Describe the feature or problem you'd like to solve
Currently, the availability of the Copilot CLI can only be toggled (enabled/disabled) at the broader organizational level. However, there is no native feature to enforce granular organizational policies that restrict or allow the usage of specific underlying tools and capabilities—such as bash command execution or local file system access.
Proposed solution
To meet strict security and compliance requirements in Enterprise environments, we request a mechanism that allows organization administrators to fine-tune and restrict the scope of tool usage within the Copilot CLI.
Such as: Claude Code Server Managed Settings
Example prompts or workflows
No response
Additional context
No response