Mobile App Risk is Business Risk.
Regulators are watching Enterprise mobile apps. Users demand transparency. Get instant visibility into privacy risks, AI data exposure, dangerous permissions and suspicious network connections across your entire enterprise app portfolio.
Search 2,000+ Enterprise Apps. Know Your Risk in Minutes.
Zepp
Zepp
The official app for Amazfit, the Zepp app is free to use and trusted by top athletes such as running back Derrick Henry and sprinter Gabby Thomas.
Built for sports and performance, it’s where you’ll track your training, health and recovery data, log your nutrition, and get easy-to-understand scores with AI-powered coaching and guidance — all protected with the highest level of data security.
TRACK MACROS: Snap a photo of your meal and instantly get calories, weight, and macronutrients. No watch required, just the Zepp App. Perfect for athletes balancing training with strict diets. Log as many meals as you want with no limits, or enter them manually if that’s easier.
HEALTH & FITNESS DATA: Vital health metrics like heart rate, sleep, stress, and blood oxygen, the Zepp App tracks your fitness progress in detail. It captures daily activity such as steps and calories burned, and advanced training data like pace, distance, speed, strength logs, and recovery insights.
SLEEP MONITORING: The Zepp App monitors sleep with precision sensors and syncs the data to the Zepp App for full recovery analysis. You'll find detailed metrics on stages, duration, breathing, and recovery quality so you know if your body is ready to train hard or needs more rest to perform at its best.
HEART HEALTH: See all your essential heart health data in one place. Track heart rate, HRV, and resting heart rate (RHR), and manually add blood pressure and blood glucose from external devices for a complete view of the most important muscle in your body.
CUSTOMIZE YOUR WATCH: The Zepp App is where you’ll find software updates for your Amazfit smartwatch, band, or ring. It also gives you access to the Zepp Store, with hundreds of downloadable mini apps and watch faces to choose from.
DATA SECURITY: The Zepp App delivers the highest level of data security, keeping your information safe and private. Safeguarded by Amazon Web Services (AWS), all data is regionally stored, encrypted, fully GDPR compliant, and never sold.
FREE TO USE: The core experience of the Zepp App is free. You won't need to pay to view data tracked by your Amazfit device, upgrade software, or import maps. You'll also get free access to a core version of Zepp Aura, your very own wellness coach. For personalized wellness advice powered by AI, Zepp Aura Premium Subscription is available for a monthly or yearly fee, but there's no obligation to sign up.
ZEPP AURA PREMIUM: Unlocking unlimited access to Zepp Aura will provide in-depth health assessments, a personal wellness assistant, sleep music and more (region specific).
– Available in: Most countries and regions
– Subscription Plans: Monthly or yearly options
– Subscriptions are confirmed via your Google account and renew automatically unless canceled at least 24 hours in advance. Any unused portion of a free trial is forfeited once a purchase is made.
– Details: https://upload-cdn.zepp.com/tposts/5845154
PERMISSIONS: The following optional permissions can enhance your experience but are not required:
– Location Access: Used for automatically tracking running or cycling routes, and to show local weather
– Storage: Used to import or export workout data, as well as save workout photos
– Phone, Contacts, SMS, Call Logs: Used to display calls/notifications/texts on your watch and enable call reminders
– Physical Activity: Used to synchronize step counts and workout information
– Camera: Used for taking pictures and scanning QR codes to pair your devices
– Calendar: Sync and manage schedules
– Nearby Devices: Used to discover and connect to smart devices through bluetooth
DISCLAIMER: Zepp is not a medical device and is intended for general fitness and health management purposes only.
Zepp
Package ID
com.huami.watch.hmwatchmanager
Version
151689
Developer
Zepp, Inc.
Category
Sports
Store Rank
40
App Store Link
View in Google PlayDeveloper Privacy Policy
Privacy PolicyObservations Summary:
Permissions Observations
DETECTEDPermissions defined by Apple and Google as dangerous have been observed.
Observed During Analysis
- Allows an app to access location in the background.
- Allows an app to access approximate location.
- + 53 more
- Allows an app to access precise location.
- Allows an application to access extra location provider commands.
- Allows applications to access information about networks.
- Marker permission for applications that wish to access notification policy.
- Allows applications to access information about Wi-Fi networks.
- Allows an application to recognize physical activity.
- Allows the app to answer an incoming phone call.
- Allows applications to connect to paired bluetooth devices.
- Allows applications to discover and pair bluetooth devices.
- Required to be able to advertise to nearby Bluetooth devices.
