-
Notifications
You must be signed in to change notification settings - Fork 1.3k
Over excessive permissions Request #953
Copy link
Copy link
Open
Labels
area:authenticationLogin, OAuth, device auth, token management, and keychain integrationLogin, OAuth, device auth, token management, and keychain integrationarea:enterpriseGitHub Enterprise (GHE/GHES) support, org policies, and enterprise settingsGitHub Enterprise (GHE/GHES) support, org policies, and enterprise settingsarea:permissionsTool approval, security boundaries, sandbox mode, and directory restrictionsTool approval, security boundaries, sandbox mode, and directory restrictions
Metadata
Metadata
Assignees
Labels
area:authenticationLogin, OAuth, device auth, token management, and keychain integrationLogin, OAuth, device auth, token management, and keychain integrationarea:enterpriseGitHub Enterprise (GHE/GHES) support, org policies, and enterprise settingsGitHub Enterprise (GHE/GHES) support, org policies, and enterprise settingsarea:permissionsTool approval, security boundaries, sandbox mode, and directory restrictionsTool approval, security boundaries, sandbox mode, and directory restrictions
Type
Fields
Give feedbackNo fields configured for Feature.
Describe the feature or problem you'd like to solve
Be able to control what repos and areas of GitHub the AI has access to
Proposed solution
When authenticating it asks for Read/Write to every single thing in your account. That seems a little extreme if i am trying to only work in 1 repository. Users should be able to control what it needs access to. Letting it have access to all private repos and gists is crazy.
Example prompts or workflows
No response
Additional context
No response