github / github/copilot-cli

Agent Skills `allowed-tools` frontmatter specs not respected in non-interactive mode

Open
#3,699 1 comment 0 reactions 0 assignees View on GitHub
area:non-interactive area:permissions area:plugins
Dominant language
Shell
Stars
11.2k
Forks
1.9k
Avg merge
14h 16m
Merged PRs (30d)
6

Description

### Describe the bug

**GIVEN** any generic skill like:
```markdown
---
name: greet-user
description: use when a user offers a greeting
allowed-tools:
- bash
- shell
- powershell
- any-other-tool
---

Run the `./scripts/greet.sh`

```

**WHEN** I prompt with "hello" in interactive mode in Copilot
**THEN** It works as expected and the script runs, but
**WHEN** I prompt with "hello" in NON-interactive mode (e.g. `copilot -p "hello"`)
**THEN** I get a ton of `Permission denied and could not request permission from user`
**AND** A ton of wasted tokens, time, and money

### Affected version

1.0.60

### Steps to reproduce the behavior

All in the above description.

### Expected behavior

If a tool is marked as allowed, **IT SHOULD BE ALLOWED.**

### Additional context

_No response_

Contributor guide

Open the contributing guide

Research direction

Reproduce the behavior with a generic skill using the shown allowed-tools frontmatter and the non-interactive `copilot -p "hello"` entry point, comparing it with interactive mode. Done means allowed tools such as `bash`, `shell`, or `powershell` run without permission-denied errors or repeated retries in non-interactive mode.

Written by the indexing model from the issue text.

Assessment

Tech stack
shell
Domain
authorization, cli
Issue type
Bug
Difficulty
3/5
Estimated time
1-2 days
Activity status
Quiet
Clarity
Mostly clear
Newbie friendliness
54/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.