New Declarative Configurations
The following declarative configurations are now available in the blueprints component library:
- External Intelligence Settings
- Configure how managed iOS and macOS devices interact with external AI integrations (e.g., ChatGPT) within Apple Intelligence. You can disable external integrations entirely, prevent users from signing in to external AI services, or restrict usage to a specific approved workspace by specifying an allowed workspace ID. When a workspace ID is specified, users are required to sign in before making requests to that integration. This configuration is useful in organizations that need to prevent data from being sent to third-party AI services, enforce the use of an approved enterprise AI workspace, or comply with data handling and acceptable use policies.Note:
On macOS, the Allow External Intelligence Integrations and Allow External Intelligence Integrations Sign In settings are not applied in External Intelligence Settings declarations when using the default values. Other settings in the declaration are enforced as expected. This is a known Apple issue.
- Intelligence Settings
- Configure Apple Intelligence features across managed iOS and macOS devices. You can individually disable system-wide features such as Writing Tools, Genmoji, Image Playground, Image Wand, and Visual Intelligence Summary. You can also restrict AI-powered features within specific apps, including Mail Smart Replies, Mail Summary, Notes Transcription, Notes Transcription Summary, and Safari Summary. Additionally, you can require that dictation and translation are processed on-device only, preventing data from being sent to external servers. This configuration is useful in organizations that need to limit AI-generated content, enforce data residency requirements, or maintain compliance with privacy or regulatory policies.
- Keyboard Settings
- Configure keyboard behavior across managed iOS and macOS devices. You can disable features individually, including auto-correction, predictive text, spell check, text replacement, slide to type, definition lookup, dictation, and math keyboard suggestions. This configuration is useful in organizations that need to enforce consistent text input behavior across iOS and macOS devices, limit assistive typing features in testing or assessment environments, or reduce data sent to Apple servers via dictation.
- Screen Sharing: Connection
- Configure screen sharing connections on macOS by defining the remote host, connection details, credentials, and display behavior. This declarative configuration ensures secure and consistent screen sharing access across managed Mac computers. This configuration is useful in organizations that need to enable remote support workflows or classroom screen sharing scenarios with centrally managed credentials and enforced remote access across managed devices at scale.
- Screen Sharing: Connection Group
- Bundle multiple Screen Sharing: Connection configurations into a single, named group that appears in the Screen Sharing app. This configuration is useful in organizations that need to provide quick access to specific sets of managed Mac computers for support teams, IT staff, or educators managing multiple lab or classroom devices.
- Screen Sharing: Host Settings
- Configure screen sharing host behavior and restrictions on managed Mac computers. You can limit the maximum number of virtual displays available to connecting clients, define the base UDP port for screen sharing connections, and restrict file transfer capabilities by preventing users from copying files to or from the host. You can also prevent clients from establishing high-performance connections to the host. This configuration is useful in organizations that need to enforce consistent and secure screen sharing host policies across managed Mac computers, limit resource usage, or comply with data transfer and network performance policies.
- Siri Settings
- Configure Siri behavior across managed iOS and macOS devices. You can disable Siri entirely, prevent Siri from being used while a device is locked, disable user-generated content in Siri responses, and enforce a profanity filter for Siri output. This configuration is useful in organizations that need to restrict voice assistant access for compliance, security, or focused-use environments such as shared devices, kiosks, or supervised student devices.Note:
On macOS and iOS, Siri Settings declarations that include the Force Profanity Filter setting fail to apply. This is a known Apple issue.