GitHub's Copilot CLI as a mixin — the CLI in an overlay, with the GitHub and Copilot credential...
226
GitHub's Copilot CLI as a mixin — the CLI in an overlay, with the GitHub and Copilot credentials, scoped egress, and the trusted-folder and MCP-gateway seeds the agent needs. Layer it onto a shell base and run `copilot`.
| Name | Required | Default | Description |
|---|---|---|---|
version | Optional | 1.0.86 | GitHub Copilot CLI release to install |
[email protected]| Type | Required | Description | |
|---|---|---|---|
com.docker.sandbox/network-policy@1 | Required | — | |
com.docker.sandbox/credential@1 | Optional | GitHub API access for git and gh | |
com.docker.sandbox/credential@1 | Optional | Copilot request access, separable from the broader github token | |
com.docker.sandbox/lifecycle@1 | Required | — | |
com.docker.sandbox/agent-context@1 | Required | — | |
deb/jq, deb/util-linuxsbx run <agent> --kit docker/sbx-kit-copilot-mixin:latestRun the following command to install sbx on your machine.
brew install docker/tap/sbxwinget install Docker.sbxNote
Experimental: Sandbox Kit v3This kit uses the experimental Sandbox Kit specification, specifically v3. The format and runtime behavior may change before v3 is stable.
GitHub's Copilot CLI as a v3 mixin: the same agent the
copilot workload kit ships, packaged as an overlay that lands on
a shell base instead of as a root filesystem of its own.
Use this when you want copilot alongside something else — a different base
image, another agent, a set of tools — rather than as the sandbox's entire
identity. Use copilot when Copilot is the sandbox.
The overlay itself: the CLI tree at /opt/copilot-cli with a
/usr/local/bin/copilot shim. Nothing else — the v2 copilot kit declared no
environment variables, so unlike the codex and cursor mixins there is no
/etc/profile.d drop.
Declaratively it makes the same asks as the workload kit: both credentials
(github for git and gh, copilot for a separable fine-grained Copilot PAT),
the egress each one injects into, the trusted_folders seed, and the
MCP-gateway registration that merges into ~/.copilot/mcp-config.json rather
than overwriting it.
--yolo. Pass it
yourself if you want it.filename is workload-only; this kit contributes
a context body and the workload names the profile.copilot kit refreshes its base image's apt cache
at boot and allows the mirrors that needs. Which package manager a base ships
and which mirrors it trusts are the base's business, so neither the hook nor
the mirror hosts are declared here.The MCP hook needs jq and flock on the base, as it does in the workload
kit; a base carrying the platform floor and coreutils has both.
sbx create --kit ./shell --kit ./copilot-mixin --name my-task /path/to/task
Then run copilot inside the sandbox.
Composing this with the copilot workload kit is refused: both
provide the name copilot, and one capability name has one owner.
Pulls:
76
Last week