Package
com.sec.android.diagmonagent
DiagMonAgent
Guidance
Labelled "DiagMonAgent" on the device, this is a Samsung background service with no launcher icon. Its permission set on this site's provenance data points clearly at diagnostics rather than anything user-facing: it holds READ_LOGS, READ_DROPBOX_DATA (the system's crash and error store), PACKAGE_USAGE_STATS, INTERNET, and a permission published by Samsung's own DQ Agent for receiving abnormal-event intents. In plain terms it gathers device log and fault data and can send it onwards. It is Samsung platform-signed and is recorded here from API 28 through API 37, so it is a long-standing component rather than a recent addition. The user-visible control that governs this kind of collection is Samsung's "Send diagnostic data" setting, which Samsung documents as allowing it "to collect diagnostic data from your device to improve its services", found under Settings, Security and privacy, More privacy settings. A note of honesty: Samsung does not publish a page naming this package as the component behind that toggle, so the link between the two is a reasonable reading of the package's role and permissions rather than a documented fact. For Android Enterprise, EMM and kiosk use it has no documented role in enrolment or policy, and nothing in its permission set points at one, so the interest in it is a privacy one: whether device logs should leave the estate at all. Turning the diagnostic-data setting off is the supported way to stop uploads. Disabling the package outright is rated with caution here because other Samsung components, including Samsung Members diagnostics and device-health reporting, sit in the same area, and neither its enterprise dependencies nor the knock-on effects of removing it are documented by Samsung, so test on one device first. Version note: administrators enrolling Android 12 devices see something the older releases did not show. Samsung's Knox knowledge base records that on Android 12, if the user accepts the optional "Sending of Diagnostic Data" option on the Terms and Conditions screen, a message appears during or just after enrolment saying that policy has been withdrawn based on the admin policy set for the phone. Samsung gives the cause as Google's guidance for the Android Enterprise Recommended programme, in its words that "Data collection is not allowed during the Setup Wizard phase", and states there is no other side effect from the pop-up. The KBA describes the enrolment message rather than this package, so read it as context for the diagnostic-data option, not as documentation of the component behind it.
Package intelligence
Observed signing, permission, version and size signals from contributing devices - descriptive of that sample, not a verdict. These come from the v2 Package Search sync, which not every device has contributed to yet, so for some packages this detail is partial or not present at all.
- Signed by the device maker's own signing key (Samsung), so it is an OEM preinstall, and that single certificate is consistent across all 21 device profiles. It also signs the Android framework, so it is a platform-level key on its device(s). Inferred from the certificate appearing only on Samsung devices (508 packages, 10196 observations).
- Its largest observed manifest declares 13 permissions: 5 signature or system-level, 4 install-time and 4 vendor or uncatalogued.
- Never reported as user-facing, so it runs as a background or system component rather than an app the user opens.
Declared permissions (13)
Largest permission set observed for this package. Text is Android's own published description where one exists; platform permissions Android does not document show their granted protection level (in grey) instead; vendor or unknown constants show the name only.
| Permission | Description |
|---|---|
ACCESS_NETWORK_STATE |
Allows the app to view information about network connections such as which networks exist and are connected. |
ACCESS_WIFI_STATE |
Allows the app to view information about Wi-Fi networking, such as whether Wi-Fi is enabled and name of connected Wi-Fi devices. |
GET_INTENT_SENDER_INTENT |
Signature-level system permission, for platform-signed apps. |
INTERNET |
Allows the app to create network sockets and use custom network protocols. The browser and other applications provide means to send data to the internet, so this permission is not required to send data to the internet. |
PACKAGE_USAGE_STATS |
Signature or privileged system permission. |
READ_DROPBOX_DATA |
Signature or privileged system permission. |
READ_LOGS |
Signature or privileged system permission. |
READ_PRIVILEGED_PHONE_STATE |
Signature or privileged system permission. docs ↗ |
RECEIVE_BOOT_COMPLETED |
Allows the app to have itself started as soon as the system has finished booting. This can make it take longer to start the phone and allow the app to slow down the overall phone by always running. |
com.samsung.android.dqagent.permission.SEND_ABNORMAL_INTENT |
- |
com.samsung.permission.HQM_NOTIFICATION_PERMISSION |
- |
com.sec.android.diagmonagent.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION |
- |
com.sec.android.diagmonagent.permission.PROVIDER |
- |
Manage on devices
ADB commands for this package (the inverse of each is included so you can undo). Run from an authorised shell or wire the equivalent into your DPC. Verify on a test device first - this database doesn’t yet classify which packages are safe to change. --user 0 targets the current user; drop it (and use a privileged shell) to act device-wide.
