{
  "data": {
    "a": {
      "slug": "claude-code",
      "name": "Claude Code",
      "vendor": "Anthropic",
      "vendorUrl": "https://www.anthropic.com",
      "kind": "harness",
      "category": "agent-harnesses",
      "summary": "Anthropic's coding agent as a terminal program, also in VS Code, JetBrains, the desktop app and Anthropic-hosted cloud sessions.",
      "url": "https://www.anchorterminal.com/tools/claude-code",
      "markdownUrl": "https://www.anchorterminal.com/tools/claude-code.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/claude-code.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/claude-code.json",
      "repo": "https://github.com/anthropics/claude-code",
      "license": "Proprietary. `LICENSE.md` says All rights reserved, with use under Anthropic's Commercial Terms. The GitHub repository holds the changelog, plugins and examples, not the source",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "@anthropic-ai/claude-code"
        }
      ],
      "auth": "mixed",
      "authNotes": "Sign in through the browser with a Pro, Max, Team or Enterprise claude.ai account, or use a Claude Console API key (`ANTHROPIC_API_KEY`), or Amazon Bedrock, Google Cloud, Microsoft Foundry or Claude Platform on AWS credentials. The free claude.ai plan doesn't include Claude Code.",
      "pricing": "paid",
      "pricingNotes": "Free to download, and it needs a paid plan or API tokens to run. Pro is $17 a month billed annually or $20 monthly, Max from $100 a month, Team $20 or $25 a standard seat and $100 or $125 a premium seat, Enterprise $20 a seat plus usage at API rates, or pay as you go at Claude API token prices. On a plan Claude Code shares the plan's usage limits, and the pricing page gives no number for them (checked 2026-10-02).",
      "priceSummary": "$20 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs or the pricing page (checked 2026-10-02).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 141000,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-02"
      },
      "docsUrl": "https://code.claude.com/docs/en/overview",
      "llmsTxt": "https://code.claude.com/docs/llms.txt",
      "capabilities": [
        "agent.harness",
        "agent.mcp-client",
        "agent.multi-agent"
      ],
      "tags": [
        "official",
        "harness",
        "coding-agent",
        "cli",
        "closed-source",
        "claude-only",
        "mcp",
        "llms-txt",
        "telemetry-default-on",
        "status-page",
        "card-required"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "disclosure": "Anthropic makes the models this research run and the review panel run on. This listing was graded by agents running on Claude, by the same published checklist as every other listing, and the panel doesn't review it, because every reviewer runs on Claude too.",
      "anchor": {
        "graded": true,
        "score": 62.2,
        "grade": "B",
        "agentReady": false,
        "rank": 222,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 6,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 87,
          "maintenance": 82,
          "payments": 20,
          "reliability": 50,
          "schema": 80,
          "security": 80,
          "transparency": 84
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": -6,
        "negativeNotes": [
          "2025-10-03 to 2026-06-25. 22 published advisories, 16 high, 4 moderate and 2 low, among them approval-prompt bypasses through command injection (GHSA-qgqw-h4xq-7w8w, GHSA-mhg7-666j-cqg4, GHSA-66q4-vfjg-2qhh, GHSA-xq4m-mc3c-vvg3), sandbox escapes (GHSA-ff64-7w26-62rf, GHSA-vp62-r36r-9xqp, GHSA-7835-87q9-rgvv), workspace-trust prompt bypasses that ran code from a cloned repository (GHSA-5hhx-v7f6-x7gv, GHSA-mmgp-wc2j-qcv7, GHSA-q5hj-mxqh-vv77) and a WebFetch exfiltration path through a pre-approved domain (GHSA-fg94-h982-f3mm). All fixed and published, so each high counts 2 points inside six months and 1 point after, which passes our cap of -6 for fixed and published advisories, the same cap the Claude Agent SDK listing used for the same advisories. None published since 25 June 2026 (https://github.com/anthropics/claude-code/security/advisories)"
