Package
com.samsung.android.samsungpass
Samsung Pass
Guidance
Samsung Pass, made by Samsung. Samsung describes it as a biometric authentication service that lets you sign in to services with a fingerprint or iris scan, and use it to store and manage personal details such as IDs, passwords and addresses for websites and apps. In practice it is a credential vault sitting behind the device biometrics, reached from Settings under Biometrics and security, or from the menu inside Samsung Wallet. In our sample it is signed by Samsung's platform key. Version note: this package is mid-transition. Samsung has been folding Samsung Pass into Samsung Wallet, and Samsung's own Wallet documentation now presents Samsung Pass as a feature reached through Wallet rather than as a separate destination; reporting from March 2025 describes users being prompted to migrate, after which the standalone Samsung Pass icon is removed. The package is still present on devices in our sample, so treat the presence of the package and the presence of a user-visible Samsung Pass app as separate questions on any given fleet. For Android Enterprise, EMM and kiosk use it plays no part in enrolment or in applying policy, so it is not something management depends on. The point worth considering is what it holds: if users sign in to corporate services on the device, their credentials may be saved into this vault. We could not source a dedicated Knox Service Plugin restriction aimed specifically at Samsung Pass, so if you need to prevent its use, plan on testing whatever combination of app disabling and autofill controls your EMM offers rather than assuming a single switch exists. Disabling the package may disrupt access to whatever users have already saved, and behaviour on Wallet-era builds could differ from earlier ones; we could not source the package-level outcome, so test it on a device before applying it to a fleet, and treat it with the same care as any other password manager.
Package intelligence
Observed signing, permission, version and size signals from contributing devices - descriptive of that sample, not a verdict. These come from the v2 Package Search sync, which not every device has contributed to yet, so for some packages this detail is partial or not present at all.
- Signed by the device maker's own signing key (Samsung), so it is an OEM preinstall, and that single certificate is consistent across all 19 device profiles. It also signs the Android framework, so it is a platform-level key on its device(s). Inferred from the certificate appearing only on Samsung devices (508 packages, 10196 observations).
- Its largest observed manifest declares 102 permissions: 4 runtime (user-granted), 15 signature or system-level, 16 install-time and 67 vendor or uncatalogued.
- Reported as an updated system app on 17 of 19 profiles - a newer build is installed over the one in the system image there.
Declared permissions (102)
Largest permission set observed for this package. Text is Android's own published description where one exists; platform permissions Android does not document show their granted protection level (in grey) instead; vendor or unknown constants show the name only.
| Permission | Description |
|---|---|
ACCESS_KEYGUARD_SECURE_STORAGE |
Signature-level system permission, for platform-signed apps. |
ACCESS_NETWORK_STATE |
Allows the app to view information about network connections such as which networks exist and are connected. |
CAMERA |
This app can take pictures and record videos using the camera while the app is in use. |
FOREGROUND_SERVICE |
Allows the app to make use of foreground services. |
FOREGROUND_SERVICE_SPECIAL_USE |
Allows the app to make use of foreground services with the type "specialUse" |
GET_ACCOUNTS_PRIVILEGED |
Signature or privileged system permission. |
INTERACT_ACROSS_USERS_FULL |
Signature-level system permission, for platform-signed apps. |
INTERNET |
Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. |
