September 23, 2026
GitHub Copilot can now be sandboxed: local sessions in preview
On September 23, the GitHub Copilot app received local sandboxing in public preview. The sandbox is off by default and limits the agent's access to files, the network, and credentials on the machine.

Before September 23, the GitHub Copilot app did not have local sandboxing. Now, each project can separately specify which folders the agent can read, modify, or cannot see, as well as its internet and local network access.
Enabling sessions. New local sessions receive a sandbox through App settings → project → Sandbox → “Sandbox new sessions”. In an already running session, use `/sandbox on`, while changes to file, network, and credentials rules take effect after restart.
Local sandboxing is available on all Copilot plans at no extra cost.
Source
