觉
AI觉醒星球
Awakening is here
Knowledge File / AI小生意项目库
2026-07-28 4 浏览 免费阅读

GitHub Copilot 应用推出独立访问策略

GitHub 宣布 Copilot 应用现拥有独立策略,企业可单独控制应用访问,与 CLI 策略解耦,并提供三种管理模式。

SOURCE / AI小生意项目库 MIN / 9 ACCESS / 免费阅读 POST / 2026-07-28 04:43:37

原贴

查看原文
作者:Allison 来源站点:github.blog 原贴时间:

原文

The GitHub Copilot app now has its own policy, so you can control who has access to it at the enterprise and organization levels. Until now, access to the Copilot app depended on your GitHub Copilot CLI policy being enabled. From several conversations with customers, we understand that many of you want to manage each client independently. Now the Copilot app and the Copilot CLI each have their own policy, giving you the flexibility and control to enable the right clients for your teams. This new policy keeps your developers’ work within the guardrails you already rely on. When using this app, developers drive agent sessions in isolated workspaces and land changes through pull requests. This means the same reviews, checks, and audit history apply as they would to any other contribution. The Copilot app also joins Copilot CLI and VS Code as a supported client for enterprise-managed settings , so the guardrails you define once (e.g., which plugins developers can use) are consistently enforced in the Copilot app as well. You’ll find this policy alongside your other Copilot policies. It’s set to Enabled everywhere by default, so your developers can start using the app right away with no action needed from you. You have three options: Enabled everywhere gives your developers access to the app. Disabled everywhere turns the app off across your enterprise. Let organizations decide passes the choice to each organization’s admin. If the Copilot app isn’t the right fit for your teams, set it to Disabled everywhere . Developers who open the Copilot app will see a notice that their admin hasn’t enabled it. From your enterprise or organization settings, open the AI Controls tab. Choose Enabled everywhere , Disabled everywhere , or Let organizations decide . To learn more about the Copilot app, including how to get started and manage policies, explore our Copilot app documentation . To download the Copilot app, visit our landing page

中文翻译

GitHub Copilot 应用现在有了自己的策略,因此您可以在企业级和组织级控制谁可以访问它。在此之前,对 Copilot 应用的访问取决于您的 GitHub Copilot CLI 策略是否已启用。通过与客户的几次对话,我们了解到你们中的许多人希望独立管理每个客户端。现在,Copilot 应用和 Copilot CLI 各自都有自己的策略,让您能够灵活地控制为团队启用哪些客户端。这个新策略将您开发者的工作保持在您已经依赖的护栏内。使用此应用时,开发者在隔离的工作区中驱动机器人会话,并通过拉取请求落地更改。这意味着相同的审查、检查和审计历史记录适用于任何其他贡献。Copilot 应用也加入了 Copilot CLI 和 VS Code 的行列,成为企业托管设置支持的客户端,因此您一次性定义的护栏(例如,开发者可以使用哪些插件)也会在 Copilot 应用中一致地执行。您可以在其他 Copilot 策略旁边找到此策略。它默认设置为“在所有位置启用”,因此您的开发者可以立即开始使用该应用,无需您采取任何操作。您有三个选项:“在所有位置启用”为您的开发者提供对该应用的访问权限。“在所有位置禁用”会在您的企业中关闭该应用。“让组织决定”将选择权交给每个组织的管理员。如果 Copilot 应用不适合您的团队,请将其设置为“在所有位置禁用”。打开 Copilot 应用的开发者将看到一条通知,告知他们管理员尚未启用它。从您的企业或组织设置中,打开“AI 控制”选项卡。选择“在所有位置启用”、“在所有位置禁用”或“让组织决定”。要了解有关 Copilot 应用的更多信息,包括如何开始使用和管理策略,请浏览我们的 Copilot 应用文档。要下载 Copilot 应用,请访问我们的落地页。

