GitHub Copilot CLI
GitHub / Microsoft · cli agent · paid
GitHub’s terminal coding agent, the successor to the gh-copilot extension. Agentic edits, MCP, and GitHub context from the command line.
Helps prioritize which assistants and sources we maintain. Anonymous · one vote per visitor.
Config files GitHub Copilot CLI has changed
Config you own — hooks, permission rules, MCP servers, settings — that releases below state a change to. Counted from the release notes we track, newest change first. How a harness is layered.
Release signals
**Fixed**
- Warmed language servers stay running across LSP requests when sandboxing is disabled
- Clicking a truncated compact shell command expands it
2026-10-05
- Add `copilot config` subcommands to list, read, set, and remove settings.
- Add a pre-conversation Ctrl+E environment picker to switch between local and cloud runs
- Entra-protected MCP servers can silently renew access-token-only credentials.
- Legacy HTTP+SSE MCP connections no longer hang indefinitely when a message POST is never acknowledged; the acknowledgement is bounded by the server's configured timeout
- Voice runtime install errors name why the download from nuget.org failed, not only the fallback feed's 401
- +37 more changes
Read the full release noteHide the full release note
2026-10-05
- Add
copilot configsubcommands to list, read, set, and remove settings. - Add a pre-conversation Ctrl+E environment picker to switch between local and cloud runs
- Entra-protected MCP servers can silently renew access-token-only credentials.
- Legacy HTTP+SSE MCP connections no longer hang indefinitely when a message POST is never acknowledged; the acknowledgement is bounded by the server's configured timeout
- Voice runtime install errors name why the download from nuget.org failed, not only the fallback feed's 401
- Compaction keeps your latest prompt when requests exceed context limits
- Large Anthropic requests rejected by provider size limits now retry after downscaling images or removing attachments
- Custom agent model entries keep model-bound reasoning effort only when that model is selected
- Shell tool calls now stream live stdout and stderr output reliably in the timeline
- Usage reporting preserves provider-reported reasoning token totals when available
- Sessions no longer slow to a crawl for minutes after the agent writes a very large file in one step
- Sandboxed shells now withhold ambient GITHUB_TOKEN unless explicitly configured.
Excerpt ends here — this release continues at the source ↗.
**Improved**
- Select which account to use after Microsoft Entra sign-in, and let /logout sign out those OAuth sessions.
- **Fixed**
- Entra-protected MCP servers can silently renew access-token-only credentials.
**Added**
- Add `copilot config` subcommands to list, read, set, and remove settings.
- **Improved**
- Improve first-run startup by extracting the bundled CLI package in a child process
- Improve startup responsiveness when connecting many MCP servers at once
- Canvas actions can now return images to the model in invoke_canvas_action.
- **Fixed**
- Legacy HTTP+SSE MCP connections no longer hang indefinitely when a message POST is never acknowledged; the acknowledgement is bounded by the server's configured timeout
- +20 more changes
Read the full release noteHide the full release note
Added
- Add
copilot configsubcommands to list, read, set, and remove settings.
Improved
- Improve first-run startup by extracting the bundled CLI package in a child process
- Improve startup responsiveness when connecting many MCP servers at once
- Canvas actions can now return images to the model in invoke_canvas_action.
Fixed
- Legacy HTTP+SSE MCP connections no longer hang indefinitely when a message POST is never acknowledged; the acknowledgement is bounded by the server's configured timeout
- Voice runtime install errors name why the download from nuget.org failed, not only the fallback feed's 401
- Compaction keeps your latest prompt when requests exceed context limits
- Large Anthropic requests rejected by provider size limits now retry after downscaling images or removing attachments
- Custom agent model entries keep model-bound reasoning effort only when that model is selected
- Shell tool calls now stream live stdout and stderr output reliably in the timeline
- Usage reporting preserves provider-reported reasoning token totals when available
- Sessions no longer slow to a crawl for minutes after the agent writes a very large file in one step
Excerpt ends here — this release continues at the source ↗.
**Added**
- Add a pre-conversation Ctrl+E environment picker to switch between local and cloud runs
- **Fixed**
- Keyboard, paste, and mouse input now stay ordered and responsive during rapid interaction.
- Sandboxed shell commands offer a network bypass prompt whenever the proxy blocks a destination
- Sandboxed scripts that run Git now authenticate with masked credentials and SSH remote rewrites
- Sub-agents keep working after you replace your GitHub authentication credentials
- **Removed**
- Remove retired models from the model picker and supported CLI selections
**Fixed**
- Sandboxed commands on Windows write temporary files to the granted temp directory, so tools that rename a temp file into place work
- Prompt-mode sessions fire a single sessionEnd hook after Stop-hook continuations complete
**Fixed**
- Reconnect to remote MCP servers after idle Streamable HTTP sessions expire
- Messaging a running background agent now steers its active turn at the next processing opportunity.
- Context rollovers keep your latest requests in the recovery context.
- Hide the automatic sandbox CA setup prompt on Windows accounts that cannot self-elevate
- Copilot no longer describes a subagent as configured when the current session cannot run it.
- +1 more change
Read the full release noteHide the full release note
Fixed
- Reconnect to remote MCP servers after idle Streamable HTTP sessions expire
- Messaging a running background agent now steers its active turn at the next processing opportunity.
- Context rollovers keep your latest requests in the recovery context.
