GOOG-15-013100 - Google Android 15 must disable the use of assistants (including Google Assistant) unless required to meet Section 508 compliance requirements.

Information

The use of assistants could expose sensitive DOD data to cloud-based servers during the processing of assistant requests.

SFR ID: FMT_MOF_EXT.1.2 #47

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure the Google Android 15 device to disable the use of all assistants.

On the MDM console, do the following:

COBO and COPE:

1. Open user restrictions.
2. Enable 'Disallow assist content'.
3. Do not allowlist the Gemini App in the Managed Google Play Store.

Note: This control also disables Gemini from being invoked if it was previously installed.

Configuration API: ASSIST_CONTENT_DISALLOWED

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Google_Android_15_Y25M10_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Rule-ID|SV-276986r1134396_rule, STIG-ID|GOOG-15-013100, Vuln-ID|V-276986

Plugin: MDM

Control ID: f3974ac85c4e9cc9697ae0aac37a873187e90b52cc9a671646f09f21d54cd67c