- Required to be able to connect to paired Bluetooth devices.
- Required to be able to discover and pair nearby Bluetooth devices.
- Allows an application to initiate a phone call without going through the Dialer user interface for the user to confirm the call.
- Required to be able to access the camera device.
- Allows an application to modify the current configuration, such as locale.
- Allows applications to change network connectivity state.
- Allows applications to change Wi-Fi connectivity state.
- Allows applications to disable the keyguard if it is not secure.
- Allows a regular application to use Service.startForeground.
- Allows a regular application to use Service.startForeground with the type "connectedDevice".
- Allows a regular application to use Service.startForeground with the type "dataSync".
- Allows a regular application to use Service.startForeground with the type "location".
- Allows a regular application to use Service.startForeground with the type "mediaPlayback".
- Allows a regular application to use Service.startForeground with the type "mediaProjection".
- Allows a regular application to use Service.startForeground with the type "microphone".
- Allows access to the list of accounts in the Accounts Service.
- This constant was deprecated in API level 21. No longer enforced.
- Allows applications to open network sockets.
- Allows an application to modify global audio settings.
- Allows an app to post notifications
- Allows query of any normal app on the device, regardless of manifest declarations.
- Allows an application to read the user's calendar data.
- Allows an application to read the user's call log.
- Allows an application to read the user's contacts data.
- Allows an application to read from external storage.
- Allows an application to read audio files from external storage.
- Allows an application to read image files from external storage.
- Allows an application to read video files from external storage.
- Allows read only access to phone state, including the current cellular network information, the status of any ongoing calls, and a list of any PhoneAccounts registered on the device.
- Allows an application to record audio.
- Allows app to request to be associated with a device via CompanionDeviceManager as a "watch"
- Allows a companion app to run in the background.
- Allows a companion app to use data in the background.
- Permission an application must hold in order to use Settings.ACTION_REQUEST_IGNORE_BATTERY_OPTIMIZATIONS.
- Allows an application to subscribe to notifications about the presence status change of their associated companion device
- Allows applications to use exact alarm APIs.
- Allows an application to send SMS messages.
- Allows access to the vibrator.
- Allows using PowerManager WakeLocks to keep processor from sleeping or screen from dimming.
- Allows an application to write the user's calendar data.
- Allows an application to write to external storage.
- Allows an application to read or write the system settings.
- Allows an application to broadcast an Intent to set an alarm for the user.
- show less
- See Your App’s Risk Profile
Why Permissions Matter
If not managed properly, dangerous permissions can permit malicious access to sensitive data, and device features.
AI Observations
DETECTEDThis app uses artificial intelligence and may introduce risks including loss of IP, privacy concerns, or other unintended consequences.
Observed During Analysis
- Lite Runtime (formerly TensorFlow Lite)
- OpenCV (Open Source Computer Vision Library)
- + 5 more
- OpenAI
- LiteRT model
- ONNX Runtime
- Open Neural Network Exchange model
- ML Kit
- show less
- See Your App’s Risk Profile
Why AI Matters
AI features can process sensitive data in unexpected ways, potentially exposing proprietary information or creating liability.
Network Connections Observations
DETECTEDNetwork analysis has detected communication with external servers and data transfer patterns.
Observed During Analysis
Connected Hostname:
- amazon.com
- google.com
Server Locations:
- Mountain View, California, US
- Portland, Oregon, US
- See Your App’s Risk Profile
Why Network Connections Matter
Uncontrolled communication with external servers by an employee-used app could expose sensitive business data to unauthorized third parties. This unauthorized access can lead to data breaches, regulatory non-compliance, and damage to your business's reputation and financial standing.
Privacy Declarations Observations
NOT DETECTEDThis test did not detect a discrepancy, indicating all required declarations are disclosed.
- See Your App’s Risk Profile
Why Privacy Declarations Matter
Declarations matter because they provide transparency on how apps collect and use sensitive data. iOS requires Privacy Manifest declarations, while Android requires Data Safety disclosures and manifest permissions.
Sensitive Data Collection and Sharing Observations
NONE DETECTEDNone detected. Further analysis recommended.
- See Your App’s Risk Profile
Why Data Collection and Sharing Matters
If not managed properly private data can expose enterprises, customers, employees and partners to breach and compliance violations.
NowSecure provides detailed risk assessments for millions of mobile apps. We Can Help Secure Your App.
All trademarks, logos, and brand names are the property of their respective owners. All company, product, and service names used in this website are for identification purposes only. Use of these names, trademarks, and brands does not imply endorsement.
MARC App Directory