github / github/copilot-cli

Title: Tool restriction priority between copilot-instructions.md and AGENTS.md

Đang mở
#701 0 bình luận 0 reaction 0 người được giao Xem trên GitHub
area:agents area:configuration area:permissions area:tools
Ngôn ngữ chính
Shell
Star
11.2k
Fork
1.9k
Merge trung bình
14 giờ 16 phút
Pull request đã merge (30 ngày)
6

Mô tả

### Describe the feature or problem you'd like to solve

I observed unexpected behavior with tool restrictions when using custom agents.

### Proposed solution

Expected behavior:
When using @readonly-agent (defined in AGENTS.md with only view/read tools allowed),
I expected all modification operations (str_replace, create, delete) to be blocked.

Actual behavior:
The agent was able to execute str_replace, create, and powershell commands
despite AGENTS.md specifying only view/read tools.

Questions:
1. What is the priority order between .github/copilot-instructions.md and AGENTS.md
for tool permissions?
2. Can AGENTS.md restrict/deny tools that are allowed in copilot-instructions.md?
3. What is the intended behavior for tool restriction inheritance?

Environment:
- GitHub Copilot CLI version: 0.0.349
- Custom agent defined in AGENTS.md
- Tool restrictions specified in agent definition

### Example prompts or workflows

_No response_

### Additional context

_No response_

Hướng dẫn đóng góp

Mở hướng dẫn đóng góp

Đánh giá

Issue này chưa được đánh giá.

Nhận issue mới trong hộp thư của bạn

Bản tóm tắt ngắn những issue GitHub phù hợp với người mới.