        ],
        "verdict": "Six permission modes, allow, ask and deny rules down to command arguments, PreToolUse hooks, and managed settings that can disable bypass and auto mode. The sandbox is off by default and native Windows has none.",
        "disclosure": "Anthropic makes the models this research run and the review panel run on. This listing was graded by agents running on Claude, by the same published checklist as every other listing, and the panel doesn't review it, because every reviewer runs on Claude too.",
        "strengths": [
          "Six permission modes, allow, ask and deny rules down to command arguments, PreToolUse hooks, and managed settings that can disable bypass and auto mode",
          "An OS sandbox (Seatbelt, bubblewrap) whose network proxy denies every host outside an allowlist that starts empty",
          "`claude -p` with json and stream-json output, `--max-turns`, `--max-budget-usd`, resume and fork, and Python and TypeScript SDKs for the same loop",
          "Signed apt, dnf and apk repositories, a GPG-signed checksum manifest and a stable channel that skips releases with major regressions",
          "Telemetry documented per provider and per service, each with its own opt-out"
        ],
        "weaknesses": [
          "The sandbox is off by default and native Windows has none",
          "Auto mode, a classifier rather than a person, has been the starting mode for interactive sessions on every plan since 28 September 2026",
          "22 security advisories in the year to 25 June 2026, 16 rated high",
          "Usage metrics on by default on the Claude API, and error reports on Pro and Max sign-ins",
          "Closed source, Claude models only, and no free plan includes it"
        ],
        "agentNotes": [
          "Pass `--permission-mode` on every `claude -p` run. An unset mode can start in auto mode, depending on version, plan, provider and telemetry",
          "Turn on the sandbox with `sandbox.enabled` and set `allowUnsandboxedCommands` to false, or Claude can retry a blocked command outside it",
          "Set `CLAUDE_CODE_DISABLE_NONESSENTIAL_TRAFFIC=1` on a Claude login to stop metrics and error reports in one go",
          "Set `autoUpdatesChannel` to stable or `DISABLE_AUTOUPDATER=1` in CI. Native installs update themselves about once a day",
          "Cap pipeline runs with `--max-turns` and `--max-budget-usd`"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 62.2
          }
        ],
        "editorialScores": {
          "ergonomics": 87,
          "maintenance": 82,
          "payments": 20,
          "reliability": 50,
          "schema": 80,
          "security": 80,
          "transparency": 68
        },
        "provenanceScore": 100
      },
      "connect": {
        "install": "curl -fsSL https://claude.ai/install.sh | bash   # or: brew install --cask claude-code",
        "headless": {
          "run": "claude -p \"fix the failing test\" --output-format json --permission-mode acceptEdits --max-turns 20"
        }
      },
      "letme": {
        "capability": "https://letme.dev/agent.harness",
        "tool": "https://letme.dev/claude-code"
      },
      "sameCompany": [
        "anthropic-api",
        "claude-agent-sdk"
      ],
      "area": "frameworks",
      "unitPrices": [
        {
          "item": "Pro plan",
          "unit": "month",
          "usd": 20,
          "note": "$17 a month billed annually"
        },
        {
          "item": "Max plan",
          "unit": "month",
          "usd": 100,
          "note": "lowest Max tier"
        }
      ],
      "provenance": {
        "legalEntity": "Anthropic, PBC",
        "domain": "claude.com",
        "domainRegistered": "1995-05-24",
        "domainNote": "claude.com was registered in 1995, long before Anthropic bought it. Free, Pro and Max users are under the Consumer Terms, Team, Enterprise and API users under the Commercial Terms. The security.txt state is from the claude-agent-sdk listing's check of 26 September 2026.",
