Package
com.samsung.android.knox.containeragent
Workspace
Package intelligence
Observed signing, permission, version and size signals from contributing devices - descriptive of that sample, not a verdict. These come from the v2 Package Search sync, which not every device has contributed to yet, so for some packages this detail is partial or not present at all.
- Signed by the device maker's own signing key (Samsung), so it is an OEM preinstall, but 2 different certificates appear across the fleet, so OEMs ship their own builds of it.
- Its largest observed manifest declares 67 permissions: 7 runtime (user-granted), 21 signature or system-level, 7 install-time and 32 vendor or uncatalogued.
- APK size ranges from 4.9 MB to 11.2 MB across the reporting device profiles, so the build differs substantially between them.
- Never reported as user-facing, so it runs as a background or system component rather than an app the user opens.
Declared permissions (67)
Largest permission set observed for this package. Text is Android's own published description where one exists; platform permissions Android does not document show their granted protection level (in grey) instead; vendor or unknown constants show the name only.
| Permission | Description |
|---|---|
ACCESS_KEYGUARD_SECURE_STORAGE |
Signature-level system permission, for platform-signed apps. |
ACCESS_NETWORK_STATE |
Allows the app to view information about network connections such as which networks exist and are connected. |
BIND_DEVICE_ADMIN |
Signature-level system permission, for platform-signed apps. docs ↗ |
CHANGE_COMPONENT_ENABLED_STATE |
Signature or privileged system permission. |
CLEAR_APP_USER_DATA |
Signature-level system permission, for platform-signed apps. |
CONTROL_KEYGUARD |
Signature-level system permission, for platform-signed apps. |
DEVICE_POWER |
Signature-level system permission, for platform-signed apps. |
EXPAND_STATUS_BAR |
Allows the app to expand or collapse the status bar. |
FOREGROUND_SERVICE |
Allows the app to make use of foreground services. |
INTERACT_ACROSS_USERS |
Signature or privileged system permission. |
INTERACT_ACROSS_USERS_FULL |
Signature-level system permission, for platform-signed apps. |
INTERNAL_SYSTEM_WINDOW |
Signature-level system permission, for platform-signed apps. |
INTERNET |
Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. |
MANAGE_ACTIVITY_STACKS |
Signature-level system permission, for platform-signed apps. |
MANAGE_USERS |
Signature or privileged system permission. |
PROVIDE_TRUST_AGENT |
Signature or privileged system permission. |
READ_CALENDAR |
This app can read all calendar events stored on your phone and share or save your calendar data. |
READ_CONTACTS |
Allows the app to read data about your contacts stored on your phone. Apps will also have access to the accounts on your phone that have created contacts. This may include accounts created by apps you have installed. This permission allows apps to save your contact data, and malicious apps may share contact data without your knowledge. |
READ_EXTERNAL_STORAGE |
Allows the app to read the contents of your shared storage. |
READ_PHONE_STATE |
Allows the app to access the phone features of the device. This permission allows the app to determine the phone number and device IDs, whether a call is active, and the remote number connected by a call. |
READ_SEARCH_INDEXABLES |
Signature or privileged system permission. |
RESET_FINGERPRINT_LOCKOUT |
Signature-level system permission, for platform-signed apps. |
SET_PROCESS_LIMIT |
Signature or privileged system permission. |
SET_WALLPAPER |
Allows the app to set the system wallpaper. |
STATUS_BAR |
Signature or privileged system permission. |
SYSTEM_ALERT_WINDOW |
This app can appear on top of other apps or other parts of the screen. This may interfere with normal app usage and change the way that other apps appear. |