/system, so Restore re-adds it (-k keeps app data)Seen on
Each record is a device profile (make + model + Android version). Each unique handset that syncs against a matching profile will increase the observations of a package, thereby increasing confidence that a package is expected to be on a device.
| OEM | Model | Android | Provenance | Observations | Last seen |
|---|---|---|---|---|---|
| Samsung | SM-A057G | Android 15 | OEM Samsung | 1 | 8 Aug 2026 |
| Samsung | SM-A135F | Android 14 | OEM Samsung | 3 | 21 Jan 2026 |
| Samsung | SM-A236B | Android 14 | OEM Samsung | 2 | 10 Apr 2026 |
| Samsung | SM-A266B | Android 15 | - | 2 | 21 Aug 2025 |
| Samsung | SM-A266B | Android 16 | - | 1 | 26 Jan 2026 |
| Samsung | SM-A346B | Android 15 | OEM Samsung | 1 | 27 Jul 2026 |
| Samsung | SM-A515F | Android 13 | - | 1 | 30 Jun 2025 |
| Samsung | SM-A528B | Android 13 | - | 1 | 19 Jun 2025 |
| Samsung | SM-A536B | Android 15 | - | 1 | 19 Jun 2025 |
| Samsung | SM-A536B | Android 16 | OEM Samsung | 1 | 29 Jul 2026 |
| Samsung | SM-A556B | Android 15 | - | 1 | 1 Jul 2025 |
| Samsung | SM-A566B | Android 16 | OEM Samsung | 3 | 12 Sep 2026 |
| Samsung | SM-F721B | Android 15 | - | 1 | 9 Jul 2025 |
| Samsung | SM-F766B | Android 16 | - | 1 | 11 Nov 2025 |
| Samsung | SM-F971B | Android 17 | OEM Samsung | 1 | 18 Sep 2026 |
| Samsung | SM-G766B | Android 15 | - | 1 | 17 Oct 2025 |
| Samsung | SM-G766B | Android 16 | OEM Samsung | 1 | 5 Sep 2026 |
| Samsung | SM-G780F | Android 13 | OEM Samsung | 1 | 29 Dec 2025 |
| Samsung | SM-G973U | Android 12 | OEM Samsung | 2 | 10 Jun 2026 |
| Samsung | SM-G991B | Android 15 | OEM Samsung | 1 | 19 Apr 2026 |
| Samsung | SM-M315F | Android 12 | - | 1 | 2 Feb 2026 |
| Samsung | SM-N950U1 | Android 9.0 | - | 1 | 20 Aug 2025 |
| Samsung | SM-N986B | Android 13 | - | 9 | 17 Jul 2025 |
| Samsung | SM-S721U | Android 15 | - | 5 | 5 Aug 2025 |
| Samsung | SM-S731B | Android 16 | OEM Samsung | 1 | 11 Aug 2026 |
| Samsung | SM-S906B | Android 15 | - | 1 | 2 Jun 2025 |
| Samsung | SM-S908U | Android 16 | OEM Samsung | 2 | 17 Sep 2026 |
| Samsung | SM-S921B | Android 15 | OEM Samsung | 2 | 22 Jul 2025 |
| Samsung | SM-S921B | Android 16 | OEM Samsung | 1 | 17 Sep 2026 |
| Samsung | SM-S921U | Android 15 | - | 1 | 19 Jun 2025 |
| Samsung | SM-S926B | Android 16 | OEM Samsung | 1 | 14 Apr 2026 |
| Samsung | SM-S928B | Android 16 | OEM Samsung | 2 | 12 Jun 2026 |
| Samsung | SM-S928U1 | Android 15 | - | 1 | 12 Sep 2025 |
| Samsung | SM-S931B | Android 15 | - | 1 | 20 Sep 2025 |
| Samsung | SM-S931B | Android 16 | - | 1 | 23 Nov 2025 |
| Samsung | SM-S936B | Android 16 | - | 1 | 18 Dec 2025 |
| Samsung | SM-S937B | Android 15 | - | 1 | 25 Aug 2025 |
| Samsung | SM-S938B | Android 15 | - | 2 | 25 Aug 2025 |
| Samsung | SM-S942B | Android 17 | OEM Samsung | 1 | 25 May 2026 |
| Samsung | SM-S948U | Android 16 | - | 1 | 9 Sep 2026 |
| Samsung | SM-T636B | Android 15 | - | 2 | 12 Oct 2025 |
| Samsung | SM-T976B | Android 13 | - | 1 | 21 Jul 2025 |
| Samsung | SM-X200 | Android 14 | - | 1 | 27 Aug 2025 |
| Samsung | SM-X716B | Android 15 | - | 1 | 27 Jun 2025 |
| Samsung | SM-X910 | Android 14 | - | 1 | 26 Jun 2025 |
| Samsung | SM-X910 | Android 15 | - | 1 | 12 Sep 2025 |
Known labels
Locale-aware display names seen in the wild.
| Label | Locale | Seen |
|---|---|---|
| DiagMonAgent | en-gb | 26 |
| DiagMonAgent | en | 20 |
| DiagMonAgent | en-us | 19 |
| DiagMonAgent | it-IT | 5 |
| DiagMonAgent | nl-nl | 5 |
| DiagMonAgent | de-de | 3 |
| DiagMonAgent | en-nl | 3 |
| DiagMonAgent | es-us | 3 |
| DiagMonAgent | 2 | |
| DiagMonAgent | en-GB | 2 |
| DiagMonAgent | es-ES | 2 |
| DiagMonAgent | es-es | 2 |
| DiagMonAgent | it-it | 2 |
| DiagMonAgent | pl-pl | 1 |
| DiagMonAgent | en-US | 1 |
| DiagMonAgent | fr-dz | 1 |
| DiagMonAgent | cs-cz | 1 |
| DiagMonAgent | ru-ru | 1 |
| DiagMonAgent | cs-CZ | 1 |
| DiagMonAgent | en-au | 1 |
| DiagMonAgent | pl-PL | 1 |
| DiagMonAgent | es-US | 1 |