github / github/copilot-cli

Approval for commands is not fine grained enough (subcommand permission)

未關閉
#572 0 則留言 3 個 reaction 已指派 0 人 在 GitHub 檢視
area:permissions
主要語言
Shell
星號
11.2k
分支
1.9k
平均合併
14 小時 16 分鐘
30 天內合併 PR
6

描述

### Describe the bug

Like other coding agents, copilot asks if it is allowed to run commands. However, for commands like `uv` or `cargo` that can do many things, it only asks permission for the _top level command_ and not for the actual _subcommand_ that it wants to run.

This is problematic because `uv run` can run anything including destructive scripts or `carg some-plugin` can make unintended changes.

This is a request to allow for more fine grained permissions where I can approve what Copilot _actually_ intends to execute.

### Affected version

_No response_

### Steps to reproduce the behavior

_No response_

### Expected behavior

_No response_

### Additional context

_No response_

貢獻指南

開啟貢獻指南

評估

這個 Issue 還沒有評估資料。

把新 issue 寄到你的電子郵件信箱

精選適合新手參與的 GitHub issue 摘要。