Skip to content

subagent permission approval lacks context and is confusing #3684

@tdihp

Description

@tdihp

Describe the bug

Linux subagents can run commands that the permission pattern only captures "/" as the directory which is super dangerous, without giving me the exact command will be run and context around it like a regular agent.

Affected version

No response

Steps to reproduce the behavior

  1. run copilot-cli
  2. ask it to run a command in subagent that require additional permission
  3. find that permission itself got prompted, but reasoning/context isn't

Expected behavior

I should be able to see which agent and its full glory

Additional context

No response

Metadata

Metadata

Assignees

No one assigned

    Labels

    area:agentsSub-agents, fleet, autopilot, plan mode, background agents, and custom agentsarea:permissionsTool approval, security boundaries, sandbox mode, and directory restrictions

    Type

    No fields configured for Bug.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions