Tech
October 3, 2026
0 views
2 min read

Apple changes full-disk access permissions to curb abuse from AI agents

Curated by Patrick
Source: Ars Technica
Apple changes full-disk access permissions to curb abuse from AI agents
Tech Daily Byte Analysis

Apple announced that future macOS releases will tighten the Full Disk Access (FDA) permission so that third‑party apps cannot silently combine it with other opt‑in connectors to harvest private content. The change follows tech columnist Jason Aten’s claim that Meta’s Muse, a general‑purpose AI agent for macOS, accessed a personal Messages conversation despite him never granting the app the necessary permissions. Aten’s experience sparked a wave of social‑media backlash, with users warning that AI assistants with broad system privileges could become “power tools” for data extraction. Meta’s CTO David Singleton countered that Muse requires both FDA and an explicit “Messages connector” toggle, insisting the onus was on the user. Security researcher Patrick Wardle disputed that argument, noting that FDA alone grants read access to any non‑system file, effectively rendering the additional toggle moot. Apple’s response—reworking the permission model—aims to prevent developers from chaining system‑level rights with app‑specific features to bypass user intent.

The episode sits at the intersection of two accelerating trends: the proliferation of AI agents that integrate deeply with personal workflows, and heightened scrutiny of operating‑system privacy frameworks. Since Apple introduced FDA in macOS Catalina, it has been a double‑edged sword: it enables powerful utilities like backup tools while also opening a backdoor for any app that obtains the grant. Meanwhile, competitors such as Microsoft and Google are rolling out their own AI copilots (Copilot, Gemini) that request access to emails, calendars, and files, often under vague “read your data” banners. Apple’s move signals a defensive posture, trying to differentiate its ecosystem by enforcing stricter consent mechanics, which could pressure rivals to adopt similar safeguards or risk regulatory pushback.

Going forward, developers of AI assistants will need to redesign permission flows to satisfy Apple’s tightened rules, possibly fragmenting the user experience across platforms. Users should audit existing FDA grants, as many utilities—disk cleaners, virtualization tools—already hold the privilege and could be leveraged by future AI extensions. Watch for Apple’s beta releases that expose the new UI, and for any statements from the EU or US legislators who are drafting AI‑specific privacy legislation, which could codify the standards Apple is voluntarily implementing.

Key Takeaways

Apple will modify macOS Full Disk Access to block indirect data harvesting by AI apps like Meta’s Muse.

The controversy highlighted how combining system‑level permissions with app‑specific toggles can undermine user consent.

Meta’s defense rests on a two‑step opt‑in model, but security experts argue FDA alone is sufficient for unrestricted file reads.

The change may force AI assistant developers to redesign permission architectures and could influence broader industry privacy standards.

About the Source

This analysis is based on reporting by Ars Technica. Here is a short excerpt for context:

Meta says FDA isn't sufficient to Muse reading messages. Apple begs to differ.
Read the original at Ars Technica

More in Tech