Allow built-in Agent Plugin Marketplaces to be blocked
还没有人认领这个 Issue。
- 主要语言
- Shell
- 星标
- 11.2k
- 派生
- 1.9k
- 平均合并
- 14 小时 16 分钟
- 30 天内合并 PR
- 6
描述
Describe the feature or problem you'd like to solve
copilot-plugins and awesome-copilot marketplaces always show and cannot be removed. We have our own universal internal Agent Plugin Marketplace. We'd like the option to block and hide any Copilot marketplaces.
Proposed solution
We maintain our own internal Enterprise wide Agent Plugin Marketplace, run as an innersource model. We have strong guardrails and guidelines in place to ensure skills do not overlap, follow consistent naming, structural and content conventions. They are also crafted specifically to our tools, languages, systems, & processes, etc.
We curate and clone external plugins/skills into this internal marketplace as we need them, tracking provenance so we can get updates, new features, etc. in a controlled and reviewed manner. This is especially important as supply chain attacks via prompt injection are on the rise and we do want users installing unreviewed external context enrichment.
Currently strictKnownMarketplaces doe not apply to copilot-plugins and awesome-copilot Agent Plugin Marketplaces. We'd like the ability to also have these, and any future integrated marketplaces, blocked and hidden.
Example prompts or workflows
No response
Additional context
贡献指南
从这里开始
- 先读完整个 Issue,再读项目的贡献指南。
- 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
- Fork 仓库,在一个分支上完成修改。
- 提交 Pull Request,并在描述里引用这个 Issue 编号。
调研方向
首先追踪 strictKnownMarketplaces 设置的处理方式,以及内置的 copilot-plugins 和 awesome-copilot marketplace 在哪里注册和显示。定义阻止和隐藏这些 marketplace(包括未来集成的 marketplace)的行为,并验证内部 marketplace 仍然可用;issue 中未指定具体文件或测试。
由索引模型根据 Issue 内容生成。
评估
- 技术栈
- shell
- 领域
- cli
- Issue 类型
- 功能
- 难度
- 4/5
- 预计耗时
- 3-5 天
- 活跃度
- 活跃
- 描述清晰度
- 基本清楚
- 新手友好度
- 50/100