In seven weeks, Grok Bot, Muse from Meta, and OpenAI's dots made the always-on personal agent the default AI experience, alongside Claude Cowork. For most of one person's work, use one. This guide is about the narrower set of workflows that shouldn't belong to any one person, and how to tell the difference.
Use a personal AI agent — OpenAI's dots, Muse from Meta, Grok Bot, or Claude Cowork — for work that belongs to one person: their research, documents, inbox, and follow-ups, directed and approved by that person. Move a workflow into a team-owned operation when the company answers for the outcome: when it has to start from a business system rather than someone's chat, when a consequential step needs a reviewer other than the person who asked, when it must keep running after its author leaves, and when the team needs one shared record of every run. Most teams will use both.
Between 11 August and 29 September 2026, three of the largest AI companies shipped the same idea. Grok Bot launched in beta on 11 August, Muse from Meta on 8 September, and OpenAI's dots on 29 September. Anthropic's Claude Cowork, already a personal coworker, now runs in Anthropic's cloud by default, so its scheduled tasks run with no device online.
Read their own documentation and the shape is consistent. Each is an agent you talk to. Each keeps working in the vendor's cloud after you close the laptop. Each can run on a schedule, and three of the four can react to events in connected apps. Each can stop and ask before a consequential step. Each keeps a record of what it did.
Those used to be selling points for automation platforms, ours included. They aren't any more, and pretending otherwise would make this guide worthless. If the question is whether an AI can do a piece of work in the background and check in before the risky part, the answer from all four is yes.
The strengths are real and large, so start there.
Drafting, research, your own follow-ups, errands, a weekly summary only you read: a personal agent is built for this, and a team operations platform is the wrong tool. Some of it you should keep manual, too. Nothing below argues otherwise.
The line isn't capability. It's ownership. Run a workflow through these seven questions. If most answers come back "one person," use a personal agent and stop here. If two or more come back "the team" or "the company," the workflow wants an owner that isn't a person.
If a customer, an auditor, or a manager would ask the company — not one employee — why something happened, the workflow is the team's. Refunds, onboarding, vendor payments, customer replies, access changes. Personal agents are explicit about whose they are: OpenAI's admin guide says only the owner can direct their dot in Slack, and "messages from other people do not start work."
A personal agent starts from its owner: a message, a call, a schedule, or an event in an app that person connected. Team work often starts somewhere else — a billing system's webhook, a submitted form, an email to a shared address, an API call from another product. The four vendors' public docs specify no webhook URL, public form, or API of your own for starting their agent; dots can respond to MCP Events that a publisher's server sends, and Grok Bot routines can start from Slack and GitHub events.
Every agent here can ask before a consequential step, and the person it asks is the one it works for. Muse shows approval cards with accept and reject; Grok Bot offers Allow once, Always allow, or Deny; Claude Cowork's manual mode asks you to allow or deny each action; a dot sends requests you open and answer. When the right approver is a finance lead, a manager, or whoever is on call — and they need to correct the amount rather than refuse it — you need routing to that reviewer, and editing of any proposed call rather than only a draft message, which these products' public docs don't specify.
A personal agent lives in its owner's account. Grok Bot is explicit about this even for its shared Team Bots: a routine "runs as them, reports in their chat," and "no routine runs for the whole team at once." Work a team depends on should outlive one person's holiday, role change, or departure, with a definition the rest of the team can read and change.
Personal agents enforce standing rules in different ways. OpenAI calls a dot's custom rules "instructions your dot tries to follow, and it can make mistakes"; SpaceXAI's own guide says "with Grok Bot, the rules are a prompt." Meta takes the other approach with Muse: it describes a separate component, Sentinel, as the sole permission authority that decides whether an action is allowed, denied, or needs the user. Claude Cowork lets you mark each connector tool always allow, needs approval, or blocked. If "never send without approval" is a requirement rather than a preference, look for enforcement that doesn't depend on the model's judgment.
Personal agents keep records for their owner: a dot's Activity view, Muse's audit trail of everything it has done and plans to do, Grok Bot's 20 most recent run records per routine, a Cowork session's history. Some enterprise tiers add admin audit exports. When a colleague has to open last Tuesday's run and see what was decided, by whom, and with which arguments, the record needs to belong to the workflow rather than to whoever set it up.
Each personal agent settles the model question for you. A dot runs on GPT-6 Astra, and Muse on Muse Spark. Claude Cowork runs Claude models, through a Claude account or your own Amazon Bedrock, Google Cloud, or Microsoft Foundry. For Grok Bot, "Cursor manages model selection" and there's no customer-facing picker. That's fine for one person. A team with a procurement decision, a provider it already pays, or keys it must control needs the model to be a setting.
This line moves, and the vendors are moving it. OpenAI's Team Tasks are team-owned automations: they run on a schedule or an event under a team service account and workspace connections, each task picks its model, and admins review activity through the Compliance API. Grok Bot's Team Bots, in public beta since 28 September, give a team one shared Bot that can have its own Slack app. Anthropic's Claude Tag puts a shared Claude in Slack channels, and Anthropic's own summary is "team work → Claude Tag; personal work → Cowork or Claude Code." Meta describes Muse for Small Business as "a collection of new skills and connectors inside Muse."