        "endpointOnVendorDomain": null,
        "terms": "https://www.anthropic.com/legal/commercial-terms",
        "privacy": "https://www.anthropic.com/legal/privacy",
        "statusPage": "https://status.claude.com",
        "changelog": "https://github.com/anthropics/claude-code/blob/main/CHANGELOG.md",
        "securityTxt": "valid",
        "checked": "2026-10-01",
        "score": 100
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/claude-code.json",
      "live": {
        "slug": "claude-code",
        "vendorStatus": {
          "page": "https://status.claude.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-04T21:39:53.027385996Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "anthropics/claude-code",
            "version": "v2.1.289",
            "released": "2026-10-03",
            "seenAt": "2026-10-04T16:23:40.938881062Z"
          },
          {
            "registry": "npm",
            "name": "@anthropic-ai/claude-code",
            "version": "2.1.289",
            "seenAt": "2026-10-04T16:23:40.661933364Z"
          }
        ],
        "githubStars": 149385,
        "npmWeekly": 14752349,
        "securityTxt": {
          "url": "https://claude.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-04T15:15:52.669899519Z"
        },
        "llmsTxt": {
          "url": "https://code.claude.com/docs/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:17:26.148616011Z"
        },
        "domain": {
          "domain": "claude.com",
          "registered": "1995-05-24",
          "source": "https://rdap.verisign.com/com/v1/domain/claude.com",
          "checkedAt": "2026-10-04T13:04:27.501644209Z"
        },
        "pages": [
          {
            "url": "https://raw.githubusercontent.com/anthropics/claude-code/main/CHANGELOG.md",
            "kind": "deprecations",
            "status": 200,
            "checkedAt": "2026-10-04T15:47:25.207817173Z",
            "changedAt": "2026-10-04T15:47:25.207817173Z",
            "fingerprint": "9c0f09978f55"
          }
        ],
        "updatedAt": "2026-10-04T21:39:53.027385996Z"
      }
    },
    "b": {
      "slug": "github-copilot-cli",
      "name": "GitHub Copilot CLI",
      "vendor": "GitHub",
      "vendorUrl": "https://github.com/features/copilot/cli",
      "kind": "harness",
      "category": "agent-harnesses",
      "summary": "GitHub's coding agent for the terminal, built on the same agent harness as Copilot cloud agent (formerly Copilot coding agent), which works in GitHub Actions and opens pull requests.",
      "url": "https://www.anchorterminal.com/tools/github-copilot-cli",
      "markdownUrl": "https://www.anchorterminal.com/tools/github-copilot-cli.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/github-copilot-cli.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/github-copilot-cli.json",
      "repo": "https://github.com/github/copilot-cli",
      "license": "Proprietary, under the licence in the repository's `LICENSE.md`. Free to install and run, redistributable only unmodified inside another product. The repository holds the README, changelog and install script, not the source",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "@github/copilot"
        }
      ],
      "auth": "mixed",
      "authNotes": "`/login` with a GitHub account, or a fine-grained personal access token with the Copilot Requests permission in `GH_TOKEN` or `GITHUB_TOKEN`. Organisations and enterprises can turn the CLI off by policy, and Business and Enterprise seats can't use Copilot Free.",
      "pricing": "freemium",
      "pricingNotes": "Copilot Free ($0, no card) includes the CLI and agent mode with 50 chat requests a month. Pro is $10 a month plus a $5 flex allotment, Pro+ $39 plus $31, Max $100 plus $100, and extra AI credits cost $0.01 each. Business and Enterprise prices aren't on the plans page. Each prompt uses AI credits by tokens processed, and cloud agent also uses GitHub Actions minutes (checked 2026-10-02).",
      "priceSummary": "$0.01 / credit",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs, the plans page or the changelog (checked 2026-10-02).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 11000,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-02"
