Grok Bot enterprise access is waitlist-only, announced that way at launch on 11 August 2026 and unchanged as of 22 August 2026. The only shipping business path is a Cursor Teams subscription: Standard at a $40 list price per seat, or Premium at a $120 list price per seat, both of which now include Grok Bot after the 21 August expansion. The naming trap is important: Cursor’s own help page states that "Only individual SuperGrok Plus and individual SuperGrok Heavy grant Grok Bot usage" and that "SuperGrok Team and SuperGrok Enterprise plans are not supported". No SSO or SCIM story is published for Grok Bot itself, compliance defers to Cursor’s terms rather than an xAI agreement, and there is no queryable organisation-wide audit view (the documentation describes an audit view as coming). Only the twenty most recent routine run records are reportedly retained, as reported by Daily Dose of Data Science and unconfirmed by xAI, and there is no dry-run mode. The SuperGrok account link is permanent and cannot be moved to a different Cursor account.
- Enterprise is a waitlist, stated at launch and still true eleven days later.
- Cursor Teams is the real b2b path. Standard at a $40 list price per seat, and Premium at a $120 list price per seat, both include Grok Bot since 21 August 2026.
- SuperGrok Team is not eligible. Cursor’s help page says Team and Enterprise "are not supported". Only individual Plus and Heavy grant usage.
- No SSO or SCIM story is published for Grok Bot itself. Identity is Cursor’s, and what that inherits is not documented on the Bot side.
- No queryable organisation-wide audit view. Per-Bot transcripts exist, while twenty retained run records were reported by Daily Dose of Data Science and remain unconfirmed by xAI; an audit view is described in the docs as coming.
- The account link is permanent. Cursor documents that you cannot unlink or move a SuperGrok link to a different Cursor account.
Enterprise is a waitlist, not a product
xAI’s launch post on 11 August 2026 put enterprise access behind a waitlist. As of 22 August 2026 that has not changed: there is no published enterprise tier, no enterprise pricing, no enterprise feature list, and no stated timeline.
This is normal for a beta and it is also disqualifying for a certain kind of buyer. If your procurement process requires a named contract owner, a security questionnaire with answers, and a support commitment, none of those exist yet. What exists is a form.
The naming trap: SuperGrok Team is not the team plan
This one has caught enough people to deserve its own section. There are two plan families and both have plans with team-sounding names, and the intuitive mapping is wrong.
Cursor’s help page on SuperGrok and Grok Bot states it directly, and we fetched it on 22 August 2026:
- "Only individual SuperGrok Plus and individual SuperGrok Heavy grant Grok Bot usage."
- "SuperGrok Team and SuperGrok Enterprise plans are not supported."
- Basic SuperGrok is also listed as not qualifying.
| Plan | Sounds like a team plan? | Grants Grok Bot? |
|---|---|---|
| Cursor Teams Standard | Yes | Yes, since 21 Aug 2026. $40 list price per seat |
| Cursor Teams Premium | Yes | Yes, since launch. $120 list price per seat |
| SuperGrok Team | Yes | No. "Not supported" |
| SuperGrok Enterprise | Yes | No. "Not supported" |
| SuperGrok Plus, individual | No | Yes |
| SuperGrok Heavy, individual | No | Yes |
| Basic SuperGrok | No | No |
| Cursor Pro | No | No |
| Cursor Pro+ | No | Yes, since 21 Aug 2026 |
The practical consequence is a specific and expensive mistake: an organisation that already standardised on SuperGrok Team, reasoning that the team plan of the vendor that makes Grok Bot would obviously include Grok Bot, has bought the one thing that does not grant it. The route in is Cursor Teams, a different vendor surface with a different contract, on a plan whose name does not contain the word Grok at all.
What buying Cursor Teams actually gets you
Both Cursor Teams tiers now carry Grok Bot. Standard has a $40 list price per seat and Premium has a $120 list price per seat, with a published 20% annual billing discount. The 21 August expansion is what brought Standard in; before that the floor was Premium.
What that buys, and what it does not.
| What you get | |
|---|---|
| Grok Bot access per seat | Yes, on Standard and Premium |
| Weekly Grok Bot allowance per seat | Not published for any tier |
| Spend cap on Grok Bot usage | None. Overage bills at raw model rates |
| Central admin view of Bot activity | Not documented |
| Queryable organisation-wide audit view | Not available. An audit view is described in the docs as coming |
| Per-user policy for what Bots may do | Prose instructions to the Bot, not enforced policy |
| Data residency choice | Not offered |
| Retention period | Not published |
| Compliance certifications for Grok Bot | No published claim found. Compliance defers to Cursor’s terms |
The pattern is consistent: the seat is well defined and everything an administrator would want to do with the seat is not. You can buy access for twenty people. You cannot see what those twenty people’s Bots did last week, cap what they spend, or restrict which systems they may touch by policy rather than by instruction.
