Apple Tightens macOS Full Disk Access to Curb AI Agent Abuse
Apple announced plans to upgrade macOS privacy controls, requiring more explicit user authorization before granting apps Full Disk Access. The decision comes after Apple observed developers and autonomous AI agents abusing the elevated permission to harvest sensitive personal files, emails, messages, and browser histories. As local AI agents gain greater autonomy, giving them broad disk permissions creates major privacy vulnerabilities. By strengthening consent requirements, Apple aims to protect user data from indiscriminate scraping by third-party AI utilities while retaining essential OS security guarantees. Full Disk Access was originally created for system backup software, effectively bypassing standard sandboxing controls to read protected app directories. Apple has not yet revealed the exact interface design, rollout schedule, or full scope of macOS versions impacted by the upcoming permission changes.
## BACKGROUND
Full Disk Access is a security permission in macOS that allows trusted applications to access restricted data stores across the operating system, including Mail, Messages, and Safari data. Under normal macOS security rules, app sandboxing isolates programs so they can only read their own dedicated directories, preventing untrusted apps from viewing user activity across other tools.