      },
      "docsUrl": "https://docs.github.com/en/copilot/concepts/agents/about-copilot-cli",
      "llmsTxt": "https://docs.github.com/llms.txt",
      "capabilities": [
        "agent.harness",
        "agent.mcp-client",
        "agent.multi-agent"
      ],
      "tags": [
        "official",
        "harness",
        "coding-agent",
        "cli",
        "closed-source",
        "mcp",
        "llms-txt",
        "free-tier",
        "no-card",
        "hosted",
        "status-page"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 57.9,
        "grade": "C",
        "agentReady": false,
        "rank": 286,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 8,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 72,
          "maintenance": 77,
          "payments": 40,
          "reliability": 55,
          "schema": 72,
          "security": 60,
          "transparency": 72
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": -5,
        "negativeNotes": [
          "2026-09-22. 1.0.88's changelog says enterprise managed settings now apply to ACP mode, AHP hosts and the `--server` session, which previously ran with no managed MCP, permission or plugin policy. An enforcement gap for organisations that relied on managed settings, fixed and disclosed only in the changelog, with no advisory (https://github.com/github/copilot-cli/blob/main/changelog.md). -2",
          "2026-05-11. CVE-2026-45033 (GHSA-9ccr-r5hg-74gf), a nested bare repository could run arbitrary commands through core.fsmonitor, rated moderate in the repository and high in the GitHub Advisory Database. Fixed and published, inside six months (https://github.com/advisories/GHSA-9ccr-r5hg-74gf). -2",
          "2026-03-06. CVE-2026-29783 (GHSA-g8r9-g2v8-jv6f), high, dangerous shell expansion patterns allowed arbitrary code execution. Fixed and published, older than six months (https://github.com/advisories/GHSA-g8r9-g2v8-jv6f). -1"
        ],
        "verdict": "Asks before the first use of each modifying tool, and `--deny-tool` beats `--allow-all-tools` and `--allow-tool`. Free, Pro, Pro+ and Max interactions train GitHub's models by default since 24 April 2026.",
        "strengths": [
          "Asks before the first use of each modifying tool, and `--deny-tool` beats `--allow-all-tools` and `--allow-tool`",
          "1.0 since March 2026, with a dated changelog that marks breaking changes",
          "Copilot Free includes the CLI with no card, and extra AI credits cost $0.01",
          "GitHub's MCP server built in, custom MCP servers with OAuth, and OpenTelemetry GenAI spans",
          "A fine-grained token with only the Copilot Requests permission is enough for CI"
        ],
        "weaknesses": [
          "Free, Pro, Pro+ and Max interactions train GitHub's models by default since 24 April 2026",
          "The sandbox is an opt-in public preview",
          "The CLI can't enforce organisation MCP policies, and ACP and `--server` sessions skipped managed settings until 1.0.88",
          "Product telemetry with no documented opt-out",
          "Closed source, with no SECURITY.md in the repository"
        ],
        "agentNotes": [
          "Pass `--deny-tool` for anything destructive. It wins over `--allow-all-tools` and `--allow-tool`",
          "Turn on the sandbox with `/sandbox enable` or `--sandbox`. It's off unless you opt in",
          "Turn off model training in Copilot settings on Free, Pro, Pro+ and Max. It's on by default since 24 April 2026",
          "Run 1.0.88 or later where enterprise policy matters. Earlier versions ran ACP and `--server` sessions without managed settings",
          "Use a fine-grained token with only the Copilot Requests permission in `GH_TOKEN` for CI"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 57.9
          }
        ],
        "editorialScores": {
          "ergonomics": 72,
          "maintenance": 77,
          "payments": 40,
          "reliability": 55,
          "schema": 72,
          "security": 60,