TRUST_LISTENER |
Signature-level system permission, for platform-signed apps. |
USE_BIOMETRIC |
Allows the app to use biometric hardware for authentication |
USE_FINGERPRINT |
Allows the app to use fingerprint hardware for authentication |
WRITE_CALENDAR |
This app can add, remove, or change calendar events on your phone. This app can send messages that may appear to come from calendar owners, or change events without notifying their owners. |
WRITE_CONTACTS |
Allows the app to modify the data about your contacts stored on your phone. This permission allows apps to delete contact data. |
WRITE_EXTERNAL_STORAGE |
Allows the app to write the contents of your shared storage. |
WRITE_INTERNAL_STORAGE |
- |
WRITE_MEDIA_STORAGE |
Signature or privileged system permission. |
WRITE_SECURE_SETTINGS |
Signature or privileged system permission. |
WRITE_SETTINGS |
Allows the app to modify the system's settings data. Malicious apps may corrupt your system's configuration. |
com.android.alarm.permission.SET_ALARM |
- |
com.android.launcher.permission.INSTALL_SHORTCUT |
- |
com.android.launcher.permission.UNINSTALL_SHORTCUT |
- |
com.samsung.android.app.calendar.permission.USE_VCAL_COMPONENT |
- |
com.samsung.android.knox.container.permission.MANAGED_PROFILE_REFRESH |
- |
com.samsung.android.knox.containeragent.permission.RECEIVE_APP_UPDATE |
- |
com.samsung.android.knox.permission.KNOX_CONTAINER |
- |
com.samsung.android.knox.permission.KNOX_CONTAINER_RCP |
- |
com.samsung.android.knox.permission.KNOX_LICENSE_INTERNAL |
- |
com.samsung.android.knox.permission.KNOX_PROXY_ADMIN_INTERNAL |
- |
com.samsung.android.knox.permission.LAUNCH_LOCKDOWN |
- |
com.samsung.android.knox.permission.SEARCH_KNOX_SETTINGS |
- |
com.samsung.android.launcher.permission.READ_SETTINGS |
- |
com.samsung.android.permission.BIOMETRICS_PRIVILEGED |
- |
com.samsung.android.permission.FINGERPRINT_LOCK_SETTINGS |
- |
com.samsung.android.providers.context.permission.WRITE_USE_APP_FEATURE_SURVEY |
- |
com.samsung.helphub.permission.HELP |
- |
com.samsung.knox.rcp.components.permission.MANAGE_RCP |
- |
com.sec.android.app.myfiles.permission.READ |
- |
com.sec.android.provider.badge.permission.READ |
- |
com.sec.android.provider.badge.permission.WRITE |
- |
com.sec.android.provider.logsprovider.permission.READ_LOGS |
- |
com.sec.android.provider.logsprovider.permission.WRITE_LOGS |
- |
com.sec.enterprise.permission.MDM_PROXY_ADMIN_INTERNAL |
- |
com.sec.knox.admin.permission.ACTION_MANAGE_SHORTCUT |
- |
com.sec.knox.admin.permission.ACTION_REQUEST_REMOVE_CONTAINER |
- |
com.sec.knox.bridge.permission.CONTACT_OPERATION_HANDLER |
- |
com.sec.knox.bridge.permission.FILE_OPERATION_HANDLER |
- |
com.sec.knox.containeragent.USE_KNOX_UI |
- |
com.sec.knox.permission.KEYGUARD_SERVICE |
- |
com.sec.smartcard.pinservice.permission.SMARTCARD_PIN_ACCESS |
- |
Manage on devices
ADB commands for this package (the inverse of each is included so you can undo). Run from an authorised shell or wire the equivalent into your DPC. Verify on a test device first - this database doesn’t yet classify which packages are safe to change. --user 0 targets the current user; drop it (and use a privileged shell) to act device-wide.
/system, so Restore re-adds it (-k keeps app data)Seen on
Each record is a device profile (make + model + Android version). Each unique handset that syncs against a matching profile will increase the observations of a package, thereby increasing confidence that a package is expected to be on a device.
Known labels
Locale-aware display names seen in the wild.
| Label | Locale | Seen |
|---|---|---|
| Perfil de trabajo | es-us | 2 |
| Perfil de trabajo | es-US | 1 |
| Profil professionnel | fr-FR | 1 |
| Profil professionnel | fr-fr | 1 |
| Workspace | en-us | 1 |