Microsoft has implemented a mandatory consent framework for Windows 11 that stops AI agents from accessing personal files without explicit user permission. The company has updated its agentic AI features documentation for experimental preview builds, specifying six protected folders as off-limits by default: Desktop, Documents, Downloads, Music, Pictures, and Videos. Each AI assistant must request access individually, rather than receiving system-wide permissions. This opt-in design ensures that standard installations remain unaffected unless users decide to activate the feature and approve specific agents.
The permission system functions on a per-agent basis, meaning that approval for one AI tool does not automatically apply to others that might be installed. When an agent tries to access files, Windows presents a consent interface where users can choose to grant permanent access, require reauthorization for each interaction, or deny requests entirely. Each AI assistant has its own settings portal, allowing users to modify these permissions later if needed. Additionally, the platform is testing discrete connectors that manage interactions with system applications like File Explorer and Settings, separate from core folder permissions. This modular design allows users to, for instance, permit an agent to adjust system settings while restricting access to personal photos or documents.