{"id":6238,"date":"2026-07-22T03:02:24","date_gmt":"2026-07-22T07:02:24","guid":{"rendered":"https:\/\/workai.tv\/news\/2026\/07\/ai-engineering\/enterprise-managed-settings-now-support-strictknownmarketplaces-in-vs-code-and-github-copilot-cli\/"},"modified":"2026-07-22T03:02:24","modified_gmt":"2026-07-22T07:02:24","slug":"enterprise-managed-settings-now-support-strictknownmarketplaces-in-vs-code-and-github-copilot-cli","status":"publish","type":"post","link":"https:\/\/workai.tv\/news\/2026\/07\/ai-engineering\/enterprise-managed-settings-now-support-strictknownmarketplaces-in-vs-code-and-github-copilot-cli\/","title":{"rendered":"Enterprise-managed settings now support strictKnownMarketplaces in VS Code and GitHub Copilot CLI"},"content":{"rendered":"<h2>Share with your CISO<\/h2>\n<p>GitHub is tightening enterprise control over AI agent plugins by shipping <a href=\"https:\/\/github.blog\/changelog\/2026-06-25-enterprise-managed-settings-now-support-strictknownmarketplaces-in-vs-code-and-the-cli\/\" target=\"_blank\" rel=\"noopener nofollow\">strictKnownMarketplaces enforcement for Copilot in VS Code and the CLI<\/a>, now in public preview. A single setting in the enterprise-managed settings.json file restricts plugin installation to explicitly approved marketplaces only. GitHub pushes the policy automatically to every seat licensed under Copilot Business or Copilot Enterprise. No manual rollout, no user opt-in. The feature extends the enterprise-managed plugin capabilities GitHub began releasing in May and June 2026.<\/p>\n<h2>What this means for your business<\/h2>\n<p>The threat model GitHub is solving for is real and underappreciated. When developers install arbitrary plugins into an AI coding assistant, they&#8217;re not just adding features. They&#8217;re granting a third-party extension the ability to intercept prompts, read code context, and potentially exfiltrate proprietary logic before a line of code is committed. An unvetted Copilot plugin sits inside the developer&#8217;s authenticated session, which means the blast radius of a compromised extension extends well beyond the plugin itself.<\/p>\n<p>The significant move here isn&#8217;t the feature, it&#8217;s the enforcement architecture. Most enterprise software governance relies on post-hoc audit: something installs, security finds out later. GitHub&#8217;s approach pushes policy centrally and applies it at installation time, before tool execution. That&#8217;s the right direction. The recurring failure mode in shadow IT isn&#8217;t malicious intent from employees, it&#8217;s the absence of friction between a developer discovering a useful tool and that tool gaining access to production-adjacent environments.<\/p>\n<p>The signal worth watching is whether this pattern extends to MCP servers and other agent runtime surfaces beyond VS Code and the CLI. Copilot is already moving toward multi-step agentic workflows where plugins don&#8217;t just read context but take actions. Marketplace restriction is a necessary first control, but it&#8217;s a perimeter play. The harder problem, agent behavior post-installation, is still largely ungoverned in every vendor&#8217;s stack right now.<\/p>\n<h2>Concept deep-dive: Enterprise-managed policy push<\/h2>\n<p>Enterprise-managed settings work by having the vendor, GitHub in this case, pull a centrally maintained configuration file and apply it client-side across all licensed users automatically. Think of it as a corporate MDM profile for AI tools: the admin defines the allowed state once, and the software enforces it at the edge without requiring IT to touch individual machines. The business connection is direct. Your approved plugin list becomes a governance artifact, versioned and auditable, rather than a verbal policy nobody follows.<\/p>\n<p><em>Based on reporting from <a href=\"https:\/\/github.blog\/changelog\/2026-06-25-enterprise-managed-settings-now-support-strictknownmarketplaces-in-vs-code-and-the-cli\/\" target=\"_blank\" rel=\"noopener nofollow\">Enterprise-managed settings now support strictKnownMarketplaces in VS Code and GitHub Copilot CLI<\/a>, originally published 2026-06-25 03:00:00.<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Share with your CISO GitHub is tightening enterprise control over AI agent plugins by shipping strictKnownMarketplaces enforcement for Copilot in VS Code and the CLI, now in public preview. A single setting in the enterprise-managed settings.json file restricts plugin installation to explicitly approved marketplaces only. GitHub pushes the policy automatically to every seat licensed under [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":6239,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[145],"tags":[],"tmauthors":[],"class_list":["post-6238","post","type-post","status-publish","format-standard","has-post-thumbnail","category-ai-engineering"],"_links":{"self":[{"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/posts\/6238","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/comments?post=6238"}],"version-history":[{"count":0,"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/posts\/6238\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/media\/6239"}],"wp:attachment":[{"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/media?parent=6238"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/categories?post=6238"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/tags?post=6238"},{"taxonomy":"tmauthors","embeddable":true,"href":"https:\/\/workai.tv\/news\/wp-json\/wp\/v2\/tmauthors?post=6238"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}