Overview
The Android Cross Profile Policy controls how apps, data, contacts, clipboard content, and widgets interact between a device’s managed work profile and personal profile.
Organizations use this policy to prevent sensitive work data from leaking into personal applications while enabling approved cross-profile workflows for productivity.
Important: This policy applies only to devices with a Work Profile (BYOD). These settings are ignored on Fully Managed (Company Owned) devices, as cross-profile interactions do not exist in that mode.
Requirements
Enrollment: Android Enterprise enrollment with a work profile.
Device Mode: Work Profile (BYOD) only.
OS Version: Android 9 or later (specific settings require newer versions).
Swif Agent: A Swif policy assigned to the applicable devices.
Setting | Minimum Android Version |
Cross Profile Copy Paste | Android 9 |
Cross Profile Data Sharing | Android 9 |
Cross Profile App Functions | Android 11 |
Work Profile Widgets Default | Android 12 |
Contact Application Exemptions | Android 14 |
Available Settings
Cross Profile App Functions
Controls whether apps in the personal profile can invoke supported functions exposed by apps in the work profile.
Unspecified: Follows the device’s broader App Functions policy.
Disallowed: Personal apps cannot invoke functions exposed by work apps.
Allowed: Personal apps can invoke functions exposed by work apps.
Cross Profile Copy Paste
Controls whether users can copy text between their work and personal profiles.
Unspecified: Uses the Android default (prevents copying from work to personal).
Copy from work to personal disallowed: Work content cannot be pasted into personal apps. Users can still copy personal content into work apps.
Allowed: Text can be copied and pasted in both directions.
Cross Profile Data Sharing
Controls data sharing through Android actions (e.g., opening a document, sharing an image, or opening a link).
Unspecified: Blocks sharing from work to personal; allows personal to work.
Disallowed: Blocks data sharing in both directions.
Sharing from work to personal disallowed: Blocks work data from being shared with personal apps.
Allowed: Permits data sharing in both directions.
Show Work Contacts in Personal Profile
Controls whether personal applications can search for or display contacts stored in the work profile (e.g., for Caller ID).
Unspecified: Uses the Android default (allows access).
Disallowed: Prevents personal apps from accessing work contacts.
Allowed: Allows personal apps to access work contacts.
Disallowed except system apps: Allows access only for the device manufacturer’s default Phone, Messages, and Contacts apps (Android 14+).
Exempt App Package Names
On Android 14 and later, administrators can specify personal-app package names (e.g., com.whatsapp) that are exempt from the primary contact visibility rule. The behavior of this list depends entirely on the Show Work Contacts in Personal Profile setting:
Primary Setting | Exemption List Behavior |
Allowed | Blocklist: Listed apps are the only ones blocked from seeing work contacts. |
Disallowed | Allowlist: Only the listed apps are permitted to see work contacts. |
Disallowed except system apps | Allowlist+: Listed apps AND default system apps are permitted. |
Unspecified | No Effect: The exemption list is ignored. |
Troubleshooting
The policy is not appearing to take effect
Check Device Mode: Ensure the device is in Work Profile (BYOD) mode. This policy is ignored on Fully Managed devices.
Check Android Version: Verify the device meets the minimum version for the specific setting (e.g., Android 14 for contact exemptions).
Verify Package Names: Ensure the Android package names in the exemption list are exact (e.g.,
com.google.android.contacts).
A contact exemption is not working
Confirm that Show Work Contacts in Personal Profile is explicitly set to Allowed, Disallowed, or Disallowed except system apps. If left as Unspecified, the exemption list will not be processed.