open to it. It lists and browses directories, searches for files by pattern, reads text, images or several files at once, and checks a file's details. On the write side, it creates or replaces a file, makes targeted edits, creates folders, and moves or renames items. Claude picks the tools itself, based on what you ask.
02Can Claude write, move or delete my files?
Write and move, yes: four tools create or overwrite a file, edit it, create a folder, or move an item. Delete, nothing in the sources allows it: no deletion tool is described or listed on the sheet, even though the package's overview mentions deleting directories. Be careful with overwriting, though: replacing a file wipes its previous content. For an important file, ask Claude to save its work under a new name instead.
03Does Claude ask before it changes a file?
By default, Claude asks for confirmation before each action it takes for you, and no source describes a rule specific to Filesystem's write tools. So that default rule is what applies. The package also tells the app which tools write and which are destructive, though the source does not say how Claude Desktop uses that. On Team and Enterprise, owners can restrict the connector as well. Asking for the preview before an edit remains the safest habit on any document that matters.
04Which Claude plans include the Filesystem connector?
No official source publishes plan availability for a specific connector, and none of the 819 directory sheets displays it. The general rule is that desktop extensions install on Claude Desktop, with an Owner or Primary Owner enabling the connector first on Team and Enterprise. Only the connector's directory sheet shows its current status for your account, so that is the place to check before relying on it. The directory sheet lists it as a desktop extension, available in Claude Desktop.
05Can Claude see my whole hard drive?
No. Every operation is limited to the allowed directories, and the extension requires at least one of them. A file stored outside those folders stays invisible to Claude. A dedicated tool lists the open directories at any time, so you can check the exact scope before you start. The app can also update that list while the extension runs, and the new list replaces the old one. The package also states that the extension never reaches the internet: it stays on the local disk.
06Why won't the Filesystem extension start?
The most common documented cause is having no allowed directory. The package documentation says at least one folder must be open, otherwise the extension stops as soon as it starts. So check that you have actually designated a work folder. If the link seems broken for some other reason, the documented fix is still to cut the connector with Disconnect, then switch it back on from your connector list. Once the folder is set, the allowed directories tool confirms everything is in place.
07Claude or an automation tool to manage my files?
They do different jobs, so it depends on the use case. Claude fits when you want one-off help in conversation: sorting a folder, finding a document, fixing a text. An automation tool fits when a task has to run by itself, for example every time a new file is dropped somewhere. This connector never fires on its own: it only acts while Claude is answering you, when you ask. For a one-off cleanup or a search through your folders, the conversation is enough.