
Apple announced changes to its macOS privacy settings aimed at restricting how third-party application developers can access sensitive user information through full-disk access permissions. The announcement follows a recent incident involving Meta’s AI assistant Muse, which reportedly referenced private messages sent through Apple Messages to a technology columnist without his knowledge or explicit consent.
Meta’s chief technology officer disputed claims that the company’s system had improperly accessed private communications, stating that users must manually enable two separate permissions before Muse can read Messages content. Meta characterized the Messages integration in its macOS application as opt-in functionality requiring both system-level full-disk access and a specific Messages connector setting. However, macOS security experts questioned this characterization, noting that full-disk access theoretically permits applications to read any non-root file on a system, including messages, browsing history, and other private data.
Apple’s statement indicated that some developers are leveraging full-disk access permissions in ways that could expose users’ entire system contents without sufficient user understanding of the risks involved. The company emphasized that as artificial intelligence agents become more capable and autonomous, the potential dangers associated with granting such expansive access will increase significantly. Apple committed to ensuring users have clearer information about these risks before authorizing such permissions.
The timing of Apple’s announcement, occurring days after significant public discussion about the Muse incident, suggests a potential connection despite the company’s decision not to name specific applications or developers. The situation was further complicated by separate security disclosures regarding Muse vulnerabilities and decisions by other technology companies to restrict the application’s access to their platforms. The developments underscore ongoing concerns about balancing the functionality requirements of advanced AI systems with adequate privacy protections for users.
Article Attribution | Read More at Article Source
Article summary produced by Claude AI