The governance gaps, one at a time
These are the answers a security review will ask for. Each one is sourced, and where the answer is "not published", that is the answer rather than a gap in our research.
No queryable organisation-wide audit view
eesel’s review notes the documentation describes an audit view as coming, twice, and that what exists today is per-Bot chat transcripts, not queryable across an organisation. Routine history is reportedly capped at the twenty most recent run records, as reported by Daily Dose of Data Science and unconfirmed by xAI. That covers 20 hours around the clock; just over two business days at nine runs/day.
No SSO or SCIM story published for Bot
Identity runs through Cursor, so whatever Cursor offers an organisation is the identity layer. Nothing in the Grok Bot documentation describes SSO enforcement, SCIM provisioning, or deprovisioning behaviour for Bots specifically, and the important question, what happens to a departed employee’s Bots and the logins on the shared machine, has no published answer.
No enforced policy, only instructions
Approvals and Auto Review exist, but as prose boundaries: you tell a Bot "never send external messages without approval". Auto Review is a model judging a model. Neither is a policy engine, and neither is something a security team can attest to.
No dry-run mode
There is no way to validate a routine in an organisation without the routine doing the thing, which makes a staged rollout impossible. The use-cases page has the detail.
No published compliance claim of xAI’s own found
No published SOC 2, ISO 27001, GDPR, or HIPAA claim was found in the Grok Bot documentation set, nor a retention period, data-residency option, or encryption specification. Compliance defers entirely to Cursor’s terms, which means your Grok Bot governance is a Cursor contract question.
Deleting a Bot does not clean up after it
Because files, browser sessions, and logins live on the shared account computer rather than inside a Bot, removing a Bot leaves them behind. Signing out of what it used is reported as a multi-step manual process.
The permanent link, and who should own it
Cursor documents a one-way door that almost no coverage mentions: "A SuperGrok link is permanent once created", and "You can’t unlink a Grok account from a Cursor account, and you can’t move a link to a different Cursor account."
For an individual that is a mild annoyance. For an organisation it is a governance decision that has to be made before anybody clicks anything, because the wrong answer is not reversible.
- An employee linking their personal SuperGrok to a corporate Cursor account has permanently entangled a personal subscription with company identity. It cannot be undone or moved when they leave.
- An employee linking a corporate SuperGrok to their personal Cursor account has done the reverse, and the company cannot reclaim it.
- A team that links to the wrong Cursor workspace, for example a trial workspace created during evaluation, cannot migrate the link to the production workspace later.
The mitigation is procedural rather than technical: decide which account owns the link, document it, and tell people before they install the app rather than after. There is no undo to fall back on.
The procurement checklist
Questions to put to a vendor, with the answer as it stands on 22 August 2026 so you can see which ones are genuinely open.
| Question | Answer today |
|---|---|
| Is there an enterprise agreement? | No. Waitlist only |
| What is the b2b purchase path? | Cursor Teams Standard or Premium seats |
| Does our SuperGrok Team plan work? | No. Explicitly not supported |
| Can we enforce SSO on Grok Bot? | Not documented for Bot. Identity is Cursor’s |
| Is there SCIM provisioning? | Not documented for Bot |
| Can an admin see what Bots did? | Per-Bot transcripts only. No org view |
| Is there a queryable organisation-wide audit view? | Not available. An audit view is described as coming |
| How long is activity retained? | 20 most recent run records, reported by Daily Dose of Data Science; unconfirmed by xAI |
| Can we cap spend per seat? | No cap exists |
| Do we know the included allowance? | Not published for any tier |
| Can we choose data residency? | No option offered |
| What is the retention period? | Not published |
| SOC 2, ISO 27001, GDPR, HIPAA? | No published claim found in the Grok Bot doc set. Defers to Cursor |
| Can a rehearsal be non-destructive? | No dry-run mode |
| Is the account link reversible? | No. Permanent, and cannot be moved |
| Does Legacy Privacy Mode block it? | Yes. Grok Bot requires cloud data storage |
That last row is worth checking first, before any of the others. Many organisations turned Legacy Privacy Mode on as a condition of adopting Cursor at all. If yours did, Grok Bot is unavailable at any price until that decision is revisited, and revisiting it is a bigger conversation than adopting an agent product.
What a team that needs governance should do instead
If your blocking requirements are an audit trail, a spend ceiling, and a boundary between what different people’s agents can reach, none of those exist in Grok Bot today. Only the audit view is described as coming; the other gaps may be fixed, but no roadmap is documented. That is a wait-and-see verdict rather than a permanent one, and this page will be updated if the audit view ships.
