Security Risks

Following scrutiny over desktop applications reading private user messages, Apple announced new controls around the Full Disk Access setting on macOS. The feature was originally designed to allow system backups to function properly, but the rise of autonomous AI agents has increased the risks associated with this level of access, according to Apple.

Apple’s statement follows reports from journalists and researchers highlighting privacy concerns regarding desktop-based AI tools capable of reading local files and messages, raising broader questions about user trust and system security.

Additional reports have also pointed to potential vulnerabilities in other desktop AI applications, emphasizing the need for stricter permission management.

AI Permissions

Desktop AI agents often request broader permissions to interact with personal content, files, and communications stored locally on a computer.

For certain AI tools, users can optionally enable Full Disk Access, a macOS setting that grants an application permission to view files, mail, messages, and browsing history.

Developer Guidance

Apple stated in a developer blog post that some software developers are utilizing Full Disk Access in ways that could expose entire systems without the user's full knowledge and understanding.

New Controls

Going forward, Apple plans to implement new system controls to ensure that users who intentionally grant high-level permissions do so only through explicit and deliberate actions.

Apple emphasized that addressing these security challenges is critical as AI agents become more capable and autonomous, noting a commitment to ensuring users understand the privacy implications of granting broad system access.

The company did not provide additional comments regarding the specific timeline for the feature changes.