macOS 15 - Sequoia

The macOS system must disable Personalized Advertising

STIG ID: APPL-15-002200 | SRG: SRG-OS-000095-GPOS-00049 | Severity: Medium | CCI: CCI-000381 | Vulnerability ID: V-268526

Description

Ad tracking and targeted ads must be disabled.The information system must be configured to provide only essential capabilities. Disabling ad tracking ensures that applications and advertisers are unable to track users' interests and deliver targeted advertisements.

Check

C-268526r1034518_chk

Verify the macOS system is configured to disable Personalized Advertising with the following command:/usr/bin/osascript -l JavaScript << EOS$.NSUserDefaults.alloc.initWithSuiteName('com.apple.applicationaccess')\.objectForKey('allowApplePersonalizedAdvertising').jsEOSIf the result is not "false", this is a finding.

Fix

F-72457r1034517_fix

Configure the macOS system to disable Personalized Advertising by installing the "com.apple.applicationaccess" configuration profile.