cd /news/ai-agents/apple-will-update-macs-to-protect-us… · home › topics › ai-agents › article
[ARTICLE · art-144171] src=mashable.com ↗ pub= topic=ai-agents verified=true sentiment=· neutral

Apple will update Macs to protect users from AI agents with full disk access

Apple will introduce additional controls to macOS Full Disk Access that require explicit user action before a third-party app can access files, mail, messages, and browsing history, the company said in a developer news post. Apple cited the rise of autonomous AI agents such as Meta's Muse, which recently surpassed 5 million downloads, and said the risks of this level of access will grow substantially as agents become more capable. The change follows Inc. columnist Jason Aten's report that Meta's Muse had synced his entire local Messages database and used those messages as context, which Aten said he never authorized; Meta says Muse cannot do so without permission.

by read3 min views2 publishedOct 2, 2026
Apple will update Macs to protect users from AI agents with full disk access
Image: Mashable (auto-discovered)
[Matt Binder](https://mashable.com/author/matt-binder)

[Read Full Bio](https://mashable.com/author/matt-binder)

Apple has just been forced to respond to the flurry of AI agent apps, like Meta's Muse, which are accessing Mac users' private data.

According to Apple, the company will soon release additional controls to "Full Disk Access," which will explicitly ask Mac users if they'd like to grant a third-party access to a specific part of their system. With Full Disk Access, AI agents can complete a much wider range of tasks for users, but these users may not understand the cybersecurity risks of agentic AI.

Apple says it is specifically doing this due to the rise of AI agents like Muse, which recently surpassed 5 million downloads, and the risks associated with handing over full access to a user's full private data.

You May Also Like

When a Mac user downloads a third-party app, some apps require the ability to access specific functionality on their computer. Apple requires that these apps ask a user to access that functionality. For example, a third-party webcam app is forced by Apple to ask the user for permission to access the Mac's camera and audio devices. A user must grant that access before an app can use that Mac function.

[Terms of Use](https://www.ziffdavis.com/terms-of-use)and

[Privacy Policy](https://www.ziffdavis.com/ztg-privacy-policy).

Some apps, like a backup app, for example, require access to the entire Mac system. In order to cover all of these functions in one swoop, from email to messages to file systems, Apple allows apps to request "Full Disk Access."

However, AI agents that run autonomously add additional risks that other apps simply don't when given this type of access. For example, Inc. columnist Jason Aten recently discovered that Meta's Muse AI assistant somehow had synced his entire local Messages database and was using those messages as context for its tasks.

Aten claims he denied giving Muse permission to access Messages. Meta claims it's impossible for Muse to do so if Aten did decline providing Muse with these permissions. Apple now wants to make it more explicit when an app asks for these permissions and a user grants them.

Apple's full update is posted below:

"We give developers powerful APIs to build incredible capabilities into their apps for Apple products, backed by a set of controls designed to protect users’ private data. Full Disk Access largely sidesteps these controls in order to allow backup apps to function properly on the Mac. Some developers are using Full Disk Access in ways that could put users at risk, exposing everything on their systems—including files, mail, messages, and even browsing history—without users’ full knowledge and understanding. For communication apps, this can also compromise the privacy of the people users are communicating with.

Going forward, we will introduce additional controls to ensure that users who genuinely wish to grant an app this extraordinary level of access can only do so with very explicit user action. Addressing this is critical. As AI agents become increasingly capable and autonomous, the risks associated with this level of access will grow substantially. We are committed to ensuring users clearly understand these risks before granting such access, so they can make informed decisions about their own data and privacy."

Want to learn more about getting the best out of your tech? Sign up for Mashable's Top Stories and Deals newsletters today.

── more in #ai-agents 4 stories · sorted by recency
── more on @apple 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
→ Live at https://your-agent.zahid.host ✓
Get free account → Pricing
from €0/mo · no card required
LIVE [news/apple-will-update-ma…] indexed:0 read:3min 2026-10-02 · —