started · updated
GitHub introduces Copilot sandbox controls for JetBrains IDEs
GitHub has introduced centrally managed Copilot sandbox policies for JetBrains IDEs, currently available in public preview. This update allows enterprise administrators to enforce governance directly through the plugin rather than relying solely on external device-management systems.
Administrators can control various aspects of a sandboxed Copilot session, including filesystem and network path access, proxy routing, developer-tool usage, and macOS Keychain access. Settings applied by IT teams are marked as “(managed)” within the JetBrains plugin, preventing developers from overriding them locally. This feature includes policy diagnostics to help organizations verify that AI-agent restrictions are successfully applied to developer machines.