Apple Tightens macOS Full Disk Access as AI Agent Privacy Risks Grow
Apple will tighten macOS Full Disk Access as AI agents raise privacy risks, following disputes over Meta Muse and a reported ChatGPT Mac security flaw.
Summary
Apple said on October 2, 2026, that it will add macOS controls requiring very explicit user action before apps receive Full Disk Access. Designed to let backups work properly, the permission can expose files, Mail, Messages and browsing history. Apple said some developers use it without users fully understanding the exposure, while increasingly capable and autonomous AI agents substantially raise the risk.
The move followed Jason Aten’s claim that Meta’s Muse Mac app knew his private messages despite lacking permission, which Meta disputed. Muse lets users optionally enable Full Disk Access. A separately identified flaw in ChatGPT’s Mac app also could have let hackers reach sensitive data. Apple has not disclosed the new controls’ design or release timing, but says users must understand the privacy consequences before granting access.
Positives
- Apple will require very explicit user action before an app receives Full Disk Access.
- New macOS controls are intended to help users understand privacy risks before exposing sensitive data.
- Muse presents Full Disk Access as an optional permission rather than a mandatory setting.
Risks & concerns
- Full Disk Access can expose files, Mail, Messages and browsing history to an approved app.
- Jason Aten claimed Meta’s Muse knew his private messages without permission, although Meta disputed the allegation.
- A flaw in ChatGPT’s Mac app could have allowed hackers to access sensitive data.
- Increasingly capable and autonomous AI agents could substantially amplify the risks of broad system access.
- Apple has not disclosed how the controls will work or when they will arrive.