GitHub Copilot now offers a public preview of "computer use" in both the Copilot CLI and the desktop app for macOS and Windows, allowing the AI to drive graphical user interfaces on your behalf. This extension lets the model read screen content, click controls, type, scroll, and navigate workflows in applications that lack APIs or command‑line interfaces, which directly impacts automation strategies for engineers who need to integrate legacy or GUI‑only tools.
Desktop Automation Overview
The new capability is activated via the /computer command in the CLI (e.g., /computer on, /computer show, /computer off) or through the Settings panel of the Copilot desktop app under "Computer Use". On macOS, enabling the feature also triggers the standard Accessibility and Screen Recording permission dialogs. Organizations can disable the feature centrally, and users retain control through approval prompts before any UI interaction occurs. An optional "always allow" setting lets users bypass repeated prompts for trusted workflows.
Why It Matters to Practitioners
For AI engineers, cloud/platform engineers, DevOps/SRE, and security engineers, the ability to script interactions with non‑API‑exposed software opens a path to automate repetitive tasks such as data entry, report generation, or cross‑application data movement without building custom UI bots. This reduces the engineering effort required to integrate legacy tools into CI/CD pipelines or incident‑response playbooks, potentially shortening time‑to‑value for internal tooling.
Architectural and Operational Implications
- Permission Management: Enabling computer use introduces a new permission surface (Accessibility/Screen Recording on macOS) that must be granted to the Copilot process. Teams should audit which machines have these permissions and consider policy controls to limit exposure.
- Organizational Controls: The feature can be turned off at the org level, providing a lever to enforce compliance or mitigate risk in regulated environments.
- Workflow Design: Automation scripts now need to describe the desired outcome, involved applications, and any constraints to achieve reliable results. The model’s effectiveness depends on clear prompts.
- Security Considerations: Since Copilot can control UI elements, inadvertent or malicious actions could be performed if approval is granted. Practitioners should monitor the "always allow" list and have a process to reset or revoke permissions.
- Observability: Current preview does not expose detailed logs of UI actions, so teams may need to supplement with screen recording or manual verification during early adoption.
Related CloudNinjas coverage: AI engineering.
What This Means For Practitioners
Adopt the feature in a controlled pilot: enable it on a test workstation, grant the required OS permissions, and use /computer on to experiment with a simple, low‑risk workflow (e.g., summarizing browser notifications). Document any prompts and the "always allow" settings used. Evaluate the organization’s policy stance on UI automation and decide whether to keep the feature enabled, disabled, or restricted to specific user groups. Keep an eye on future updates that may add logging, granular consent controls, or broader platform support, and be prepared to adjust security monitoring accordingly.

