Apple disclosed that upcoming macOS releases will no longer grant applications unrestricted system privileges by default. Instead, users must take a clearly defined action to authorize full-disk access. The company frames the change as a response to mounting privacy concerns, particularly as artificial-intelligence-driven agents gain the ability to operate with greater autonomy on users’ machines.
Full-disk access on macOS permits an app to read and modify any file on a computer, bypassing the operating system’s usual sandbox protections. Apple has historically allowed this permission for backup utilities that need comprehensive data visibility. However, the broad reach of the privilege means that any misbehaving software could harvest sensitive content such as documents, emails, messages, and web-browsing records without the user’s explicit consent.
Apple warned that certain developers are exploiting the permission in ways that could jeopardize user security. According to the company, these practices may reveal a user’s entire file set, email correspondence, instant-messaging logs, and web-browsing history without the user’s full understanding. The statement underscores the company’s intent to tighten controls before such misuse becomes widespread.
The tech giant linked the policy shift to the rapid evolution of AI agents that can act independently. Apple noted that as these agents become more capable, the danger of granting them unrestricted system access grows substantially. By requiring explicit user approval, Apple aims to limit the potential for autonomous software to silently collect or manipulate data across the operating system.
Apple did not specify when the revised permission model will be shipped in macOS updates. The company also declined to comment further when contacted by The Verge for additional details. This lack of a concrete timeline leaves developers and enterprise IT teams uncertain about when they must adjust their applications to comply with the new requirements.
Industry observers anticipate that the tighter restrictions could prompt a redesign of backup and security tools that currently rely on full-disk privileges. Users may see additional prompts when installing or updating software, while developers will need to implement clearer consent flows. The move reflects a broader trend among platform owners to reinforce privacy safeguards as AI capabilities expand.