All skills
aktsmm avatar

/permission-max

@e6b8215
by yamapanaktsmm/agent-skills26 stars
4

Reduce repeated permission prompts across Microsoft Scout, Copilot CLI, and host tool confirmations with user-approved settings and explicit before/after verification. Use when users ask for permission max, fewer approval prompts, shell allow-list expansion, autoApprove, or diagnosis of repeated Read/Write/PowerShell confirmations.

Use this Skill: https://skilld.dev/gh/aktsmm/agent-skills/permission-max

This session only. Nothing lands on disk.

referenceshost-cli-diagnostics.md

≈401 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Copilot CLI and Host Diagnostics

Use this reference when Scout settings are already correct but Read, Write, Edit, or PowerShell command confirmations still appear.

Read-Only Discovery

$candidates = @(
  "$env:USERPROFILE\.copilot",
  "$env:APPDATA\GitHub Copilot",
  "$env:APPDATA\Code\User",
  "$env:LOCALAPPDATA\GitHub Copilot"
)
foreach ($path in $candidates) {
  if (Test-Path -LiteralPath $path) {
    Get-ChildItem -LiteralPath $path -Force -Recurse -Include '*permission*','*settings*.json','*.toml','*.yaml','*.yml' |
      Select-Object FullName,Length,LastWriteTime
  }
}

Also inspect the installed CLI help instead of assuming flags:

copilot --help
copilot -p "help" --help

Only edit a discovered approval, confirmation, workspace trust, or tool allow-list setting after explaining the scope to the user. If the host manages the guard and exposes no setting, report that limitation instead of claiming completion.

For a separately launched copilot -p subprocess, supported versions may accept:

copilot -p "<prompt>" `
  --allow-all-tools `
  --allow-all-urls `
  --silent

These flags apply to that subprocess. They do not necessarily change Scout or the current host session.

Limitation Report

Scout permissions were verified separately.
The remaining confirmation belongs to the Copilot CLI or host guard, and no supported setting was found to disable it globally.
Subprocess allow flags may reduce prompts for a separately launched command, but they do not alter this session's host controls.

Source: SKILL.md on GitHub

1 alert2mo3 checks · Risk HIGH
  • Gen Agent Trust Hub2mo

    This skill is designed to significantly escalate the AI agent's privileges by requesting broad access to critical system commands and enabling auto-approval for high-risk operations like shell execution and file system access. It also scans sensitive user directories for configuration files. While it prompts the user for the initial escalation, the resulting state removes essential security guardrails and human-in-the-loop oversight for future operations.

  • Socket2mo

    1 alert: gptSecurity

  • Snyk2mo

    Risk: MEDIUM · 1 issue

Signed by skilld at e6b8215. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 18 hours ago.

Activeupdated 3 months ago
argument-hint
権限確認を減らしたい実行環境、Scout/Copilot CLI/ホスト側の症状
user-invocable
true
metadata
{
  "author": "yamapan (https://github.com/aktsmm)"
}

README badge

README badge for aktsmm/agent-skills/permission-max