Skip to content

GitHub Copilot: Enterprise managed permissions for GitHub Copilot agent operations

Released · GitHub / Microsoft

Breaking

Models:Adds GPT-6 Astra

What the release notes say

If you administer GitHub Copilot Business or GitHub Copilot Enterprise, you can now centrally control which agent operations are blocked, require human approval, or can proceed without a prompt. Managed permissions cover shell commands, file reads and edits, and network domains. This gives you fine-grained guardrails for sensitive operations without disabling agent workflows. Managed restrictions can't be weakened by user or workspace settings, auto-approval, or previously saved approvals. You can also provide specialized policies for different enterprise teams. These controls are generally available in the GitHub Copilot app, GitHub Copilot CLI, and Visual Studio Code sessions that use Agent Host. Learn more about enterprise managed permissions . Share feedback and implementation questions in the GitHub Community discussion . client apps copilot enterprise management tools Share Copied Shared Related Posts Sep.11 Improvement Add VS Code Agents to Copilot usage metrics account management copilot enterprise management tools ... +2 Sep.11 Improvement Auto-resolution and analysis updates in Copilot code review copilot Sep.10 Release GitHub Copilot weekly releases — September 7 copilot Sep.10 Retired MAI-Code-1-Flash deprecated copilot Sep.08 Release Enterprise-managed sandbox in Copilot for JetBrains copilot enterprise management tools ... +1 Sep.04 Release GitHub Copilot weekly releases — August 31 copilot Sep.04 Release GPT-6 Astra is generally available in GitHub Copilot copilot Sep.03 Retired Upcoming deprecation of selected GitHub Copilot models copilot Sep.03 Retired GitHub CLI Linux package signing key expires September 5

<div class="Tags-anim" data-target="unveil-ta