- Hide the automatic sandbox CA setup prompt on Windows accounts that cannot self-elevate
- Copilot no longer describes a subagent as configured when the current session cannot run it. Previously a session that could not use rubber-duck still reported it as set up in /subagents, and asking for it failed instead of being skipped cleanly.
**Fixed**
- MCP tools continue working after OAuth reauthentication when tool definitions are unchanged
2026-10-01
- Add `copilot sandbox ca` commands to check, create, trust, rotate, and remove proxy CA trust, including unattended Windows setup; `/sandbox ca install` becomes `create` and `trust`
- Session timelines now clear busy status after interrupted turns finish.
- Sandboxed commands run on Windows versions without filesystem enumeration support, with a warning that PowerShell's current location may be wrong
- Footer text selection stays on the same visible line when the footer grows or shrinks.
- Offer sandbox network bypass for Node/npm EACCES socket denials on Windows
- +2 more changes
Read the full release noteHide the full release note
2026-10-01
- Add
copilot sandbox cacommands to check, create, trust, rotate, and remove proxy CA trust, including unattended Windows setup;/sandbox ca installbecomescreateandtrust - Session timelines now clear busy status after interrupted turns finish.
- Sandboxed commands run on Windows versions without filesystem enumeration support, with a warning that PowerShell's current location may be wrong
- Footer text selection stays on the same visible line when the footer grows or shrinks.
- Offer sandbox network bypass for Node/npm EACCES socket denials on Windows
- CLI shutdown flushes pending telemetry before exit, with a bounded delay when telemetry is still initializing.
- Complete, statically analyzable read-only shell pipelines can now enter execution-evidence review, while incomplete or unbound pipelines require explicit approval.
**Added**
- Add `copilot sandbox ca` commands to check, create, trust, rotate, and remove proxy CA trust, including unattended Windows setup; `/sandbox ca install` becomes `create` and `trust`
- **Improved**
- CLI shutdown flushes pending telemetry before exit, with a bounded delay when telemetry is still initializing.
- **Fixed**
- Session timelines now clear busy status after interrupted turns finish.
- Sandboxed commands run on Windows versions without filesystem enumeration support, with a warning that PowerShell's current location may be wrong
- +1 more change
**Improved**
- Complete, statically analyzable read-only shell pipelines can now enter execution-evidence review, while incomplete or unbound pipelines require explicit approval.
- **Fixed**
- Offer sandbox network bypass for Node/npm EACCES socket denials on Windows
2026-09-30
- Add support for GPT-6.1 Sol in model selection
- Add --mcp-github-auth to scope GitHub account auth to approved MCP server origins
- Add session-scoped read-only directory approvals to path access prompts
- Permission prompts remain answerable after resuming interrupted sessions.
- Auto-approval now takes into account messages you type while the agent is working, as it already did for prompts sent while it was idle
- Compaction now returns a summary even when instructions ask for tool use.
- +10 more changes
Read the full release noteHide the full release note
2026-09-30
- Add support for GPT-6.1 Sol in model selection
- Add --mcp-github-auth to scope GitHub account auth to approved MCP server origins
- Add session-scoped read-only directory approvals to path access prompts
- Permission prompts remain answerable after resuming interrupted sessions.
- Auto-approval now takes into account messages you type while the agent is working, as it already did for prompts sent while it was idle
- Compaction now returns a summary even when instructions ask for tool use.
- Copying selected text on Wayland now finishes as soon as wl-copy accepts it, instead of timing out and falling back to the in-process clipboard that can print "Somebody else owns the clipboard now" over the UI
- A narrow Sessions sidebar drops keyboard hints that do not fit instead of cutting one off mid-word
- MCP tools recover after transient discovery failures without restarting the session; unchanged catalogs remain available during recovery.
- "No supported model available" is no longer shown on launch or in the model picker when a configured provider already supplies a model
- MCP tool calls complete even when servers keep sending progress updates after responding
Excerpt ends here — this release continues at the source ↗.
Fixes and changes
Primary source ↗**Added**
- Add support for GPT-6.1 Sol in model selection
- **Improved**
- Click anywhere on expanded tool calls in compact timeline to collapse them
- Holding Space and Ctrl+X V explain when voice mode is off or still getting ready
- **Fixed**
- Permission prompts remain answerable after resuming interrupted sessions.
- Auto-approval now takes into account messages you type while the agent is working, as it already did for prompts sent while it was idle
- Compaction now returns a summary even when instructions ask for tool use.
- +3 more changes
Read the full release noteHide the full release note
Added
- Add support for GPT-6.1 Sol in model selection
Improved
- Click anywhere on expanded tool calls in compact timeline to collapse them
- Holding Space and Ctrl+X V explain when voice mode is off or still getting ready
Fixed
- Permission prompts remain answerable after resuming interrupted sessions.
- Auto-approval now takes into account messages you type while the agent is working, as it already did for prompts sent while it was idle
- Compaction now returns a summary even when instructions ask for tool use.
- Copying selected text on Wayland now finishes as soon as wl-copy accepts it, instead of timing out and falling back to the in-process clipboard that can print "Somebody else owns the clipboard now" over the UI
- A narrow Sessions sidebar drops keyboard hints that do not fit instead of cutting one off mid-word
- MCP tools recover after transient discovery failures without restarting the session; unchanged catalogs remain available during recovery.
Polled sources
[github-releases] GitHub Releases
GitHub Releases · last read Oct 9, 2026
https://github.com/github/copilot-cli/releases