AI Security2026-10-07Ars Technica

Apple Tightens Disk Access to Curb AI Agents

Apple has adjusted macOS permissions governing full-disk access, a move designed to prevent AI agents from quietly reading sensitive user information. The change responds to growing unease that autonomous tools can browse messages, documents, photos and other private data without explicit, informed consent. While full-disk access has long been a powerful permission for backup, security and utility software, AI assistants make the risk more acute because they can act on what they find, combine data across apps and generate summaries or replies automatically. Apple's stricter approach aims to keep users in control and require developers to ask for narrower, purpose-specific access instead of broad sweeping permission. The decision follows debates among platform makers and AI companies over whether assistants should be able to tap personal communications to provide features like inbox summaries, smart replies, or context-aware help. Those features can be useful, but they also raise questions about consent, data retention, and how third-party models process private content. By tightening disk access, Apple signals that convenience cannot come at the cost of unclear permission. Developers may now need to redesign how their AI apps ingest files, perhaps using user-selected folders, sandboxed containers, or explicit per-file approvals. The change could disrupt tools that depend on scanning entire drives, but it may also push the ecosystem toward more transparent privacy practices. For users, the immediate effect should be fewer silent reads by AI software. For developers, the challenge is clear: build powerful assistance without assuming blanket access. Apple's move is likely to influence how other platforms handle agent permissions as AI features become more common across desktop operating systems.

Related news