In brief
- Grok Bot completes tasks across apps, websites, and inboxes.
- According to SpaceXAI, multiple bots can communicate, share context, and divide work.
- The service requires access to workplace accounts and potentially sensitive company data.
Elon Musk’s SpaceXAI is joining the race to build AI agents that can navigate software and complete work for users.
Launched on Tuesday for Windows and iOS, Grok Bot operates through a cloud-based computer that allows it to sign into workplace tools, navigate websites, and manage email inboxes. According to SpaceXAI, users can assign tasks in plain English rather than building automated workflows, leaving Grok Bot to handle the rest.
“They finish jobs end to end, and only come back when something needs your approval,” SpaceXAI said in a statement.
Grok Bot is part of a shift in the AI industry toward “agentic AI”—bots that can perform tasks for users instead of just generating text or answering questions. SpaceXAI is joining a field already dominated by projects like OpenClaw and Hermes Agent, while OpenAI, Meta, and Anthropic are investing heavily in making their respective chatbots more autonomous.
Watching, learning, and delegating
According to SpaceXAI, users can run multiple bots that coordinate tasks, share context, with one bot overseeing the other agents.
“You can message them like a colleague and hand off the work,” the company wrote. “They remember conversations, learn how you like things done, and get sharper the more you work together.”
Grok Bot, SpaceXAI claimed, can also resume abandoned conversations, follow up on stalled work, and flag tasks that need attention without new instructions.
The trust problem
Like other AI agents, Grok Bot may require access to online accounts, internal communications, sensitive business data, and credentials to work across company systems and act on a user’s behalf.
That access presents security and privacy concerns for companies deciding how much authority to give an AI system.
In April, a Cursor agent powered by Anthropic’s Claude Opus deleted a startup’s production database and backups with a single API call. In another case, an OpenClaw agent exploited an Australian gym’s API to cancel another member’s reservation and move its user up the waitlist.

