No approval required for any tool execution in docker sandboxes
Dieses Issue hat noch niemand übernommen.
- Vorherrschende Sprache
- Shell
- Sterne
- 11.2k
- Forks
- 1.9k
- Ø Merge
- 14 Std. 16 Min.
- Gemergte PRs (30 T.)
- 6
Beschreibung
Describe the bug
In docker sandboxes, CLI does not ask me approval for any tool executions:
- create, edit or delete a file
- call curl GET or POST by bash
- create instant python script and run it
- call dotnet command for compiling
Even though /yolo show says Tool, path, and URL requests require individual approval., I have never asked approval for tool executions.
If I ran CLI on Windows outside of docker sandboxes, approvals requested correctly. CLI seems to be affected by the environment but it is not described in reference document. IMO, yolo off should work regardless of the environment.
Affected version
1.0.83
Steps to reproduce the behavior
- Install docker sandboxes (
winget Docker.sbx) and launch copilot (sbx run copilot) /yolo offand confirm by/yolo show- Ask to run any of operations above like "I want to check yolo off behavior. Try to create and delete a file, generate and run python script, and access external URL."
Expected behavior
CLI asks me approval for the tool executions.
Additional context
Environment
- GitHub Copilot CLI in Docker Sandboxes v0.39.0 on Windows 11
permissions-config.jsonnot existspermissions.disableBypassPermissionsModeisdisableinsettings.json
Beitragsleitfaden
Erste Schritte
- Lies das ganze Issue und danach den Beitragsleitfaden des Projekts.
- Schreib ins Issue, dass du es übernimmst — das erspart doppelte Arbeit.
- Forke das Repository und arbeite in einem Branch.
- Öffne einen Pull Request, der die Issue-Nummer nennt.
Rechercherichtung
Mit Docker Sandboxes v0.39.0 unter Windows 11 mit sbx run copilot reproduzieren; /yolo off und /yolo show vergleichen, während die CLI direkt ausgeführt wird. Dann die Berechtigungsverarbeitung zusammen mit permissions-config.json und settings.json nachverfolgen und den Fix bestätigen, wenn jede aufgeführte Operation in der Sandbox eine Genehmigung anfordert.
Vom Indexierungsmodell aus dem Issue-Text verfasst.
Bewertung
- Tech-Stack
- docker, shell
- Bereich
- authorization, cli, security
- Issue-Typ
- Bug
- Schwierigkeit
- 4/5
- Geschätzter Aufwand
- 3-5 Tage
- Aktivitätsstatus
- Aktiv
- Klarheit
- Größtenteils klar
- Anfängerfreundlichkeit
- 48/100