MANAGE_ACTIVITY_STACKS |
Signature-level system permission, for platform-signed apps. |
MANAGE_BIOMETRIC |
Signature-level system permission, for platform-signed apps. |
MANAGE_USERS |
Signature or privileged system permission. |
NFC |
Allows the app to communicate with Near Field Communication (NFC) tags, cards, and readers. |
POST_NOTIFICATIONS |
Allows the app to show notifications |
QUERY_ALL_PACKAGES |
Allows an app to see all installed packages. |
READ_EXTERNAL_STORAGE |
Allows the app to read the contents of your shared storage. |
READ_FRAME_BUFFER |
Signature-level system permission, for platform-signed apps. |
READ_PRIVILEGED_PHONE_STATE |
Signature or privileged system permission. docs ↗ |
READ_SYNC_SETTINGS |
Allows the app to read the sync settings for an account. For example, this can determine whether the People app is synced with an account. |
READ_SYNC_STATS |
Allows an app to read the sync stats for an account, including the history of sync events and how much data is synced. |
READ_USER_DICTIONARY |
Install-time permission, granted automatically. docs ↗ |
REAL_GET_TASKS |
Signature or privileged system permission. |
RECEIVE_BOOT_COMPLETED |
Allows the app to have itself started as soon as the system has finished booting. This can make it take longer to start the phone and allow the app to slow down the overall phone by always running. |
REQUEST_INSTALL_PACKAGES |
Allows an application to request installation of packages. |
REQUEST_PASSWORD_COMPLEXITY |
Allows the app to learn the screen lock complexity level (high, medium, low or none), which indicates the possible range of length and type of the screen lock. The app can also suggest to users that they update the screen lock to a certain level but users can freely ignore and navigate away. Note that the screen lock is not stored in plaintext so the app does not know the exact password. |
STATUS_BAR |
Signature or privileged system permission. |
SYSTEM_ALERT_WINDOW |
This app can appear on top of other apps or other parts of the screen. This may interfere with normal app usage and change the way that other apps appear. |
USE_BIOMETRIC |
Allows the app to use biometric hardware for authentication |
USE_BIOMETRIC_INTERNAL |
Signature-level system permission, for platform-signed apps. |
USE_FINGERPRINT |
Allows the app to use fingerprint hardware for authentication |
VIBRATE |
Allows the app to control the vibrator. |
WAKE_LOCK |
Allows the app to prevent the phone from going to sleep. |
WRITE_EXTERNAL_STORAGE |
Allows the app to write the contents of your shared storage. |
WRITE_SECURE_SETTINGS |
Signature or privileged system permission. |
WRITE_SETTINGS |
Allows the app to modify the system's settings data. Malicious apps may corrupt your system's configuration. |
WRITE_SYNC_SETTINGS |
Allows an app to modify the sync settings for an account. For example, this can be used to enable sync of the People app with an account. |
com.android.launcher.permission.INSTALL_SHORTCUT |
- |
com.android.launcher.permission.READ_SETTINGS |
- |
com.android.launcher.permission.UNINSTALL_SHORTCUT |
- |
com.google.android.c2dm.permission.RECEIVE |
- |
com.msc.openprovider.OpenContentProvider.READ_CONTENT |
- |
com.osp.app.signin.BROADCAST_PERMISSION |
- |
com.samsung.android.app.parentalcare.permission.CONTROL_CARE |
- |
com.samsung.android.app.parentalcare.permission.READ_CARE |
- |
com.samsung.android.app.tips.permission.USE_INTENT_SERVICE |
- |
com.samsung.android.authfw.permissions.PASS_STORAGE |
- |
com.samsung.android.authfw.permissions.preferences |
- |
com.samsung.android.authservice.permission.REQUEST_AUTH_SERVICE |
- |
com.samsung.android.bio.face.permission.MANAGE_FACE |
- |
com.samsung.android.bio.face.permission.USE_FACE |
- |
com.samsung.android.camera.iris.permission.MANAGE_IRIS |
- |
com.samsung.android.camera.iris.permission.USE_IRIS |
- |
com.samsung.android.fido.uaf.client.permissions.FIDO_UAF_CLIENT_PRIVILEGED |
- |
com.samsung.android.honeyboard.permission.PLUGIN |
