• hersh@literature.cafe
    link
    fedilink
    English
    arrow-up
    20
    ·
    edit-2
    9 hours ago

    That’s a good rule of thumb, but as a direct point of comparison, it’s not that bad with iPhones. Apple’s MDM protocol is very particular about what admins are allowed to control even on company-owned devices. For example, admins can’t see the Apple ID used on the phone and can’t grant apps screen sharing permission without user approval.

    And we certainly can’t access iMessage.

    • rockstarmode@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      5 hours ago

      Android is the same way with MDM managed profiles. Nothing in the personal profile can be seen by MDM. It goes as far as making you install apps twice, if you use them in both profiles. Even the clipboard can’t be used to copy from one profile to the other, and screenshotting the MDM profile is typically disabled.

      Nothing about this is news to people who actually manage and use MDM, or unique to Android.

    • mrgoosmoos@lemmy.ca
      link
      fedilink
      English
      arrow-up
      13
      arrow-down
      5
      ·
      edit-2
      8 hours ago

      well as long as it’s not my employer that can see it, and it’s just the government, I guess it’s okay