Pulse Test
TechnologyTelegram

Apple Tightens macOS Full Disk Access as AI Agents Raise the Stakes

Security·October 3, 2026

Apple is preparing tighter controls around one of macOS's most powerful permissions, and it is pointing at AI agents as the reason.

The company says it will add new safeguards around Full Disk Access, the setting that lets an app read nearly everything on a Mac, including personal files, Messages, Mail and browsing history. Apple's argument is that the risk calculus has changed. A permission that once went mostly to backup tools, security software and developer utilities is now being requested by AI agents that can act on a user's behalf.

That shift matters because an agent does more than read data. It can interpret what it finds, chain actions together and move information elsewhere, sometimes with little human review. Handing that kind of software an all-access pass means a single mistake, a malicious prompt or a compromised tool could expose a person's entire digital life.

Full Disk Access has long been a blunt instrument. Once a user flips the switch for an app, that app can see data that macOS otherwise walls off behind separate privacy prompts. Apple's planned changes are meant to narrow that gap, giving users and administrators finer control over what an app can actually reach instead of an all-or-nothing choice.

Apple has not laid out every detail of how the new controls will work, so how restrictive they turn out to be, and how much friction they add for legitimate tools, remains to be seen. Developers of AI assistants and coding agents that rely on deep system access will be watching closely, as will enterprise IT teams that manage Macs at scale.

The move fits a wider pattern across the industry. As agents gain the ability to browse, read email and operate files directly, platform makers are being pushed to rethink permission models designed for a time when apps mostly did what users clicked. Apple, which has built much of its brand on privacy, appears to want to set the boundaries before agent-driven access becomes routine.

For everyday Mac users, the practical takeaway is simple. Be cautious about granting Full Disk Access to any app, especially an AI agent, and review which apps already have it in System Settings under Privacy and Security.

Reporting based on an external source.