App management
In this section you can set policies related to apps availability, installation, udpate and permission mangament.
Play Store mode
This mode controls which apps are available to the user in the Play Store and the behavior on the device when apps are removed from the policy.
Untrusted apps policy
The policy for untrusted apps (apps from unknown sources) enforced on the device. This option controls the Android system setting that allow if a user can install apps from outside the the Play Store (sideloading).
Disallow (default): Disallow untrusted app installs on entire device.
Personal profile only: For devices with work profiles, allow untrusted app installs in the device's personal profile only.
Allow: Allow untrusted app installs on entire device.
Google Play Protect
Whether Google Play Protect app verification is enforced.
Default permission policy
Grant: Automatically grant a permission.
Install apps disabled
Whether user installation of apps is disabled.
Uninstall apps disabled
Whether user uninstallation of applications is disabled.
Permission policies
Explicit permission or group grants or denials for all apps. These values override the Default permission policy setting.
Applications
List of applications that must be included in the policy. The behavior of the list's content depends on the value set on Play Store mode.
If Play Store mode is whitelist, only apps that are in the policy are available and any app not in the policy will be automatically uninstalled from the device.
If Play Store mode is blacklist, all apps are available and any app that should not be on the device should be explicitly marked as blocked in the applications policy.