Apple to Add Stronger Mac Warnings for Apps Seeking Broad Data Access

Apple plans stronger macOS controls for apps seeking Full Disk Access after a dispute over Meta’s Muse and its reported access to private messages. The company has not set a release date.
MacBook displaying a macOS Full Disk Access privacy settings panel MacBook displaying a macOS Full Disk Access privacy settings panel

Updated:

Apple said on Friday, October 2, that it will add controls to macOS to make users take more explicit action before granting apps Full Disk Access, a permission that can expose files, email, messages and browsing history. The announcement followed complaints that Meta’s Muse AI assistant appeared to refer to private messages on a Mac, though Meta disputed that the app could access Messages without users enabling the necessary permissions.

Apple did not name Meta or Muse in its developer notice. It said some developers were using Full Disk Access in ways that could put users at risk, and warned that increasingly capable and autonomous AI agents could heighten those risks. The company has not said when the additional controls will be released or described their exact design.

Apple plans more explicit permission controls

Full Disk Access is a macOS setting that lets an app reach data ordinarily protected by the system. Apple said the permission largely bypasses its standard privacy protections and was designed to allow functions such as backup software to work properly. The company’s statement says access may extend to files, mail, messages and browsing history.

Advertisement

Apple said users who choose to give an app this broad access should face “very explicit user action” and should better understand the consequences. It also highlighted that access to communications can affect people other than the Mac’s owner, including the people whose messages are stored on the device.

The announcement outlines a policy direction, not a completed macOS update. Apple has not publicly identified a release date, said whether existing permissions will need to be granted again, or explained whether the controls will apply differently to AI tools and other apps.

Muse privacy complaint remains disputed

The immediate controversy followed an account by Jason Aten, a technology columnist for Inc., who said Muse appeared to know the contents of private messages on his Mac despite his belief that he had not granted it access. Aten reported that when he asked the assistant how it knew, Muse attributed the information to device notifications. That account has not established how the information reached the AI.

Meta rejected the claim that Muse could read Messages without authorization. Company communications executives said the Mac app requires users to enable both Full Disk Access in macOS and a separate Messages connector in Muse. Meta’s David Singleton also described a sequence of system and app-level permissions, saying the settings cannot be bypassed even if Muse has a bug.

Meta said the Messages integration is optional and that access can be revoked. The company’s explanation and Aten’s account are in conflict; Apple’s announcement does not resolve what happened on his computer, and the company did not identify Muse as the subject of its action.

Mac permission model differs from iPhone and iPad

The dispute has drawn attention to differences between Apple’s desktop and mobile platforms. Reuters reported that iPhone and iPad apps are sandboxed, meaning one app generally cannot access another app’s data by default. macOS offers Full Disk Access for apps that need wider reach, a flexibility that can support utility functions but also carries broader privacy implications.

AI agents have made that trade-off more visible because they can use access to personal information to carry out tasks across apps. In this case, the central question is not only whether users approved a permission, but whether they understand what that approval allows and how an assistant may use the resulting access.

Implementation and investigation remain open questions

Apple’s statement signals that it intends to change how broad access is granted, but it does not say whether the changes will involve additional warnings, a redesigned settings screen or another approval process. Developers and users will need to wait for further technical details to know how the policy will work in practice.

Nor has Apple publicly said it is investigating Muse or confirmed any specific unauthorized access. Meta’s explanation remains that the required permissions must be enabled; Aten’s account remains an allegation about what he observed. The immediate next step is Apple’s eventual rollout of the promised controls, with timing and scope still unspecified.

Keep Up to Date with the Most Important News

By pressing the Subscribe button, you confirm that you have read and are agreeing to our Privacy Policy and Terms of Use
Advertisement