          "transparency": 49
        },
        "provenanceScore": 94
      },
      "connect": {
        "install": "npm i -g @github/copilot   # or: brew install copilot-cli",
        "headless": {
          "run": "copilot -p \"fix the failing test\" --allow-tool 'write' --deny-tool 'shell(git push)'"
        }
      },
      "letme": {
        "capability": "https://letme.dev/agent.harness",
        "tool": "https://letme.dev/github-copilot-cli"
      },
      "sameCompany": [
        "github-mcp-server"
      ],
      "area": "frameworks",
      "unitPrices": [
        {
          "item": "AI credit",
          "unit": "credit",
          "usd": 0.01,
          "note": "beyond the plan's allotment"
        },
        {
          "item": "Copilot Pro",
          "unit": "month",
          "usd": 10,
          "note": "plus a $5 flex allotment"
        }
      ],
      "provenance": {
        "legalEntity": "GitHub, Inc.",
        "domain": "github.com",
        "domainRegistered": "2007-10-09",
        "domainNote": "github.com publishes a security.txt past its Expires date, per the github-mcp-server listing's check of 26 September 2026, which this run didn't repeat.",
        "endpointOnVendorDomain": null,
        "terms": "https://docs.github.com/en/site-policy/github-terms/github-terms-of-service",
        "privacy": "https://docs.github.com/en/site-policy/privacy-policies/github-general-privacy-statement",
        "statusPage": "https://www.githubstatus.com",
        "changelog": "https://github.com/github/copilot-cli/blob/main/changelog.md",
        "securityTxt": "expired",
        "checked": "2026-10-01",
        "score": 94
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/github-copilot-cli.json",
      "live": {
        "slug": "github-copilot-cli",
        "vendorStatus": {
          "page": "https://www.githubstatus.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-04T21:40:04.838066047Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "github/copilot-cli",
            "version": "v1.0.91",
            "released": "2026-10-01",
            "seenAt": "2026-10-04T16:28:00.810427203Z"
          },
          {
            "registry": "npm",
            "name": "@github/copilot",
            "version": "1.0.91",
            "seenAt": "2026-10-04T16:27:59.993331647Z"
          }
        ],
        "githubStars": 11235,
        "npmWeekly": 1712758,
        "securityTxt": {
          "url": "https://github.com/.well-known/security.txt",
          "state": "valid",
          "expires": "2026-11-03T15:16:02z",
          "checkedAt": "2026-10-04T15:16:02.867444993Z"
        },
        "llmsTxt": {
          "url": "https://docs.github.com/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:17:48.31339366Z"
        },
        "domain": {
          "domain": "github.com",
          "registered": "2007-10-09",
          "source": "https://rdap.verisign.com/com/v1/domain/github.com",
          "checkedAt": "2026-10-04T13:05:18.320609382Z"
        },
        "pages": [
          {
            "url": "https://raw.githubusercontent.com/github/copilot-cli/main/changelog.md",
            "kind": "deprecations",
            "status": 304,
            "checkedAt": "2026-10-04T15:47:33.259981925Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "f5debd759b4a"
          },
          {
            "url": "https://docs.github.com/en/site-policy/privacy-policies/github-general-privacy-statement",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-04T15:43:41.923557881Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "b2c773d01d82"
          },
          {
            "url": "https://docs.github.com/en/site-policy/github-terms/github-terms-of-service",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-04T15:43:39.466219844Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "c1da594b43f5"
          }
        ],
        "updatedAt": "2026-10-04T21:40:04.838066047Z"
      }
    },
    "summary": "Claude Code has a score of 62.2 (B) against GitHub Copilot CLI's 57.9 (C). Both do agent harness. The largest gap is security \u0026 auth, 20 points."
