An Extra Lock on Your Mac Data
Apple is preparing to tighten the rules around full disk access on macOS. According to The Verge, the company will now require a "very explicit" user action before an application can obtain this level of permission.
For a Swiss SME leader, this announcement deserves attention. Your employees likely use Macs with productivity tools, AI assistants, or business software that requests broad access. The risk is not theoretical: a misconfiguration exposes your quotes, contracts, and client correspondence.
What Apple Is Announcing Exactly
The Verge reports that this decision follows a recent incident. Jason Aten, a journalist at Inc, found that Meta's Muse AI knew the content of his messages without having received explicit permission. Meta responded that the access was "entirely opt-in," but required enabling both full disk access and a Messages connector.
Apple justifies its tightening as follows: "Some developers use full disk access in ways that put users at risk, exposing everything on their system — files, mail, messages, browsing history — without users having full knowledge." The company adds: "As AI agents become more capable and autonomous, the risks associated with this level of access will increase substantially."
The deployment date for this update is not specified. Apple has also not detailed the exact form this "very explicit action" will take.
Which Swiss SMEs Are Affected?
This change directly impacts businesses deploying tools with extended access on Macs. Typical case: a fiduciary or accounting firm in Sion testing an AI assistant to automatically classify client documents. Or a property management company in Martigny using a meeting transcription tool synced with calendars and emails.
| Profile | High risk if… | Priority action |
|---|---|---|
| Fiduciary, legal practice | Document AI accesses client files | List apps with full disk access |
| Marketing agency, architect | Image generation tool scans entire disk | Verify actual read scope |
| Retail, hospitality | Voice assistant connected to bookings and emails | Isolate sensitive workstations |
| Small technical business (carpentry, electrician) | Quoting software syncs contacts and files | Deny disk access if unjustified |
SMEs strictly on Windows PCs or centralized infrastructure without Mac workstations are not directly impacted by this announcement. The principle remains valid: audit AI agent permissions, whatever the platform.
Hypothetical Scenario: The Sierre Carpentry Shop Facing a New Tool
Imagine a carpentry business in Sierre, eight employees, adopting an AI assistant to handle quote requests by email. The tool installs on the sales manager's Mac. During setup, a window requests full disk access "to better understand the company context."
The employee clicks "OK." The AI can now read: ongoing quotes, correspondence with the fiduciary, exchanges with German suppliers containing negotiated prices, perhaps even salary records if they pass through this workstation. With Apple's tightening, this permission would require an additional, more visible step. But the decision remains human.
In this scenario, real protection does not come from the technical lock. It comes from a clear policy: no third-party tool gets full disk access without validation from the IT manager or management, and without reading the data processing terms of use.
Watch Points for Your SME
Privacy and the Swiss nFADP (nLPD)
The new Federal Act on Data Protection (nFADP, nLPD) governs personal data processing in Switzerland. An AI agent with full disk access risks processing client, supplier, and employee data without your full awareness. The FDPIC publishes recommendations on this subject; for precise legal questions, consult a specialist.
Data hosting matters as much as local permissions. A tool that reads your Mac files may sync them to servers outside Switzerland. If you have sovereignty requirements or contractual clauses with public sector clients, this point is critical.
Hidden Costs of Restriction
Apple's tightening could break existing workflows. A local backup application, a file sync tool, an antivirus: if these tools lose access or if employees do not understand the new dialog window, you risk support calls and interruptions. Allow time for verification at the next major macOS update.
Vendor Dependency
Apple controls the rules of its ecosystem. This is protection, but also constraint. An SME that built processes on broad disk access will have to adapt to unilateral decisions from Cupertino. This episode highlights the value of diversifying strategies: tools hosted in Switzerland, solutions with a selection assistant, or in-house infrastructure according to your needs.
What to Do Now
- Take inventory of applications with full disk access on every company Mac. Path: System Preferences → Security & Privacy → Privacy → Full Disk Access.
- Question each tool: does it really need this access level? What does it actually read? Where does that data go? Contact the vendor if the answer is unclear.
- Test your AI agents in an isolated environment before any widespread deployment. A dedicated Mac, a limited user account, dummy data.
- Document an internal rule: who can authorize which permission, with what validation level. Even in a micro-business, a note in the procedures folder suffices.
- Anticipate the next macOS update. Warn employees that an unusual window may appear. Train them not to automatically click "Allow."
FlowBiz.ai, based in Sion, supports Swiss SMEs on these AI governance and hosting questions. Our two-minute quiz helps you assess your maturity. For concrete examples of secure automations or a discussion about your situation, contact us.


