Friday, 2 October 2026

Where technology leaders come to think out loud

The BriefArtificial Intelligence

Apple moves to tighten Mac Full Disk Access as AI agents raise risk

The permission reaches a Mac user’s mail, messages and browsing history. Apple says autonomous AI agents make that level of access riskier, and company Macs may already have apps holding it

The facts
  • Apple says Full Disk Access largely sidesteps the controls macOS uses to protect private data.
  • Apple built the permission so backup apps could work properly on the Mac.
  • Apple says some developers use it in ways that could expose files, mail, messages and browsing history without users’ full knowledge.
  • The notice names no macOS release and no start date for the new controls.
What it means for buyers

Don’t wait for Apple’s change to land. Ask IT for a list of every app holding Full Disk Access on company Macs, and remove it from any AI assistant or agent that doesn’t need it to do its job. Where an agent does need it, make granting it a managed decision rather than one each employee makes alone.

“As AI agents become increasingly capable and autonomous, the risks associated with this level of access will grow substantially.”Apple, Apple Developer News notice

Apple said on 2 October that it will add controls to Full Disk Access in macOS so that users can grant it only with “very explicit user action”. The notice, posted to Apple Developer News, points to increasingly capable AI agents as the reason.

Full Disk Access is a switch in the Privacy & Security section of System Settings. Apple’s Mac user guide says it lets an app reach all files on the computer, including data from other apps such as Mail, Messages and Safari, Time Machine backups and certain administrative settings for all users. Apple’s notice adds that, for communication apps, the exposure can also compromise the privacy of the people users talk to.

That is the exposure UK small and medium-sized businesses (SMBs) and mid-market firms take on when staff install desktop AI assistants and agents on company Macs and grant them this permission. An agent with it can read client email, message threads and files across the machine, not only the documents it was asked to work on.

Managed fleets have a second route. Apple’s deployment guide says organizations using mobile device management (MDM) can send a privacy preferences policy control (PPPC) payload that allows specified apps this access centrally. Apple’s notice does not say whether the new controls will affect access granted that way. TechCrunch reported that Apple did not respond to its inquiry about the change.

Sources
  1. Apple, “Updates to Full Disk Access in macOS”, Apple Developer News, 2 October 2026. https://developer.apple.com/news/?id=p6zjojqw
  2. Apple, “Change Privacy & Security settings on Mac”, Mac User Guide. https://support.apple.com/guide/mac-help/change-privacy-security-settings-on-mac-mchl211c911f/mac
  3. Apple, “Privacy Preferences Policy Control payload settings for Apple devices”, Apple Platform Deployment. https://support.apple.com/guide/deployment/privacy-preferences-policy-control-payload-dep38df53c2a/web
  4. TechCrunch, “Apple says it’s tightening macOS ‘Full Disk Access’ controls due to new risks from AI agents”, 2 October 2026. https://techcrunch.com/2026/10/02/apple-says-its-tightening-macos-full-disk-access-controls-due-to-new-risks-from-ai-agents/
AdvertisementZoomInfo
More from The BriefAll briefs
Fortinet

Fortinet warns of exploited FortiMail flaw with no fixed release out

Flotek Group

Flotek buys Fife network specialist Comvista Networks in its 17th deal

ServiceNow

ServiceNow forecast puts UK tech job growth at about 430,000

Elovade

Brigantia retires its name to trade as Elovade UK and Ireland

Get the briefs every week in The VETTDD Briefing.