Process-local auth token stops refreshing; all prompts fail until restart
还没有人认领这个 Issue。
评估
- 难度
- 4/5
- 预计耗时
- 3-5 天
- 新手友好度
- 45/100
- Issue 类型
- 缺陷
- 描述清晰度
- 基本清楚
- 活跃度
- 活跃
- 技术栈
- github
- 领域
- api, authentication, cli
调研方向
Retest the failure on the current stable version using a long-running resumed CLI process, then compare the /ask and /login behavior with the recorded MCP and Copilot Tasks API 401 timeline. Done means service and MCP tokens refresh during the active workflow, or /login reloads usable credentials so prompts recover without restarting the process.
由索引模型根据 Issue 内容生成。
描述
Describe the bug
A long-running Copilot CLI process permanently loses authentication. After the failure, every normal prompt and /ask immediately returns an authorization error. Running /login does not recover the process. Restarting and resuming the same session restores operation immediately.
The failure is process-local: several older concurrent CLI processes remained usable, and a newly launched process authenticated successfully. No COPILOT_GITHUB_TOKEN, GH_TOKEN, or GITHUB_TOKEN override was present.
The failing process first logged an expired/rejected GitHub MCP token almost exactly one hour after startup. It later logged 401 AuthenticateToken failed from the Copilot Tasks API. OAuth recovery attempted discovery against the enterprise Copilot endpoint but failed, leaving the process permanently unable to submit prompts.
Affected version
GitHub Copilot CLI 1.0.85 on Windows 11. The process was launched by a host application with --no-auto-update, --resume, and an additional MCP configuration.
Steps to reproduce
- Start an interactive Copilot CLI session and keep it open while performing a long-running workflow.
- Keep several other CLI sessions running concurrently.
- After approximately one hour or longer, submit another prompt.
- Observe that every prompt and /ask reports an authorization error.
- Run /login; observe that the process remains broken.
- Start a new CLI process; observe that it works immediately.
- Restart/resume the failed process; observe that authentication works again.
Expected behavior
Short-lived service and MCP tokens should refresh automatically without interrupting the active workflow. If refresh fails, /login should reload the new credentials into the current process.
Actual behavior
The process retains unusable authentication state indefinitely and all model turns fail until the process is restarted.
Timeline and log evidence
- Process start: 2026-09-21 20:20:37 PDT
- GitHub MCP 401 invalid_token: 2026-09-21 21:21:01 PDT (1 hour, 24 seconds after startup)
- Copilot Tasks API 401 AuthenticateToken failed: 2026-09-21 22:05:48 and 22:09:33 PDT
- MCP resource: https://api.githubcopilot.com/.well-known/oauth-protected-resource/mcp/readonly
- Failed OAuth metadata discovery: https://api.enterprise.githubcopilot.com/mcp/readonly
- Request IDs:
- BE0F:221FB7:19F29C8:1DB6AF1:6AB20CAC
- 633A:221FB7:1A2915E:1DF4EE8:6AB20D8D
A sanitized diagnostic excerpt is available. Raw conversation history and credentials have been excluded.
Related issues
- #3763 — session token expiry stops workflows
- #4203 — expired MCP OAuth token does not silently refresh
- #4842 — MCP OAuth refresh/reconnect concurrency
- #2818 — earlier one-hour session-token expiry issue, reported fixed in 1.0.35-3
Additional context
Current stable is newer than the affected installation. I will retest on the current stable version and update this issue, but this report captures a repeatable failure seen multiple times on 1.0.85.
- 主要语言
- Shell
- 星标
- 11.2k
- 派生
- 1.9k
- 平均合并
- 14 小时 16 分钟
- 30 天内合并 PR
- 6
贡献指南
从这里开始
- 先读完整个 Issue,再读项目的贡献指南。
- 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
- Fork 仓库,在一个分支上完成修改。
- 提交 Pull Request,并在描述里引用这个 Issue 编号。
github/copilot-cli 的其他 Issue
-
triage
难度 2/5 1-3 小时 新手友好度 75/100
github/copilot-cli#4932 ·
-
triage
难度 2/5 1-3 小时 新手友好度 78/100
github/copilot-cli#4909 ·
-
triage
难度 2/5 1-3 小时 新手友好度 76/100
github/copilot-cli#4906 ·
-
triage
难度 2/5 1-3 小时 新手友好度 72/100
github/copilot-cli#4848 ·
-
area:agents area:mcp
难度 2/5 1-3 小时 新手友好度 72/100
github/copilot-cli#4729 ·
查看 github/copilot-cli 的全部 Issue
相似的 Issue
-
难度 2/5 1-3 小时 新手友好度 75/100
elastic/gradle-plugins#156 ·
-
Priority/High ready-for-agent Severity/Major Type/Bug
难度 2/5 1-3 小时 新手友好度 75/100
-
comp/cli P3 type/docs
难度 2/5 1-3 小时 新手友好度 75/100
NousResearch/hermes-agent#119756 · 1 条评论 ·
-
comp: build/pipeline type: bug version: current (v17+)
难度 2/5 1-3 小时 新手友好度 74/100
angular/angularfire#3766 ·
-
out-of-date
难度 2/5 1-3 小时 新手友好度 70/100
CachyOS/CachyOS-PKGBUILDS#1903 ·