Skip to main content

Android Cross Profile Policy

Overview

The Android Cross Profile Policy controls how apps, data, contacts, clipboard content, and widgets interact between a device’s managed work profile and personal profile.

Organizations use this policy to prevent sensitive work data from leaking into personal applications while enabling approved cross-profile workflows for productivity.

Important: This policy applies only to devices with a Work Profile (BYOD). These settings are ignored on Fully Managed (Company Owned) devices, as cross-profile interactions do not exist in that mode.

Requirements

  • Enrollment: Android Enterprise enrollment with a work profile.

  • Device Mode: Work Profile (BYOD) only.

  • OS Version: Android 9 or later (specific settings require newer versions).

  • Swif Agent: A Swif policy assigned to the applicable devices.

Setting

Minimum Android Version

Cross Profile Copy Paste

Android 9

Cross Profile Data Sharing

Android 9

Cross Profile App Functions

Android 11

Work Profile Widgets Default

Android 12

Contact Application Exemptions

Android 14


Available Settings

Cross Profile App Functions

Controls whether apps in the personal profile can invoke supported functions exposed by apps in the work profile.

  • Unspecified: Follows the device’s broader App Functions policy.

  • Disallowed: Personal apps cannot invoke functions exposed by work apps.

  • Allowed: Personal apps can invoke functions exposed by work apps.

Cross Profile Copy Paste

Controls whether users can copy text between their work and personal profiles.

  • Unspecified: Uses the Android default (prevents copying from work to personal).

  • Copy from work to personal disallowed: Work content cannot be pasted into personal apps. Users can still copy personal content into work apps.

  • Allowed: Text can be copied and pasted in both directions.

Cross Profile Data Sharing

Controls data sharing through Android actions (e.g., opening a document, sharing an image, or opening a link).

  • Unspecified: Blocks sharing from work to personal; allows personal to work.

  • Disallowed: Blocks data sharing in both directions.

  • Sharing from work to personal disallowed: Blocks work data from being shared with personal apps.

  • Allowed: Permits data sharing in both directions.

Show Work Contacts in Personal Profile

Controls whether personal applications can search for or display contacts stored in the work profile (e.g., for Caller ID).

  • Unspecified: Uses the Android default (allows access).

  • Disallowed: Prevents personal apps from accessing work contacts.

  • Allowed: Allows personal apps to access work contacts.

  • Disallowed except system apps: Allows access only for the device manufacturer’s default Phone, Messages, and Contacts apps (Android 14+).

Exempt App Package Names

On Android 14 and later, administrators can specify personal-app package names (e.g., com.whatsapp) that are exempt from the primary contact visibility rule. The behavior of this list depends entirely on the Show Work Contacts in Personal Profile setting:

Primary Setting

Exemption List Behavior

Allowed

Blocklist: Listed apps are the only ones blocked from seeing work contacts.

Disallowed

Allowlist: Only the listed apps are permitted to see work contacts.

Disallowed except system apps

Allowlist+: Listed apps AND default system apps are permitted.

Unspecified

No Effect: The exemption list is ignored.


Troubleshooting

The policy is not appearing to take effect

  • Check Device Mode: Ensure the device is in Work Profile (BYOD) mode. This policy is ignored on Fully Managed devices.

  • Check Android Version: Verify the device meets the minimum version for the specific setting (e.g., Android 14 for contact exemptions).

  • Verify Package Names: Ensure the Android package names in the exemption list are exact (e.g., com.google.android.contacts).

A contact exemption is not working

  • Confirm that Show Work Contacts in Personal Profile is explicitly set to Allowed, Disallowed, or Disallowed except system apps. If left as Unspecified, the exemption list will not be processed.

Did this answer your question?