Mobile App Risk is Business Risk.
Regulators are watching Enterprise mobile apps. Users demand transparency. Get instant visibility into privacy risks, AI data exposure, dangerous permissions and suspicious network connections across your entire enterprise app portfolio.
Search 2,000+ Enterprise Apps. Know Your Risk in Minutes.
H&M
H&M
Tap in to our fashion feed, anytime, anywhere, and all in one spot — the H&M app.
Get instant updates, track your orders, use your own photos to find similar items in stock, and get inspired by our users all over the world!
Imagine yourself browsing our feed and experiencing it live all at the same time.
Sounds exciting? Keep reading!
Our app also comes handy when you’re already inside one of our stores.
Let’s say you can’t find your size or would like to know if an item is available in more sizes and colours? Scan the price tag — our SCAN & FIND feature will let you know!
Seen something you like and got inspired by? VISUAL SEARCH lets you explore what we have to offer by using your own photos or screen shots. It recognizes patterns, colors, styles, and gives you a list of matching or similar items in stock.
Save the items you love the most in your own list of favourites — just tap the HEART ICON.
Keep up to date with the fashion world by activating PUSH NOTIFICATIONS! You’ll be the first to know when a designer collection drops and you’ll instantly be notified when we have special offers and events!
Don’t miss out — download the H&M app now!
When you download the H&M app, we will process your data in accordance with our Privacy Notice. For more details on this, please go to hm.com.
H&M
Package ID
com.hm.goe
Version
249
Developer
H&M
Category
Shopping
Store Rank
132
App Store Link
View in Google PlayDeveloper Privacy Policy
Privacy PolicyObservations Summary:
Permissions Observations
DETECTEDPermissions defined by Apple and Google as dangerous have been observed.
Observed During Analysis
- Allows an app to access approximate location.
- Allows an app to access precise location.
- + 20 more
- Allows applications to access information about networks.
- Allows applications to access information about Wi-Fi networks.
- Required to be able to access the camera device.
- Allows an application to get notified when a screen capture of its windows is attempted.
- Allows a regular application to use Service.startForeground.
- Allows an app to access sensor data with a sampling rate greater than 200 Hz.
- Allows applications to open network sockets.
- Allows an app to post notifications
- Allows read only access to phone state with a non dangerous permission, including the information like cellular network type, software version.
- Allows an application to read from external storage.
- Allows an application to read image files from external storage.
- Allows read only access to phone state, including the current cellular network information, the status of any ongoing calls, and a list of any PhoneAccounts registered on the device.
- Allows an application to receive the Intent.ACTION_BOOT_COMPLETED that is broadcast after the system finishes booting.
- Allows an application to record audio.
- Allows an application to change the Z-order of tasks.
- Allows an app to use device supported biometric modalities.
- This constant was deprecated in API level 28. Applications should request USE_BIOMETRIC instead
- Allows access to the vibrator.
- Allows using PowerManager WakeLocks to keep processor from sleeping or screen from dimming.
- Allows an application to write to external storage.
- show less
- See Your App’s Risk Profile
Why Permissions Matter
If not managed properly, dangerous permissions can permit malicious access to sensitive data, and device features.
Sensitive Data Collection and Sharing Observations
SENSITIVE INFO FOUNDThis app collects, stores, or shares information that is often designated as sensitive and private.
Observed During Analysis
- Build Fingerprint
- See Your App’s Risk Profile
Why Data Collection and Sharing Matters
If not managed properly private data can expose enterprises, customers, employees and partners to breach and compliance violations.
AI Observations
DETECTEDThis app uses artificial intelligence and may introduce risks including loss of IP, privacy concerns, or other unintended consequences.
Observed During Analysis
- ML Kit
- LiteRT model
- + 1 more
- Lite Runtime (formerly TensorFlow Lite)
- show less
- See Your App’s Risk Profile
Why AI Matters
AI features can process sensitive data in unexpected ways, potentially exposing proprietary information or creating liability.
Network Connections Observations
DETECTEDNetwork analysis has detected communication with external servers and data transfer patterns.
Observed During Analysis
Connected Hostname:
- adform.com
- akamai.com
- + 6 more
- amazon.com
- cloudflare.com
- facebook.com
- fastly.com
- google.com
- microsoft.com
- show less
Server Locations:
- Amsterdam, Noord-Holland, NL
- Ashburn, Virginia, US
- + 9 more
- Chicago, Illinois, US
- Dublin, Dublin, IE
- Goeteborg, Vastra Gotalands lan, SE
- Kansas City, Missouri, US
- Mountain View, California, US
- Mount Prospect, Illinois, US
- New York City, New York, US
- San Francisco, California, US
- Seattle, Washington, US
- show less
- See Your App’s Risk Profile
Why Network Connections Matter
Uncontrolled communication with external servers by an employee-used app could expose sensitive business data to unauthorized third parties. This unauthorized access can lead to data breaches, regulatory non-compliance, and damage to your business's reputation and financial standing.
Privacy Declarations Observations
NOT DETECTEDThis test did not detect a discrepancy, indicating all required declarations are disclosed.
- See Your App’s Risk Profile
Why Privacy Declarations Matter
Declarations matter because they provide transparency on how apps collect and use sensitive data. iOS requires Privacy Manifest declarations, while Android requires Data Safety disclosures and manifest permissions.
NowSecure provides detailed risk assessments for millions of mobile apps. We Can Help Secure Your App.
All trademarks, logos, and brand names are the property of their respective owners. All company, product, and service names used in this website are for identification purposes only. Use of these names, trademarks, and brands does not imply endorsement.
MARC App Directory