Cyber Security News

RemoveMacAI Free Up 12GB of Data by Removing Apple Intelligence Models

RemoveMacAI, an open-source tool on GitHub, lets Mac users disable Apple Intelligence, remove its downloaded models, and block future downloads. The utility can recover roughly 10GB to 12GB of storage, depending on which models are present. Its changes are reversible, and the removal process leaves macOS System Integrity Protection enabled.

The tool addresses a storage problem in macOS 27. According to its developer, Apple removed the single switch for turning off Apple Intelligence, while disabling individual features leaves their models on disk. RemoveMacAI combines feature restrictions, model removal, and download blocking in one command-line workflow.

RemoveMacAI Removes AI Models

The RemoveMacAI GitHub repository explains that the tool installs a configuration profile using Apple’s restriction keys. For settings without a matching restriction key, it forces the required values. Users must approve the profile in System Settings before the changes take effect.

Rather than directly deleting protected system files, RemoveMacAI removes models through Apple’s asset service. It does not directly modify files under /System or require users to disable System Integrity Protection.

The profile redirects downloads for removed models to a closed local port, preventing macOS from fetching them again. This blocks model downloads rather than disabling general internet access.

The removed assets include Apple’s foundation models, image generation and Genmoji models, Spatial Photos, Photos Clean Up, and Xcode code completion models. However, reclaimed space may not appear immediately: Apple’s asset service releases the models, while macOS deletes their files on its own schedule. Storage settings can continue counting them until that cleanup finishes.

Users can install the utility through Homebrew with brew install omlahore/tap/removemacai, then run removemacai. The tool displays the current state and requests confirmation before opening System Settings for profile approval. Apple silicon is required; macOS 26 and earlier are unsupported. On macOS 27.0.1, users need version 0.2.3 or later.

A one-line installer is also available. It downloads the latest release, checks its SHA-256 checksum, and runs the program from a temporary directory without a permanent installation. Releases carry GitHub build provenance attestations. The documented command, gh attestation verify removemacai-darwin-arm64.tar.gz -R omlahore/RemoveMacAI, checks whether a downloaded release came from this repository’s source.

Before applying changes, removemacai status shows feature states and model sizes, while removemacai off --dry-run previews the operation. Users can retain selected features through --keep and restore previous settings with removemacai revert. Removing the profile allows macOS to download models again when needed. The developer says the utility collects no data and makes no network requests itself.

Removal disables Siri, Writing Tools, Genmoji, Image Playground, ChatGPT integration, summaries, smart replies, and other supported AI features. Apps using Apple’s Foundation Models framework also lose access, alongside certain Shortcuts actions. Dictation remains available because its speech models are separate.

Separately, Apple announced tighter Full Disk Access controls on October 2, warning that AI agents can expose files, mail, messages, and browsing history. The announcement followed disputed claims about Meta’s Muse reading private messages.

Removing Apple Intelligence models does not revoke permissions granted to separate AI apps; storage cleanup and app access remain distinct issues.

Cut every SOC alert investigation by 21 min. Power your SOC with instant IOC context for immediate response: Integrate TI Lookup into your SOC

Guru Baran

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.

Recent Posts

ClingSTUN Backdoor Exploits Multiple IoT Vulnerabilities to Gain Persistent Remote Access

ClingSTUN is a Linux backdoor that exploits vulnerable internet-connected devices to give attackers lasting remote…

19 minutes ago

FBI Removes Accenture Contractor After Unpatched PeopleSoft Flaw Exposes Thousands of Employees

The FBI removed an Accenture contractor on October 5, 2026, after a missed security patch…

19 minutes ago

Google Adds 6 Advanced Protection Features to Android 17 Against Sophisticated Attacks

Google has detailed six Advanced Protection enhancements for Android 17, targeting sophisticated attacks, scams and…

49 minutes ago

Atlassian Patches Critical Vulnerabilities in Jira, Confluence, Bitbucket, and Five More Products

Atlassian has disclosed a critical arbitrary file access vulnerability affecting eight products, including Jira, Confluence,…

1 hour ago

Top 10 Best SAST Tools in 2026 [Ranked & Scored]

The AI-code flood made one truth undeniable: static analysis only matters if developers fix what…

2 hours ago

Top 10 Best Just-in-Time (JIT) Access Tools in 2026 [Ranked & Scored]

Credentials that always work are credentials worth stealing which is why mitigating how attackers exploit…

2 hours ago