核心信息

GitHub 宣布 Copilot 应用现拥有独立策略,企业可单独控制应用访问,与 CLI 策略解耦,并提供三种管理模式。

  • GitHub 宣布 Copilot 应用现拥有独立策略,企业可单独控制应用访问,与 CLI 策略解耦,并提供三种管理模式。
  • 原贴提到:The GitHub Copilot app now has its own policy, so you can control who ha
  • 来源:github.blog

详细解读

信号解读

GitHub 将 Copilot 应用从 CLI 策略中独立出来,为企业提供精细化的 AI 客户端访问控制。这标志着 AI 编程工具从“开发工具”转向“企业治理对象”,企业开始要求对 AI 助手的启用范围、使用方式和安全边界进行独立管控。

为什么重要

此前,Copilot 应用的访问依赖 CLI 策略,导致企业无法灵活区分不同客户端。此次调整回应了客户需求,使 Copilot 应用与 CLI、VS Code 并列,成为企业级托管设置的受支持客户端。这意味着企业一次性定义的防护措施(如插件白名单)能跨客户端一致执行,降低安全和合规风险。

对谁有价值

主要受益者是企业 GitHub 管理员、DevOps 负责人和安全团队。他们可以更高效地管理 AI 工具的使用边界,开发者也能在明确的规则下安心使用 AI 辅助,减少违规风险。

行动建议

  • 管理员应评估团队需求,在 AI Controls 选项卡中设置策略:默认“Enabled everywhere”适合希望快速推广的团队;严格管控环境可设为“Disabled everywhere”或“Let organizations decide”。
  • 开发者应关注企业策略,确认自身权限,避免因策略变更影响工作流。
  • 结合企业已有的 Copilot CLI 策略,统一规划各客户端的启用范围,形成清晰的管理矩阵。

风险与限制

默认启用可能使未经评估的团队直接使用应用,带来代码安全或数据泄露隐患;如果企业需要更精细的控制,需分步配置并做好沟通,避免开发者突然无法访问影响效率。此外,策略管理仅覆盖客户端访问,并不影响 Copilot 的实际生成能力,安全边界仍依赖企业自身代码审查流程。

信息差价值

这条内容的真正价值,不只是“有人发布了一个新功能”,而是它揭示了 github.blog 背后的产品方向、工作流变化或竞争信号。对 OPC 来说,这种信息可以转化成持续追踪的栏目选题。

如果把《GitHub Copilot 应用推出独立访问策略》放到你的内容系统里,它最大的价值在于帮助读者更快看懂“为什么值得关注”,而不是只看到一条碎片化动态。

参考来源

AI SUMMARY

这篇文章回答了什么

GitHub Copilot 应用推出独立访问策略主要讲什么?

GitHub 宣布 Copilot 应用现拥有独立策略,企业可单独控制应用访问,与 CLI 策略解耦,并提供三种管理模式。

这篇文章最值得关注的要点是什么?

GitHub 宣布 Copilot 应用现拥有独立策略,企业可单独控制应用访问,与 CLI 策略解耦,并提供三种管理模式。;原贴提到:The GitHub Copilot app now has its own policy, so you can control who ha;来源:github.blog

这篇文章和哪些AI专题相关?

它适合放在AI副业、AI工具、Agent工作流专题里阅读。 关联原因:这篇内容命中「项目、小生意、变现」等主题信号。;这篇内容命中「AI工具、工具、自动化」等主题信号。;这篇内容命中「AI编程」等主题信号。

阅读这篇文章建议先理解哪些关键词?

建议先理解AI工具、工具、自动化、模型、Cursor这些关键词,再结合正文判断工具、机会或风险是否值得进入自己的工作流。

上一篇 关于我们在开源权重模型上的立场已有诸多猜测 下一篇 Moonshot AI发布Kimi K3开放权重和基础设施,搅动前沿模型竞赛
北竹游乐场 免费玩小游戏 免费玩