github / github/copilot-cli

Title: Tool restriction priority between copilot-instructions.md and AGENTS.md

Abierto
#701 0 comentarios 0 reacciones 0 asignados Ver en GitHub
area:agents area:configuration area:permissions area:tools
Lenguaje dominante
Shell
Estrellas
11.2k
Forks
1.9k
Merge medio
14 h 16 min
PR fusionados (30 d)
6

Descripción

### Describe the feature or problem you'd like to solve

I observed unexpected behavior with tool restrictions when using custom agents.

### Proposed solution

Expected behavior:
When using @readonly-agent (defined in AGENTS.md with only view/read tools allowed),
I expected all modification operations (str_replace, create, delete) to be blocked.

Actual behavior:
The agent was able to execute str_replace, create, and powershell commands
despite AGENTS.md specifying only view/read tools.

Questions:
1. What is the priority order between .github/copilot-instructions.md and AGENTS.md
for tool permissions?
2. Can AGENTS.md restrict/deny tools that are allowed in copilot-instructions.md?
3. What is the intended behavior for tool restriction inheritance?

Environment:
- GitHub Copilot CLI version: 0.0.349
- Custom agent defined in AGENTS.md
- Tool restrictions specified in agent definition

### Example prompts or workflows

_No response_

### Additional context

_No response_

Guía de contribución

Abrir la guía de contribución

Evaluación

Este issue todavía no se ha evaluado.

Recibe los nuevos issues en tu correo

Un resumen breve de issues de GitHub para principiantes.