- |
com.samsung.android.kmxservice.permission.ESCROW_VAULT_SERVICE |
- |
com.samsung.android.launcher.permission.READ_SETTINGS |
- |
com.samsung.android.pass.permissions.MANAGE_PASS_SERVICE |
- |
com.samsung.android.pass.permissions.USE_PASS_SERVICE |
- |
com.samsung.android.permission.BIOMETRICS_PRIVILEGED |
- |
com.samsung.android.permission.FINGERPRINT_PRIVILEGED |
- |
com.samsung.android.permission.READ_SCPM |
- |
com.samsung.android.permission.REQUEST_AUTHNR_SERVICE |
- |
com.samsung.android.permission.REQUEST_PROCESS_FIDO |
- |
com.samsung.android.permission.WRITE_SCPM |
- |
com.samsung.android.providers.context.permission.WRITE_USE_APP_FEATURE_SURVEY |
- |
com.samsung.android.samsungaccount.permission.ACCOUNT_MANAGER |
- |
com.samsung.android.samsungaccount.permission.PROFILE_PROVIDER |
- |
com.samsung.android.samsungaccount.permission.SAMSUNG_PASSKEY |
- |
com.samsung.android.samsungpass.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION |
- |
com.samsung.android.samsungpass.permission.EASYSIGNIN |
- |
com.samsung.android.samsungpass.permission.USE_SAMSUNGPASS |
- |
com.samsung.android.samsungpass.permission.autofillform |
- |
com.samsung.android.samsungpass.permission.setting.READ |
- |
com.samsung.android.samsungpass.permission.setting.WRITE |
- |
com.samsung.android.samsungpass.permissions.MIGRATION |
- |
com.samsung.android.samsungpassautofill.permission.READ_AUTOFILL_DATA |
- |
com.samsung.android.samsungpassautofill.permission.WRITE_AUTOFILL_DATA |
- |
com.samsung.android.scloud.permission.RPC_SYNC_SETTING |
- |
com.samsung.android.scloud.sync.permission.READ |
- |
com.samsung.android.scloud.sync.permission.WRITE |
- |
com.samsung.android.settings.intelligence.READ_SETTINGS_SEARCH_DATA_PROVIDER |
- |
com.samsung.android.spay.permission.READ_SPAY_SHARE |
- |
com.samsung.android.spay.permission.SWALLET_APP_AUTH |
- |
com.samsung.android.spay.permission.SWALLET_BROADCAST_RECEIVER |
- |
com.samsung.android.spay.permission.SWALLET_NOTICENTER_PROVIDER |
- |
com.samsung.android.spay.permission.SWALLET_REDIRECTION |
- |
com.samsung.android.spay.permission.SWALLET_SDK_PROVIDER |
- |
com.samsung.android.spay.permission.SWALLET_SDK_SERVICE |
- |
com.samsung.android.spay.permission.WRITE_SPAY_SHARE |
- |
com.samsung.android.tadownloader.permission.USE_TADOWNLOADER |
- |
com.samsung.permission.ESE_SYSTEM_PROTECTION |
- |
com.sec.android.app.sbrowser.beta.permission.EASYSIGNIN_MIGRATION |
- |
com.sec.android.app.sbrowser.edge.permission.EASYSIGNIN_MIGRATION |
- |
com.sec.android.app.sbrowser.permission.EASYSIGNIN_MIGRATION |
- |
com.sec.android.diagmonagent.permission.DIAGMON |
- |
com.sec.android.diagmonagent.permission.PROVIDER |
- |
com.sec.android.fido.uaf.asm.permissions.FIDO_UAF_ASM |
- |
com.sec.android.fido.uaf.asm.permissions.MIGRATION |
- |
com.sec.android.fido.uaf.client.permissions.FIDO_UAF_CLIENT_PRIVILEGED |
- |
com.sec.android.permission.BILLING_VAULT_SERVICE |
- |
com.sec.spp.permission.TOKEN_cc1de5b009a732084879b12fab52f456bc6eac0cc0bdc5d9330ec8034242c9ec9a55ec20b7ea6b631632fc9b0e8770b13026dc2612dae8ca3593134ceef544677d1dba3b5606cccafd74eb7a152dc8c5c0bfa6f4ea26d022046d00276d1bb953a9c817172f8415e88dc0af6fa098c2b80b4394709224ad94c06059802835d641 |
- |
com.wssnps.permission.COM_WSSNPS |
- |
org.fidoalliance.uaf.permissions.FIDO_CLIENT |
- |
Manage on devices
ADB commands for this package (the inverse of each is included so you can undo). Run from an authorised shell or wire the equivalent into your DPC. Verify on a test device first - this database doesn’t yet classify which packages are safe to change. --user 0 targets the current user; drop it (and use a privileged shell) to act device-wide.
/system, so Restore re-adds it (-k keeps app data)Seen on
Each record is a device profile (make + model + Android version). Each unique handset that syncs against a matching profile will increase the observations of a package, thereby increasing confidence that a package is expected to be on a device.
