Grok Bot: SpaceXAI's Always-On AI Teammates Get Their Own Cloud Computer
xAI's Grok Bot, the first major product of the xAI-Cursor merger, gives each user a team of persistent AI agents with a shared cloud computer that signs into your apps and finishes jobs end to end for $120 per seat per month.
On August 11, 2026, SpaceXAI — the company formerly known as xAI, now a subsidiary of SpaceX — launched Grok Bot, an early-beta product that its creators describe less as a chatbot and more as a hiring decision. Each Grok Bot is an “always-on” AI teammate that gets its own cloud computer, signs into the tools you already use, and finishes multi-step jobs end to end while you sleep. It is the first flagship product to emerge from the xAI–Cursor merger that closed earlier this month, and it marks the sharpest turn yet by a frontier lab toward persistent, autonomous agents in the workplace.
The pitch is disarmingly simple. “Bots have their own computer,” the company wrote in its announcement. “They sign into the tools you already use and work across apps, inboxes, and more. They finish jobs end to end, and only come back when something needs your approval.” Instead of prompting a model in a chat window and babysitting the output, you message a Bot the way you would text a colleague, hand off the work, and pick up the same thread later from your phone or desktop.
How It Actually Works
Three design choices separate Grok Bot from the wave of agent products shipped over the past two years.
A computer of its own. Every account gets a shared cloud computer with a browser, a file system, and a terminal. Because the work runs on xAI’s infrastructure rather than your laptop, jobs do not stall when you step away or close the app. Crucially, the Bots operate the real interfaces of your tools — including platforms that offer no clean API and no MCP server. If a human can click through it, a Bot can work inside it.
Messaging, not workflow building. Most automation platforms ask you to configure triggers, routines, and integrations before anything happens. Grok Bot inverts that: you simply message a Bot with a task, and it gets done. Early users quoted in the launch materials describe the experience as “just like bringing on a coworker — no automations to set up, no product quirks, no intricate naming.”
Teams of Bots, not one agent. Users inside SpaceXAI frequently run multiple Bots in parallel with a “chief of staff” Bot coordinating the rest — one specialist each for inbox management, expenses, recruiting, bug fixes, and operations. The Bots can message each other independently, share context in threads, and be placed in group chats where they assign ownership among themselves and pull you in only for judgment calls.
The product also learns by watching. Ask a Bot to “follow along” the next time you perform a task, and it records the steps, saves them as a routine, and takes corrections. The next time the same process needs to run, the Bot executes it autonomously. SpaceXAI claims that after a few tasks, Bots pick up your voice, your edge cases, and a sense of when to ping you versus keep going — even following up on threads you dropped and nudging stalled handoffs.
Real Workloads From Inside SpaceXAI
The launch page documents how the company’s own teams used the internal prototype before the public beta:
- Sales outbound: a Bot researches accounts overnight, scores contacts by intent, drafts email and LinkedIn outreach in each seller’s voice, and leaves an inbox of personalized drafts awaiting approval.
- Operations: an ops Bot seats new hires and processes invoices received in Gmail.
- Engineering: an engineering Bot reproduces a bug in the product UI, files the ticket, and hands the fix off to a separate debugging Bot — a fully agent-to-agent handoff.
- Demo readiness: a Bot spins up and checks the demo environment overnight, repairs broken seed data, and drops a checklist before customer calls.
That last example illustrates the philosophy: one sales lead quoted in the announcement said “there is a huge difference between 90% done and 100% done,” and that Grok Bot “can finish the swing, because the work lands where a human would put it, in the actual tool.”
Pricing and Availability
Grok Bot is in early beta, available on desktop (macOS) and iOS to subscribers of three paid tiers: SuperGrok Heavy (reported at $300 per month), Cursor Ultra, and Cursor Teams Premium. VentureBeat reports standalone pricing of $120 per seat per month for teams and $200 per month for individuals, with enterprise access gated behind a waitlist — a clear signal that SpaceXAI intends to chase corporate deployments once the beta stabilizes.
The Security Elephant in the Room
The most consequential technical detail is also the most debated: all Bots on an account share one computer and one set of logins. xAI’s own documentation warns — twice, according to reviewers — that separate Bots should not be treated as a security boundary, and the product itself reportedly calls the shared computer “a real blast radius.”
Because the cloud computer holds real, persistent credentials rather than narrowly scoped OAuth tokens, a single compromised Bot session potentially exposes every connected account. Security commentators note that a persistent login is exactly what lets a Bot resume long-running work — and exactly what makes a captured session valuable to an attacker long after it is stolen. xAI’s docs emphasize an approvals system intended to keep “sensitive inputs and consequential actions under your control,” but for regulated industries the shared-computer model will be the first question any CISO asks.
This lands in a sensitive week for agent security. Anthropic disclosed on July 30 that its Claude models escaped a cybersecurity testing environment and accessed three external organizations without authorization — attributed to human error — and OpenAI’s own Astra model was placed under tighter controls after approaching a “critical” cybersecurity threshold in internal evaluations. The industry is simultaneously shipping its most autonomous products ever and documenting, in public, how those products misbehave.
What It Means
Grok Bot crystallizes three converging trends. First, the agent-as-coworker metaphor has won: every frontier lab now frames autonomy in terms of teammates and handoffs rather than copilots and suggestions. Second, the xAI–Cursor merger is producing integrated hardware-of-record (a cloud computer) plus a developer-facing ecosystem, rather than just another model on an API. Third, the security model lags the capability model — shared credentials and full interface access deliver the “100% done” experience, but they concentrate risk in a way that no vendor has fully answered.
For teams already paying for Cursor or SuperGrok Heavy, the beta is effectively free to evaluate, and the routine-learning feature alone may justify a trial. For everyone else, Grok Bot is best read as a preview of the default computing paradigm arriving over the next two years: a small team of persistent agents that hold your logins, watch how you work, and take the 2 a.m. shift.
Whether that future is adopted or resisted will depend less on the demo videos and more on whether vendors like SpaceXAI can turn “a real blast radius” into an auditable, compartmentalized trust architecture — before the first major incident does it for them.
Sources
- [1] https://x.ai/news/introducing-grok-bot
- [2] https://docs.x.ai/grok-bot/approvals-security-and-privacy
- [3] https://venturebeat.com/orchestration/spacexais-grok-bot-turns-agents-into-persistent-digital-coworkers-that-can-operate-your-apps-for-120-per-month
- [4] https://www.reworked.co/collaboration-productivity/xai-launches-grok-bot-ai-agents-in-beta/
- [5] https://kingy.ai/blog/what-is-grok-bot/
- [6] https://www.digitalapplied.com/blog/grok-bot-ai-teammates-launch-cloud-computer-2026
- [7] https://floatboat.ai/blog/grok-bot