# copilot-cli v1.0.84-0 — 1.0.84-0 - Product: copilot-cli (https://whatsnew.fyi/product/copilot-cli) - Vendor: GitHub - Date: 2026-09-04 - Version: v1.0.84-0 - Original notes: https://github.com/github/copilot-cli/releases/tag/v1.0.84-0 - Permalink: https://whatsnew.fyi/product/copilot-cli/releases/v1.0.84-0 - Labels: Pre-release What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. Reuse: the summaries, labels and curation here are © What's New. Quote freely with attribution and a link back; wholesale republication of the corpus is not permitted — terms: https://whatsnew.fyi/terms. The vendors' own release notes remain their publishers'. --- - **added** — Managed sandbox sessions can now be disabled for the rest of the session from an approved bypass prompt - **fixed** — PowerShell write the sandbox blocks now offers to run the command outside the sandbox - **fixed** — When you have more than one GitHub account in your credential store, a sandboxed gh command now acts as the account gh is logged in as instead of an arbitrary one - **fixed** — The /rubber-duck command is hidden after a model refresh removes its compatible critic - **fixed** — Sandboxed runs now use relocated developer-tool caches from env vars and tool config files - **fixed** — On Windows, a sandboxed command that runs git without naming it no longer dies inside the credential helper's MSYS2 shell **Added** - Managed sandbox sessions can now be disabled for the rest of the session from an approved bypass prompt. **Fixed** - A PowerShell write the sandbox blocks offers to run the command outside the sandbox - When you have more than one GitHub account in your credential store, a sandboxed gh command now acts as the account gh is logged in as instead of an arbitrary one. - The `/rubber-duck` command is hidden after a model refresh removes its compatible critic - Sandboxed runs now use relocated developer-tool caches from env vars and tool config files - On Windows, a sandboxed command that runs git without naming it — a hook, a build tool, or an npm install that clones over HTTPS — no longer dies inside the credential helper's MSYS2 shell.