In the meantime, the alternative that answers those requirements is the one where the agents run on infrastructure your organisation already controls. Continuum runs Claude Code, Codex, Cursor, Grok, Gemini, and OpenCode on machines your team owns, under the subscriptions your team already holds. Each Code session gets its own git worktree, spend is recorded per repository so a runaway session is visible while it runs, live quota gauges sit beside the work, and members drive sessions from an iPhone or a browser while the work continues on the host.
The organisation-level surface, including how teams share hosts and how usage rolls up, is at Continuum for organizations. The wider pattern of putting a control plane in front of several vendors’ agents rather than buying one vendor’s hosted agent is covered in the control plane guide.
Questions people ask
Does Grok Bot have an enterprise plan?
No. Enterprise access was announced as a waitlist at launch on 11 August 2026 and remained a waitlist when we checked on 22 August 2026. There is no published enterprise tier, no enterprise pricing, no feature list, and no stated timeline. The only shipping business path is a Cursor Teams subscription.
Does SuperGrok Team include Grok Bot?
No, despite the name. Cursor’s help page states that "Only individual SuperGrok Plus and individual SuperGrok Heavy grant Grok Bot usage" and that "SuperGrok Team and SuperGrok Enterprise plans are not supported". The team plan that does include Grok Bot is Cursor Teams, which is a different product entirely.
How do I buy Grok Bot for a team?
Cursor Teams seats. Both tiers now include Grok Bot after the 21 August 2026 expansion: Standard at a $40 list price per seat, and Premium at a $120 list price per seat, with a published 20% annual billing discount. Every seat holder also needs a Cursor account, which is the same account the seat is on.
Does Grok Bot support SSO?
Nothing published describes SSO enforcement for Grok Bot itself. Identity runs through Cursor, so whatever an organisation configures there is the identity layer, but the Grok Bot documentation does not describe SSO, SCIM provisioning, or what happens to a departed employee’s Bots and the logins they left on the shared cloud machine.
Is there a Grok Bot audit log?
There is no queryable organisation-wide audit view. eesel’s review notes the documentation describes an audit view as coming, twice, and that what exists today is per-Bot chat transcripts. Routine history is separately reported as capped at the twenty most recent run records by Daily Dose of Data Science, unconfirmed by xAI. That covers 20 hours around the clock; just over two business days at nine runs/day.
Can an admin cap what Grok Bot costs per seat?
No. eesel documents that there is no Grok Bot spend cap, and the weekly token allowance attached to each plan is not published for any tier. Overage bills at raw model rates on a router that offers no model picker, so neither the ceiling nor the per-task cost is something an administrator can control.
Is Grok Bot SOC 2 or ISO 27001 certified?
No published SOC 2 or ISO 27001 claim was found in the Grok Bot documentation set, nor a GDPR or HIPAA claim, published retention period, data-residency option, or encryption specification of xAI’s own. Compliance defers to Cursor’s terms, so a Grok Bot security review is effectively a review of the Cursor contract.
Can we undo linking a SuperGrok account to a Cursor account?
No. Cursor documents that "A SuperGrok link is permanent once created" and that you cannot unlink a Grok account from a Cursor account or move the link to a different Cursor account. Decide which account owns the link before anyone installs the app, because there is no reversal.
Why can our organisation not use Grok Bot at all?
The most common reason is Cursor’s Legacy Privacy Mode. Grok Bot requires cloud data storage, so an account with that mode enabled cannot use the product at any tier. Many organisations enabled it as a condition of adopting Cursor, which means unblocking Grok Bot means reopening that decision.
Sources
Every figure above was read from these pages on August 2026. Vendors reprice without notice; if you find a stale number, tell us.
- Cursor help: SuperGrok and Grok Bot individual SuperGrok Plus and Heavy only; Team and Enterprise not supported; the permanent link
- Cursor help: getting started with Grok Bot the Cursor-side setup path and the plans-and-billing choice
- Cursor pricing which Cursor tiers carry Grok Bot, and the Teams seat prices
- Grok Bot get started, docs.x.ai eligible plans, Cursor sign-in, platform downloads, the Linux statement, Settings paths
- Grok Bot overview, docs.x.ai the shared cloud computer, per-Bot screens, memory, routines, connectors and MCP, computer use, group chats
- xAI: Introducing Grok Bot launch date, beta status, positioning, enterprise waitlist
- xAI: Grok Bot on more plans 21 August 2026 access expansion; note it does NOT mention a trial
- eesel AI: Grok Bot review metering behaviour, compliance gaps, no dry run, audit view described as coming
- TechCrunch: SpaceX closes the Cursor acquisition the deal timeline that explains why Grok Bot runs on Cursor’s infrastructure
- Continuum pricing Free, Plus, Max 100, Max 200, Ultra, and the Team seat price