Android: Microsoft Intune app protection profile settings

These settings correspond to Intune app protection policy settings. If you want more information about a setting, see the Microsoft Intune documentation.

Intune app protection profile setting

Description

Encrypt app data

This setting specifies whether app data is encrypted. If you select this rule, app data is encrypted synchronously during all file input and output tasks.

Prevent Android backups

This setting specifies whether app data can be backed up to the Android Backup Service.

Block screen capture and Android Assistant

This setting specifies whether screen capture and Android Assistant app scanning capabilities are allowed when using a protected app.

App package IDs

This setting specifies the package IDs of the apps that this profile applies to. You can enter the package ID or select from the list of available Intune-managed apps.

Restrict web content transfer with other apps

This setting specifies which browser opens web links in apps.

  • Any app: The user can choose which app opens the web link.
  • Intune Managed Browser: Web links can open in any browser managed by Intune.
  • Microsoft Edge: Web links open in Microsoft Edge.
  • BlackBerry Access: Web links open in BlackBerry Access.
  • Unmanaged browser: Specify a browser not managed by Intune that opens web links.

Unmanaged Browser ID

Specify the app package ID for the browser that opens web links.

Unmanaged Browser Name

Enter the name of the app associated with the app package ID. If the user doesn't have the app installed, this name appears in the notification informing users to install the app.

Require minimum Android version

Select this setting to specify a minimum Android version to use this app. If the Android version on the device does not meet the requirement, the user can't use the app.

You can specify up to four release identifiers. Separate release identifiers with periods (for example, 10.3 or 10.3.14.2).

Require minimum Android version (Warning only)

Select this setting to specify a minimum recommended Android version to use this app. If the Android version on the device does not meet the requirement, the user receives a notification that can be dismissed.

You can specify up to four release identifiers. Separate release identifiers with periods (for example, 10.3 or 10.3.14.2).

Require minimum Android patch version

Select this setting to specify a minimum Android patch version to use this app. If the Android patch version on the device does not meet the requirement, the user can't use the app.

Specify the version using the date format YYYY-MM-DD.

Require minimum Android patch version (Warning only)

Select this setting to specify a minimum recommended Android patch version to use this app. If the Android patch version on the device does not meet the requirement, the user receives a notification that can be dismissed.

Specify the version using the date format YYYY-MM-DD.

Require minimum app version

Select this setting to specify a minimum app version to use this app. If the app version on the device does not meet the requirement, the user can't use the app.

You can specify up to four release identifiers. Separate release identifiers with periods (for example, 10.3 or 10.3.14.2).

Because different apps usually have distinct versioning schemes, if you want to specify a minimum app version, you should create a separate profile for each app.

Require minimum app version (Warning only)

Select this setting to specify a minimum recommended app version to use this app. If the app version on the device does not meet the requirement, the user receives a notification that can be dismissed.

You can specify up to four release identifiers. Separate release identifiers with periods (for example, 10.3 or 10.3.14.2).

Because different apps usually have distinct versioning schemes, if you want to specify a minimum app version, you should create a separate profile for each app.

Disable app encryption

This setting specifies whether app encryption is disabled if device encryption is enabled.