1.28 Review app permissions periodically

Information

Review your device app's permissions periodically.

Rationale:

App permissions allow you to control which capabilities or information apps could access on your device. This can extend from using device hardware to using your personal data. You should periodically review your all app's permissions and ensure that those apps have legitimate permissions. Uninstall apps that over-seek permissions.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Follow the below steps to set your app permissions appropriately:

* Tap System Settings Gear Icon.
* Scroll to Device.
* Tap Apps.
* Tap the gear icon on the top right corner.
* Tap App permissions.
* Tap on each permission and review the apps that have them.
* Disable the app permissions that you feel are over-permissive.
* After you have carried out the above steps, come back and scroll to Advanced.
* Tap Special Access.
* Tap on each permission and review the apps that have them.
* Disable the app permissions that you feel are over-permissive.

Impact:

Some of the apps tend to have more than required permissions. Such apps might not work if you disable the permissions it originally asked for. Also, if you disable the needed permissions, you may not be able to use the app and might have to re-install it.

See Also

https://workbench.cisecurity.org/files/1477