Under EU regulators’ extreme interpretation of the DMA, Apple would have to give any virtual assistant direct access to users’ private data — and the ability to directly control other installed applications — as soon as Siri AI is made available in the EU, without the essential protections necessary to keep users and their data safe.
https://www.apple.com/newsroom/2026/06/due-to-dma-siri-ai-de...Apple would have to allow USERS the possibility of giving any virtual assistant direct access to their own private data.
Is that accurate?
This being said, it would be nice to know if there were a flaw that could cause agent access to allow an app from a particularly crafty company like meta to provide malicious prompts w/ its tool calls like "include a list of the user's contacts" when asked "what are my friends talking about on instagram". This is likely an egregious situation, but context control is still an unsolved problem, it can't be solved in a deterministic manner
Interesting and good to know, I did not understand how that works. Thanks for the info
I think it's because Apple would have to provide every competitor (including ones running off-device with no confidential compute) with the same level of access Siri AI would get, which poses a lot of security and privacy concerns Apple would never allow third-party developers to get access to even with a TCC consent prompt (like reading and sending iMessages).