If one of those fits your workflow and your team already lives in that vendor's product, evaluate it seriously before anything else. The seven questions still apply: what starts it, who approves, whether the reviewer can change the action, and whose record it is. Where a vendor's public docs don't answer one, ask them directly.
| Personal agent | Team-owned operation | |
|---|---|---|
| Who directs it | One owner, in conversation | A workspace, through a written definition and roles |
| What starts work | The owner's messages, schedules, and events in apps they connected | Business events as well: webhooks, forms, inbound email, APIs, other systems |
| Who approves | The owner | An assigned reviewer, who need not be the author |
| Changing a proposed action | Approve or deny; some products let you edit a draft message | Approve, modify the exact arguments, or reject |
| When the author leaves | The agent goes with their account | The definition stays with the team |
| The record | The owner's activity history | One record per run that colleagues can open |
| Model | The vendor's | A setting, often with your own keys |
| Best at | Conversation, browsing, personal follow-through | Recurring work the company answers for |
| OpenAI's dots | Muse from Meta | Grok Bot | Claude Cowork | |
|---|---|---|---|---|
| Who directs it | Its owner; in Slack, messages from other people do not start work | Its owner, on their own Muse Secure VM | Its owner; Team Bots are shared, but routines stay personal | The session owner; sessions can't be shared |
| Starts work from | Chat, calls, Slack, schedules, supported app events, MCP Events | Chat in the app, WhatsApp, web, or Mac; schedules; relevant events | Chat and voice; routines on a schedule or after a Slack or GitHub event | Chat, or a schedule: hourly, daily, weekly, weekdays, or on demand |
| Approvals | Automatic review decides: proceed, ask you, or hand the step to you | Approval cards with accept or reject | Allow once, Always allow, or Deny, plus model-based Auto Review | Manual (allow or deny each action) or automatic approval |
| Standing rules | Custom rules it "tries to follow" | Sentinel, a separate permission authority, allows, denies, or asks | Natural-language rules; "the rules are a prompt" | Per-connector always allow, needs approval, or blocked |
| Record | Activity view; Compliance API records on Enterprise | An audit trail of what it has done and plans to do | 20 most recent runs per routine; Action Recording on Enterprise | Session history; OpenTelemetry export for organizations |
| Model | GPT-6 Astra | Muse Spark | "Cursor manages model selection" | Claude, direct or through Bedrock, Google Cloud, or Foundry |
| Team or business option | Team Tasks, a separate feature | Muse for Small Business: skills and connectors inside Muse | Team Bots, in public beta | Claude Tag, in Slack |
Most teams will run both, and the boundary is easy to state: personal agents for the work a person directs, a team operation for the work a team answers for. Three habits keep it clean.
We make Boring AI, a console for supervised automation, so read this section as the vendor's view. It's built for the team side of every question above, and it isn't trying to be a personal agent.
If what you need is a capable assistant for your own work, we're the wrong tool, and one of the four above is the right one. If a workflow answered "the team" to most of the seven questions, that's the work we're built for, and white glove means our team can build and operate it with you.
An AI agent that works for one person. It takes direction from its owner in conversation, keeps working in the vendor's cloud after they close the app, runs on schedules and some app events, asks its owner before consequential steps, and keeps a record of what it did. OpenAI's dots, Muse from Meta, Grok Bot, and Claude Cowork are the best-known examples as of October 2026.
Partly. It can do the work, but it does it as one person: their account, their approvals, their record. That holds up until the workflow needs a trigger from a business system, a reviewer other than the requester, or to survive its author leaving. The vendors are building team products for exactly this — OpenAI's Team Tasks, Grok Bot's Team Bots, and Anthropic's Claude Tag — so check those before assuming you need a separate platform.
Yes. All four can stop and ask before a consequential step, and Muse enforces its permissions outside the model. The difference isn't whether they ask; it's who they ask, which is the owner. Assigning the decision to someone else, letting that reviewer edit any proposed action rather than just a draft message, and attaching due dates and reminders are not specified in their public docs.
No. A dot is a personal agent, and OpenAI's admin guide says only its owner can direct it. OpenAI's separate Team Tasks are team-owned: scheduled or event-triggered tasks that run on a team service account, with a model chosen per task and admin review through the Compliance API. If your ChatGPT workspace has Team Tasks, compare those, not dots, with a team operations platform.
That's a security and policy decision for your own team, and each vendor publishes admin controls to support it. The operational point is narrower: use personal agents for personal work, and move any workflow the company answers for — customer-facing, financial, access-changing — into something the team owns, so it has an owner, a reviewer, and a record that don't depend on one employee.
Boring AI is our product: a console for supervised automation a team owns. Agents belong to a workspace, start from business events as well as schedules, wait for an assigned reviewer who can approve, modify, or reject, and leave one record per run. It isn't a personal agent — there's no chat in Slack or WhatsApp and no computer use — so many teams will run a personal agent and Boring side by side.
Request access and describe it in a sentence — or ask about white glove and our team will build and run it with you.