Every coding agent ships its own config file: the pain of locking down Claude Code, Codex, Copilot, Cursor and Gemini CLI
aidenclarke_12 · reddit · 2026-10-07
A dev-machine admin points out that teams using multiple coding agents (JetBrains survey shows Claude Code, Copilot, Codex and Cursor all in double-digit usage) have no single place to lock things down:
- Claude Code: managed-settings. in Program Files on Windows or pushed via MDM, users can't override
- Codex: requirements.toml can block --yolo and full access mode
- Copilot: org and enterprise policies
- Cursor: team dashboard, but MCP allowlist is enterprise-only
- Gemini CLI: system settings., though env vars and CLI flags take precedence
No tool reads another's config, so the same rule gets written five times and synced with MDM/proxy stacks. Vendors admit it isn't a hard wall: Cursor says rules aren't guaranteed, Claude Code calls managed settings a client-side control; agents.md, shared by most, is just model context with no enforcement. Conclusion: one tool for everyone, or a pile of configs to keep in sync.
More from coding & agent
- Encrypted prompt injection: one Copilot model leaked secrets in half the tests — Haunting_Ganache_850 · 2026-10-07
- Enterprise AI rolls out backward: chatbots are the finish line, not the start — shashib · 2026-10-07
- Gradio's ML Intern can now build Gradio apps from a single prompt — Gradio · 2026-10-07
- Bug Hunt Benchmark retest: GPT-6.1 Sol recovers, Muse still cheapest strong agent — PawelHuryn · 2026-10-07
- One Claude skill plus Scenario MCP automates the entire video-editing workflow — smtabatabaie · 2026-10-07
- Open-Source MCP Server Connects Claude and Codex to Search Console, Bing and GA4 — RelativeSlip9778 · 2026-10-07