Permission prompts should display the specific rule or command characteristic that triggered approval
Chưa có ai nhận issue này.
- Ngôn ngữ chính
- Shell
- Star
- 11.2k
- Fork
- 1.9k
- Merge trung bình
- 14 giờ 16 phút
- Pull request đã merge (30 ngày)
- 6
Mô tả
Describe the feature or problem you'd like to solve
When GitHub Copilot CLI requests permission to execute a command, the prompt does not explain which specific part of the command triggered the safeguard. This makes it difficult to understand why approval is required, evaluate whether the safeguard is behaving correctly, and tune AI behavior to avoid triggering a permission prompt
Proposed solution
Display the specific permission rule(s) or command characteristic(s) that triggered the approval requirement.
Example prompts or workflows
Example 1
Command:
Remove-Item -Recurse .\temp
Reason: Uses Remove-Item
Example 2
Command:
cp file.txt ../other-project/
Reason: Writes outside trusted directory
Example 2
Command:
cp file.txt ../other-project/
Reason: Writes outside trusted directory
Example 3
Command:
Get-Content "$logPath"
Reason: Uses string interpolation
Additional context
Other agent-based coding tools surface the specific action that triggered a permission request. This provides:
- Better transparency
- Greater user trust
- Easier debugging of unexpected prompts
- Improved understanding of permission boundaries
- Better feedback when safeguards are overly broad or overly sensitive
Without this information, users are left guessing which command characteristic caused the approval request and cannot easily determine whether the safeguard behaved as intended.
Hướng dẫn đóng góp
Bắt đầu từ đâu
- Đọc hết issue, rồi đọc hướng dẫn đóng góp của dự án.
- Bình luận trên issue rằng bạn sẽ nhận — tránh hai người làm cùng một việc.
- Fork repository và làm thay đổi trên một nhánh.
- Mở pull request có tham chiếu số hiệu của issue.
Hướng nghiên cứu
Bắt đầu tại các điểm vào của lời nhắc cấp quyền và cơ chế bảo vệ lệnh của Copilot CLI; theo dõi cách các yêu cầu phê duyệt được tạo cho các ví dụ Remove-Item, cp và Get-Content. Được xem là hoàn tất khi mỗi lời nhắc xác định quy tắc hoặc đặc tính của lệnh đã kích hoạt nó, với phạm vi bao phủ các workflow đã nêu.
Do mô hình lập chỉ mục viết ra từ nội dung của issue.
Đánh giá
- Công nghệ
- shell
- Lĩnh vực
- cli, security
- Loại issue
- Tính năng
- Độ khó
- 4/5
- Thời gian dự kiến
- 3-5 ngày
- Mức độ hoạt động
- Ít trao đổi
- Độ rõ ràng
- Khá rõ ràng
- Mức phù hợp với người mới
- 45/100