---
title: "Apple Tightens macOS Privacy Settings for Third-Party Apps"
url: https://noti.group/apple-tightens-macos-privacy-settings-for-third-party-apps/
language: en
publisher: "Noti Group"
section: "Technology"
published: 2026-10-02T23:03:16.000Z
updated: 2026-10-03T04:43:22.387Z
id: 760b9137-91b2-4740-a8b8-70a778751421
source: "Ars Technica https://arstechnica.com/security/2026/10/apple-changes-full-disk-access-permissions-to-curb-abuse-from-ai-agents/"
attribution: "Link to https://noti.group/apple-tightens-macos-privacy-settings-for-third-party-apps/ and name Noti Group when you quote or summarize this story."
---

# Apple Tightens macOS Privacy Settings for Third-Party Apps

Apple has announced changes to its macOS privacy settings aimed at preventing third-party app developers from misusing permissions to access user data. This move comes on the heels of a recent controversy surrounding Meta's new AI agent Muse and its ability to send unsolicited notifications referencing private conversations.

The issue came to light when tech columnist Jason Aten reported receiving an unexpected message from Muse, which referenced a thread between him and a colleague over Apple Messages. Aten had not granted Muse permission to access his messages, leading him to assume that they were off-limits. This incident sparked widespread concern among social media users who felt that AI assistants with access to sensitive information are akin to powerful tools.

To gain access to Apple Messages, Meta's Muse AI agent requires two specific permissions from the user: full-disk access and enabling a Messages connector setting within the app. Full-disk access is a system-level permission granted by macOS, which gives an application unrestricted access to all files on the computer. This raises concerns about the potential for misuse of sensitive information.

The incident has sparked a heated debate, with Meta's CTO David Singleton responding to criticisms that users must manually grant both permissions for Muse to access Apple Messages. However, this has done little to quell concerns about the potential risks associated with AI assistants and their ability to access sensitive user data.

The clarification from Apple comes after concerns were raised about AI assistants accessing sensitive user data.

To enable Muse to read Messages content on a Mac, users must opt-in and grant system-level Full Disk Access, as well as enable the Messages connector within the app. This has led some to question how Muse could access messages without these permissions being in place.

MacOS security expert Patrick Wardle disputed Singleton's claims, pointing out that with Full Disk Access, any non-root file on a Mac can be read, including browsing history, browser cookies, and chats. When asked to explain the discrepancy, Meta PR simply reissued Singleton's statement about the opt-in nature of the Messages integration.

Apple has now stepped in to address these concerns, providing a statement that sheds light on their decision to modify the FDA permission setting.

The recent controversy surrounding Full Disk Access (FDA) permissions has highlighted concerns about user data protection and the potential risks associated with granting such access. Developers are increasingly using FDA in ways that could compromise users' sensitive information, including browsing history, files, mail, messages, and more.

This lack of transparency raises significant red flags, particularly for communication apps that can potentially expose the private details of those they interact with. As AI agents become more advanced and autonomous, the risks associated with FDA access will only continue to escalate, underscoring the need for clear user understanding and informed decision-making.

While Apple has not publicly named any specific developers or apps responsible for misusing FDA permissions, their recent statement suggests that the issue is of growing concern. The timing of this announcement coincides with a major social media controversy, fueling speculation about whether it's related to a particular incident or simply a broader effort to address user concerns.

Apple's statements appear to contradict earlier assertions by some developers that certain actions are not possible without explicit user consent, leaving users wondering what exactly is happening behind the scenes and how their data is being used.

Apple's swift response to concerns about AI-powered apps accessing sensitive user data has led to a significant change in full-disk access permissions on Macs. This move comes after a configuration was exposed that allowed any app or code running on a Mac to take control of the AI assistant, Muse.

The vulnerability highlighted the potential for malicious actors to abuse this access and inject commands through ClickFix attacks, which have become increasingly effective. As a result, Apple has taken steps to curb this abuse by restricting full-disk access permissions. This change is likely a response to the growing number of apps that require such access to function.

The recent events surrounding Muse's use of sensitive user data have raised questions about the app's need for extraordinary access. Amazon had previously blocked Muse from its platform, citing concerns over the app's transparency and respect for service provider decisions.

---
Source: [Ars Technica](https://arstechnica.com/security/2026/10/apple-changes-full-disk-access-permissions-to-curb-abuse-from-ai-agents/)  
Published by Noti Group: https://noti.group/apple-tightens-macos-privacy-settings-for-third-party-apps/
