the wire · #ai · 2026-10-02
Apple says it's tightening macOS ‘Full Disk Access' controls due to new risks from AI agents
Cech Tech Reviews

Apple is changing how macOS handles Full Disk Access permissions, and the reason is telling. The company says AI agents, the new wave of tools that can read your files and take actions on your behalf, make the old all-or-nothing permission model too risky.
Full Disk Access has been around for years. It lets apps read basically everything: your messages, browser history, documents, the works. That was fine when you were granting it to backup software or system utilities. But AI agents are different. They're designed to dig through your data, summarize it, and act on it, often with minimal oversight once you've given the green light.
According to Apple's announcement, the company is building more granular controls to let users decide what AI tools can actually see. The details are still thin, but the direction is clear. Apple sees a world where you might trust an AI assistant to read your work docs but not your personal messages, or vice versa.
This is the first time a major OS maker has explicitly called out AI agents as a security category that needs special handling. It's a recognition that these tools are fundamentally different from traditional software. They're not just processing data, they're reasoning about it and making decisions, which means a permission granted to an AI agent has a much larger blast radius than the same permission given to a text editor.
The timing matters too. We're seeing a Cambrian explosion of AI agents, from coding assistants that need repo access to personal assistants that want to read your email and calendar. Users are being asked to grant sweeping permissions to tools that didn't exist a year ago, often without understanding what that access really means in practice.
What this means for you: if you're using AI agents on macOS, expect to be asked more specific questions about what they can access soon. In the meantime, audit what you've already granted Full Disk Access to. Go to System Settings, Privacy and Security, Full Disk Access, and remove anything you don't actively need. If you're building workflows with AI assistants, design them to request the minimum access required. For example, instead of asking your AI to "manage my files," try this prompt: "List the specific files and folders you need access to for this task, and explain why you need each one." That forces both you and the tool to think about scope before granting broad permissions.
Reporting basis: original story
← back to The Wire







