macOS 15 - Sequoia

The macOS system must disable sending audio recordings and transcripts to Apple

STIG ID: APPL-15-002023 | SRG: SRG-OS-000095-GPOS-00049 | Severity: Medium | CCI: CCI-000381 | Vulnerability ID: V-269096

Description

The ability for Apple to store and review audio recordings and transcripts of vocal shortcuts and voice control interactions must be disabled.The information system must be configured to provide only essential capabilities. Disabling the submission of this information will mitigate the risk of unwanted data being sent to Apple.

Check

C-269096r1034785_chk

Verify the macOS system is configured to disable sending audio recordings and transcripts with the following command:/usr/bin/osascript -l JavaScript << EOS$.NSUserDefaults.alloc.initWithSuiteName('com.apple.Accessibility')\.objectForKey('AXSAudioDonationSiriImprovementEnabled').jsEOSIf the result is not "false", this is a finding.

Fix

F-73027r1034783_fix

Configure the macOS system to disable sending audio recordings and transcripts by installing the "com.apple.accessibility" configuration profile.