Mobile App Risk is Business Risk.
Regulators are watching Enterprise mobile apps. Users demand transparency. Get instant visibility into privacy risks, AI data exposure, dangerous permissions and suspicious network connections across your entire enterprise app portfolio.
Search 2,000+ Enterprise Apps. Know Your Risk in Minutes.
My Highmark
My Highmark
Easily manage your health – and health coverage. All in My Highmark.
Simplify your benefits
Easily check your health plan benefits and see what’s covered, all in one place.
Get expert care when you need it
Whenever you need support, find all your virtual care programs and services together in one place.
Personalize your app experience
Build your Health Profile to get curated recommendations for the goals that matter most to you.
Get new recommendations every day
Check your Journey daily to see a new mix of activities, content, and support personalized just for you.
The App is intended for Highmark’s Blue Shield members in 21 counties in central Pennsylvania and 13 counties in northeastern New York, and Highmark’s Blue Cross Blue Shield members in 29 counties of western Pennsylvania, 13 counties of northeastern Pennsylvania, the state of Delaware, the state of West Virginia plus Washington County, Ohio and 8 counties in western New York. All references to “Highmark” are references to Highmark Inc., and/or to one or more of its affiliated Blue companies, which are independent licensees of the Blue Cross Blue Shield Association.
My Highmark
Package ID
com.highmark.myhighmark
Version
35691
Developer
Highmark Inc.
Category
Medical
Store Rank
79
App Store Link
View in Google PlayDeveloper Privacy Policy
Privacy PolicyObservations Summary:
Permissions Observations
DETECTEDPermissions defined by Apple and Google as dangerous have been observed.
Observed During Analysis
- Allows an app to access approximate location.
- Allows an app to access precise location.
- + 21 more
- Allows applications to access information about networks.
- Allows applications to access information about Wi-Fi networks.
- Allows an application to recognize physical activity.
- Allows applications to connect to paired bluetooth devices.
- Required to be able to connect to paired Bluetooth devices.
- Required to be able to access the camera device.
- Allows a regular application to use Service.startForeground.
- Allows a regular application to use Service.startForeground with the type "dataSync".
- Allows a regular application to use Service.startForeground with the type "health".
- Allows a regular application to use Service.startForeground with the type "mediaProjection".
- Allows applications to open network sockets.
- Allows an application to modify global audio settings.
- Allows an app to post notifications
- Allows an application to read from external storage.
- Allows an application to receive the Intent.ACTION_BOOT_COMPLETED that is broadcast after the system finishes booting.
- Allows an application to record audio.
- Allows an app to create windows using the type WindowManager.LayoutParams.TYPE_APPLICATION_OVERLAY, shown on top of all other apps.
- Allows an app to use device supported biometric modalities.
- This constant was deprecated in API level 28. Applications should request USE_BIOMETRIC instead
- Allows using PowerManager WakeLocks to keep processor from sleeping or screen from dimming.
- Allows an application to write to external storage.
- show less
- See Your App’s Risk Profile
Why Permissions Matter
If not managed properly, dangerous permissions can permit malicious access to sensitive data, and device features.
Network Connections Observations
DETECTEDNetwork analysis has detected communication with external servers and data transfer patterns.
Observed During Analysis
Connected Hostname:
- amazon.com
- cloudflare.com
- + 2 more
- google.com
- salesforce.com
- show less
Server Locations:
- Ashburn, Virginia, US
- Kansas City, Missouri, US
- + 4 more
- Mountain View, California, US
- Portland, Oregon, US
- San Francisco, California, US
- Seattle, Washington, US
- show less
- See Your App’s Risk Profile
Why Network Connections Matter
Uncontrolled communication with external servers by an employee-used app could expose sensitive business data to unauthorized third parties. This unauthorized access can lead to data breaches, regulatory non-compliance, and damage to your business's reputation and financial standing.
Privacy Declarations Observations
NOT DETECTEDThis test did not detect a discrepancy, indicating all required declarations are disclosed.
- See Your App’s Risk Profile
Why Privacy Declarations Matter
Declarations matter because they provide transparency on how apps collect and use sensitive data. iOS requires Privacy Manifest declarations, while Android requires Data Safety disclosures and manifest permissions.
Sensitive Data Collection and Sharing Observations
NONE DETECTEDNone detected. Further analysis recommended.
- See Your App’s Risk Profile
Why Data Collection and Sharing Matters
If not managed properly private data can expose enterprises, customers, employees and partners to breach and compliance violations.
AI Observations
NONE DETECTEDNone detected. Further analysis recommended.
- See Your App’s Risk Profile
Why AI Matters
AI features can process sensitive data in unexpected ways, potentially exposing proprietary information or creating liability.
NowSecure provides detailed risk assessments for millions of mobile apps. We Can Help Secure Your App.
All trademarks, logos, and brand names are the property of their respective owners. All company, product, and service names used in this website are for identification purposes only. Use of these names, trademarks, and brands does not imply endorsement.
MARC App Directory