GitHub Copilot adds enterprise-managed permissions for agent ops
Copilot Business and Enterprise admins can now centrally set which agent shell, file, and network actions are blocked, need approval, or run unprompted. Policies apply in the Copilot app, CLI, and VS Code Agent Host, and can’t be weakened by user or workspace settings.
