Apple tightens macOS access warnings as questions mount over AI agents
Apple says broad disk access can expose messages and other sensitive data. Its planned changes follow debate over Meta’s Muse, though Apple has not linked the two.

Apple says it is changing macOS privacy settings to make the risks of Full Disk Access clearer before users grant it to apps. The permission can expose files, mail, messages and browsing history, and may affect the privacy of people communicating with the user.
The announcement, reported by Ars Technica, comes amid scrutiny of Meta’s Muse AI assistant. Columnist Jason Aten said Muse sent him an unsolicited notification referring to an Apple Messages thread, despite his belief that he had not granted it access. The available account does not establish whether Muse accessed the messages or whether its Messages connector was enabled.
Meta CTO David Singleton said Muse can read Messages only when users grant Full Disk Access and enable the Messages connector. Security expert Patrick Wardle questioned whether the connector is necessary, saying Full Disk Access can make non-root files, including chats and browsing data, readable to an app.
Apple did not name Meta or Muse, and has not confirmed that the controversy prompted its announcement. Its statement says some developers use Full Disk Access in ways that could expose system data without users’ full understanding. The timing leaves a possible connection, but does not establish one.
Apple has not specified what changes it will make, when they will take effect or which macOS versions will receive them. The dispute puts attention on how clearly users are told what broad permissions allow as AI assistants gain access to personal services and data.