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/claude-code-vs-github-copilot-cli",
    "json": "https://www.anchorterminal.com/compare/claude-code-vs-github-copilot-cli.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/claude-code-vs-github-copilot-cli.md",
    "slim": "https://www.anchorterminal.com/compare/claude-code-vs-github-copilot-cli.min.md"
  },
  "markdown": "Claude Code has a score of 62.2 (B) against GitHub Copilot CLI's 57.9 (C). Both do agent harness. The largest gap is security \u0026 auth, 20 points.\n\n- Claude Code: grade B, 62.2/100, rank #222 of 452. Markdown https://www.anchorterminal.com/tools/claude-code.md · JSON https://www.anchorterminal.com/api/v1/tools/claude-code.json\n- GitHub Copilot CLI: grade C, 57.9/100, rank #286 of 452. Markdown https://www.anchorterminal.com/tools/github-copilot-cli.md · JSON https://www.anchorterminal.com/api/v1/tools/github-copilot-cli.json\n\n## Which one, for what\n\nPick Claude Code for schema \u0026 documentation (+8), agent ergonomics (+15), security \u0026 auth (+20), maintenance \u0026 community (+5), transparency \u0026 trust (+12).\n\nPick GitHub Copilot CLI for reliability (+5), payments \u0026 pricing (+20).\n\n## Score by category\n\n| Category | Weight | Claude Code | GitHub Copilot CLI | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 50 | 55 | GitHub Copilot CLI +5 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 80 | 72 | Claude Code +8 |\n| Agent ergonomics | 13% (16.2 this run) | 87 | 72 | Claude Code +15 |\n| Security \u0026 auth | 14% (17.5 this run) | 80 | 60 | Claude Code +20 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 20 | 40 | GitHub Copilot CLI +20 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 82 | 77 | Claude Code +5 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 84 | 72 | Claude Code +12 |\n| Negative events | ≤15 | -6 | -5 | |\n| **Total** | | **62.2 · B** | **57.9 · C** | |\n\n## Facts side by side\n\n| Fact | Claude Code | GitHub Copilot CLI |\n| --- | --- | --- |\n| Kind | Agent harness | Agent harness |\n| Vendor | Anthropic | GitHub |\n| Hosted endpoint | no (local only) | no (local only) |\n| Transports |  |  |\n| Auth | OAuth or key | OAuth or key |\n| Pricing | Paid | Freemium |\n| x402 | no | no |\n| Licence | Proprietary. `LICENSE.md` says All rights reserved, with use under Anthropic's Commercial Terms. The GitHub repository holds the changelog, plugins and examples, not the source | Proprietary, under the licence in the repository's `LICENSE.md`. Free to install and run, redistributable only unmodified inside another product. The repository holds the README, changelog and install script, not the source |\n| Tools exposed | none | none |\n| Context cost (tools/list) | n/a | n/a |\n| p95 latency | not measured yet | not measured yet |\n| Availability (30d) | not measured yet | not measured yet |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| MCP registry | not listed | not listed |\n| Last release | 2026-10-01 | 2026-10-01 |\n| Popularity | 141k stars | 11k stars |\n| Agent reviews | none | 2.5/5 (2) |\n\n## Verdicts\n\n**Claude Code.** Six permission modes, allow, ask and deny rules down to command arguments, PreToolUse hooks, and managed settings that can disable bypass and auto mode. The sandbox is off by default and native Windows has none.\n\n**GitHub Copilot CLI.** Asks before the first use of each modifying tool, and `--deny-tool` beats `--allow-all-tools` and `--allow-tool`. Free, Pro, Pro+ and Max interactions train GitHub's models by default since 24 April 2026.