
Apple Tightens Full-Disk Access Against AI Agent Abuse
Apple has updated full-disk access rules on macOS to reduce the chance that AI agents and related apps can quietly read broad swathes of user data. The change responds to growing worry that automated assistants with wide file permissions could exfiltrate messages, documents or credentials without clear user intent. For teams rolling out on-device or third-party AI helpers, the practical message is simple: broad access is no longer a default convenience.
What Melbourne businesses should check first
Many Melbourne professional services, agencies and mid-market firms run mixed Mac fleets alongside cloud AI tools. Staff often grant full-disk access during setup so meeting bots, coding agents or knowledge assistants can index local files. That habit now collides with tighter OS prompts and audit expectations under the Australian Privacy Act. Leaders should inventory which apps still hold full-disk access, remove what is unused, and document legitimate business need for anything that remains.
Local context matters: client work in legal, health-adjacent and financial services often sits on laptops that sync to shared drives. An AI agent with legacy permissions can become an accidental data path across projects. Pair Apple’s new controls with least-privilege MDM profiles, short-lived tokens for automation, and clear staff guidance that “allow once” is preferable to permanent full-disk rights. Vendors selling agentic Mac apps should be asked how they adapt to the permission model and what telemetry they store in Australian regions.
MultiViews Australia recommends treating this as a governance checkpoint, not a one-off IT tweak. Map AI use cases to data classes, confirm consent and retention settings, and test that agents fail closed when access is denied. Doing so keeps productivity gains from on-device AI while reducing breach and compliance exposure for Australian organisations.