| OEM | Model | Android | Provenance | Observations | Last seen |
|---|---|---|---|---|---|
| Samsung | SM-A236B | Android 14 | OEM Samsung | 2 2 user-facing | 10 Apr 2026 |
| Samsung | SM-A266B | Android 15 | - | 2 2 user-facing | 21 Aug 2025 |
| Samsung | SM-A266B | Android 16 | - | 1 1 user-facing | 26 Jan 2026 |
| Samsung | SM-A346B | Android 15 | OEM Samsung | 1 1 user-facing | 27 Jul 2026 |
| Samsung | SM-A515F | Android 13 | - | 1 1 user-facing | 30 Jun 2025 |
| Samsung | SM-A528B | Android 13 | - | 1 1 user-facing | 19 Jun 2025 |
| Samsung | SM-A536B | Android 15 | - | 1 | 19 Jun 2025 |
| Samsung | SM-A536B | Android 16 | OEM Samsung | 1 1 user-facing | 29 Jul 2026 |
| Samsung | SM-A556B | Android 15 | - | 1 1 user-facing | 1 Jul 2025 |
| Samsung | SM-A566B | Android 16 | OEM Samsung | 3 3 user-facing | 12 Sep 2026 |
| Samsung | SM-F721B | Android 15 | - | 1 1 user-facing | 9 Jul 2025 |
| Samsung | SM-F766B | Android 16 | - | 1 1 user-facing | 11 Nov 2025 |
| Samsung | SM-F971B | Android 17 | OEM Samsung | 1 1 user-facing | 18 Sep 2026 |
| Samsung | SM-G766B | Android 15 | - | 1 1 user-facing | 17 Oct 2025 |
| Samsung | SM-G766B | Android 16 | - | 1 | 5 Sep 2026 |
| Samsung | SM-G780F | Android 13 | OEM Samsung | 1 1 user-facing | 29 Dec 2025 |
| Samsung | SM-G973U | Android 12 | OEM Samsung | 2 2 user-facing | 10 Jun 2026 |
| Samsung | SM-G991B | Android 15 | OEM Samsung | 1 1 user-facing | 19 Apr 2026 |
| Samsung | SM-N950U1 | Android 9.0 | - | 1 1 user-facing | 20 Aug 2025 |
| Samsung | SM-N986B | Android 13 | - | 9 7 user-facing | 17 Jul 2025 |
| Samsung | SM-S721U | Android 15 | - | 5 5 user-facing | 5 Aug 2025 |
| Samsung | SM-S731B | Android 16 | OEM Samsung | 1 1 user-facing | 11 Aug 2026 |
| Samsung | SM-S906B | Android 15 | - | 1 1 user-facing | 2 Jun 2025 |
| Samsung | SM-S908U | Android 16 | OEM Samsung | 2 2 user-facing | 17 Sep 2026 |
| Samsung | SM-S921B | Android 15 | OEM Samsung | 2 1 user-facing | 22 Jul 2025 |
| Samsung | SM-S921B | Android 16 | OEM Samsung | 1 1 user-facing | 17 Sep 2026 |
| Samsung | SM-S921U | Android 15 | - | 1 1 user-facing | 19 Jun 2025 |
| Samsung | SM-S926B | Android 16 | OEM Samsung | 1 1 user-facing | 14 Apr 2026 |
| Samsung | SM-S928B | Android 16 | OEM Samsung | 2 2 user-facing | 12 Jun 2026 |
| Samsung | SM-S928U1 | Android 15 | - | 1 1 user-facing | 12 Sep 2025 |
| Samsung | SM-S931B | Android 15 | - | 1 1 user-facing | 20 Sep 2025 |
| Samsung | SM-S931B | Android 16 | - | 1 1 user-facing | 23 Nov 2025 |
| Samsung | SM-S936B | Android 16 | - | 1 1 user-facing | 18 Dec 2025 |
| Samsung | SM-S937B | Android 15 | - | 1 1 user-facing | 25 Aug 2025 |
| Samsung | SM-S938B | Android 15 | - | 2 2 user-facing | 25 Aug 2025 |
| Samsung | SM-S942B | Android 17 | OEM Samsung | 1 1 user-facing | 25 May 2026 |
| Samsung | SM-S948U | Android 16 | - | 1 1 user-facing | 9 Sep 2026 |
| Samsung | SM-T636B | Android 15 | - | 2 2 user-facing | 12 Oct 2025 |
| Samsung | SM-T976B | Android 13 | - | 1 1 user-facing | 21 Jul 2025 |
| Samsung | SM-X716B | Android 15 | - | 1 1 user-facing | 27 Jun 2025 |
| Samsung | SM-X910 | Android 14 | - | 1 1 user-facing | 26 Jun 2025 |
| Samsung | SM-X910 | Android 15 | - | 1 1 user-facing | 12 Sep 2025 |
Known labels
Locale-aware display names seen in the wild.
| Label | Locale | Seen |
|---|---|---|
| Samsung Pass | en-gb | 23 |
| Samsung Pass | en | 20 |
| Samsung Pass | en-us | 19 |
| Samsung Pass | nl-nl | 5 |
| Samsung Pass | it-IT | 5 |
| Samsung Pass | en-nl | 3 |
| Samsung Pass | de-de | 3 |
| Samsung Pass | 2 | |
| Samsung Pass | es-ES | 2 |
| Samsung Pass | es-es | 2 |
| Samsung Pass | es-us | 2 |
| Samsung Pass | it-it | 2 |
| Samsung Pass | pl-pl | 1 |
| Samsung Pass | en-US | 1 |
| Samsung Pass | ru-ru | 1 |
| Samsung Pass | en-au | 1 |
| Samsung Pass | en-GB | 1 |
| Samsung Pass | es-US | 1 |
| Samsung Pass | pl-PL | 1 |