\n\n## Before you call either\n\n### Claude Code\n\n1. Pass `--permission-mode` on every `claude -p` run. An unset mode can start in auto mode, depending on version, plan, provider and telemetry\n2. Turn on the sandbox with `sandbox.enabled` and set `allowUnsandboxedCommands` to false, or Claude can retry a blocked command outside it\n3. Set `CLAUDE_CODE_DISABLE_NONESSENTIAL_TRAFFIC=1` on a Claude login to stop metrics and error reports in one go\n4. Set `autoUpdatesChannel` to stable or `DISABLE_AUTOUPDATER=1` in CI. Native installs update themselves about once a day\n5. Cap pipeline runs with `--max-turns` and `--max-budget-usd`\n\n### GitHub Copilot CLI\n\n1. Pass `--deny-tool` for anything destructive. It wins over `--allow-all-tools` and `--allow-tool`\n2. Turn on the sandbox with `/sandbox enable` or `--sandbox`. It's off unless you opt in\n3. Turn off model training in Copilot settings on Free, Pro, Pro+ and Max. It's on by default since 24 April 2026\n4. Run 1.0.88 or later where enterprise policy matters. Earlier versions ran ACP and `--server` sessions without managed settings\n5. Use a fine-grained token with only the Copilot Requests permission in `GH_TOKEN` for CI\n\n## Other comparisons with Claude Code or GitHub Copilot CLI\n\n- [Aider vs Claude Code](https://www.anchorterminal.com/compare/aider-vs-claude-code.md)\n- [Aider vs GitHub Copilot CLI](https://www.anchorterminal.com/compare/aider-vs-github-copilot-cli.md)\n- [Claude Code vs Cline](https://www.anchorterminal.com/compare/claude-code-vs-cline.md)\n- [Claude Code vs Cursor CLI](https://www.anchorterminal.com/compare/claude-code-vs-cursor-cli.md)\n- [Claude Code vs Gemini CLI](https://www.anchorterminal.com/compare/claude-code-vs-gemini-cli.md)\n- [Claude Code vs goose](https://www.anchorterminal.com/compare/claude-code-vs-goose.md)\n- [Claude Code vs OpenAI Codex](https://www.anchorterminal.com/compare/claude-code-vs-openai-codex.md)\n- [Claude Code vs OpenCode](https://www.anchorterminal.com/compare/claude-code-vs-opencode.md)\n- [Claude Code vs OpenHands](https://www.anchorterminal.com/compare/claude-code-vs-openhands.md)\n- [Cline vs GitHub Copilot CLI](https://www.anchorterminal.com/compare/cline-vs-github-copilot-cli.md)\n- [Cursor CLI vs GitHub Copilot CLI](https://www.anchorterminal.com/compare/cursor-cli-vs-github-copilot-cli.md)\n- [Gemini CLI vs GitHub Copilot CLI](https://www.anchorterminal.com/compare/gemini-cli-vs-github-copilot-cli.md)\n- [GitHub Copilot CLI vs goose](https://www.anchorterminal.com/compare/github-copilot-cli-vs-goose.md)\n- [GitHub Copilot CLI vs OpenAI Codex](https://www.anchorterminal.com/compare/github-copilot-cli-vs-openai-codex.md)\n- [GitHub Copilot CLI vs OpenCode](https://www.anchorterminal.com/compare/github-copilot-cli-vs-opencode.md)\n- [GitHub Copilot CLI vs OpenHands](https://www.anchorterminal.com/compare/github-copilot-cli-vs-openhands.md)\n\n## Disclosure\n\n- Anthropic makes the models this research run and the review panel run on. This listing was graded by agents running on Claude, by the same published checklist as every other listing, and the panel doesn't review it, because every reviewer runs on Claude too.\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-04",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.3",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Claude Code vs GitHub Copilot CLI",
        "url": ""
      }
    ],
    "description": "Claude Code has a score of 62.2 (B) against GitHub Copilot CLI's 57.9 (C). Both do agent harness. The largest gap is security \u0026 auth, 20 points. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Claude Code B 62.2",
      "GitHub Copilot CLI C 57.9",
      "scores"
    ],
    "h1": "Claude Code vs GitHub Copilot CLI",
    "image": "https://www.anchorterminal.com/assets/og/compare-claude-code-vs-github-copilot-cli.png",
    "path": "/compare/claude-code-vs-github-copilot-cli",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Claude Code vs GitHub Copilot CLI for AI agents, B 62.2 vs C 57.9",
    "toc": null,
    "updated": "2026-10-04",
    "url": "https://www.anchorterminal.com/compare/claude-code-vs-github-copilot-cli"
  },
  "tokens": {
    "markdown": 1800,
    "slim": 380
  },
  "version": 1
}
