Check: APPL-26-005150
Apple macOS 26 (Tahoe) STIG:
APPL-26-005150
(in version v1 r1)
Title
The macOS system must disable Apple Intelligence Image Playground. (Cat II impact)
Discussion
Apple Intelligence features such as Image Playground must be disabled. Using off-device AI poses a data loss risk.
Check Content
Verify the macOS system is configured to disable Apple Intelligence Image Playground with the following command: /usr/bin/osascript -l JavaScript << EOS $.NSUserDefaults.alloc.initWithSuiteName('com.apple.applicationaccess')\ .objectForKey('allowImagePlayground').js EOS If the result is not "false", this is a finding.
Fix Text
Configure the macOS system to disable Apple Intelligence Image Playground by installing the "com.apple.applicationaccess" configuration profile.
Additional Identifiers
Rule ID: SV-277183r1149414_rule
Vulnerability ID: V-277183
Group Title: SRG-OS-000095-GPOS-00049
Expert Comments
CCIs
| Number | Definition |
|---|---|
| CCI-000381 |
Configure the system to provide only organization-defined mission essential capabilities. |
Controls
| Number | Title |
|---|---|
| CM-7 |
Least Functionality |