Permissions come from PaperOffice
Claude never gets more than the signed-in PaperOffice user has. Workspace membership, roles, shared folders, retention (WORM) and legal holds apply unchanged. A read-only user in PaperOffice stays read-only in Claude.
Tool families
| Family | Examples | Writes? |
|---|---|---|
| Documents | search, read text, download link, upload URL, rename, move, copy, trash | read + write |
| Search & analytics | full text, semantic search, statistics, trends, workspace metrics | read |
| Document AI | OCR, invoice/contract extraction, classification, PII detection, anonymisation | starts jobs |
| Signatures | create signature request, status, templates, verification | write |
| Workflows & jobs | start workflow, job status, approvals, human-in-the-loop tasks | write |
| Knowledge | entities, relations, summaries, meta fields, comments | read + write |
Text-to-speech tools are not part of the Claude profile.
Read-only and destructive hints
Every tool carries a title, a read-only hint and a destructive hint. Claude uses these to decide whether to ask you before it acts. Trash, delete, move and signature sending are marked destructive — expect a confirmation question.
Good habits
- Name the workspace in your request when you have several ("in workspace Accounting 2026 …").
- Ask Claude to show the document list before bulk actions.
- Deleted documents go to the PaperOffice trash first and can be restored in the app.
Not possible through Claude
Account settings, billing changes, user management and API key creation are not exposed. These stay in the PaperOffice app.