Mobile App Risk is Business Risk.
Regulators are watching Enterprise mobile apps. Users demand transparency. Get instant visibility into privacy risks, AI data exposure, dangerous permissions and suspicious network connections across your entire enterprise app portfolio.
Search 2,000+ Enterprise Apps. Know Your Risk in Minutes.
SmartThings
SmartThings
Quickly and easily connect and control your smart home devices through SmartThings.
SmartThings is compatible with 100s of smart home brands. So, you can control all of your smart home gadgets in one place, including your Samsung Smart TV and smart home appliances.
With SmartThings, you can connect, monitor and control multiple smart home devices quicker and easier. Connect your Samsung smart TVs, smart appliances, smart speakers and brands like Ring, Nest and Philips Hue – all from one app.
Then control your smart devices using voice assistants including Alexa, Bixby and Google Assistant
[Key Features]
– Control and check in on your home from wherever you are
– Build routines that are set on time, weather, and device status, so your home runs smoothly in the background
– Allow shared control by giving access to other users
– Receive status updates about your devices with automated notifications
※ SmartThings is optimized for Samsung smartphones. Some features may be limited when used with other vendors' smartphones.
※ Some features may not be available in all countries.
※ You can also install SmartThings on Wear OS-based watches.
※ SmartThings for Wear OS is only available when the watch is connected to a mobile phone. You can get a quick access to routine run and device control by adding SmartThings tile on your watch. We provide SmartThings complications that allow you to enter SmartThings app service directly from watchface.
[App requirements]
Some mobile devices may not be supported.
– Memory size : 3GB over
※ App permissions
The following permissions are required for the app. You can use the app without optional permissions, but some functions may be limited.
[Optional access permissions]
• Location : Used to locate your devices, create routines based on your location, and scan for nearby devices using Wi-Fi
• Nearby devices : (Android 12 ↑) Used to scan for nearby devices using Bluetooth Low Energy (BLE)
• Notifications : (Android 13 ↑) Used to provide notifications about SmartThings devices and features
• Camera : Used to scan QR codes so you can easily add members and devices to SmartThings
• Microphone : Used to add certain devices to SmartThings using high-frequency sounds
• Storage : (Android 10~11) Used to save data and share content
• Files and media : (Android 12) Used to save data and share content
• Photos and videos : (Android 13 ↑) Used to play photos and videos on SmartThings devices
• Music and audio : (Android 13 ↑) Used to play sound and video on SmartThings devices
• Phone : (Android 10 ↑) Used to make calls on smart speakers
• Contacts : (Android 10 ↑) Used to get phone numbers of your contacts to send text message notifications
• Physical activity : (Android 10 ↑) Used to detect when you start pet walks
SmartThings
Package ID
com.samsung.android.oneconnect
Version
183723010
Developer
Samsung Electronics Co., Ltd.
Category
Lifestyle
Store Rank
37
App Store Link
View in Google PlayDeveloper Privacy Policy
Privacy PolicyObservations Summary:
Permissions Observations
DETECTEDPermissions defined by Apple and Google as dangerous have been observed.
Observed During Analysis
- Allows an app to access location in the background.
- Allows an app to access approximate location.
- + 57 more
- Allows an app to access precise location.
- Allows applications to access information about networks.
- Allows applications to access information about Wi-Fi networks.
- Allows an application to recognize physical activity.
- Allows an application to bind to third party quick settings tiles.
- Allows applications to connect to paired bluetooth devices.
- Allows applications to discover and pair bluetooth devices.
- Required to be able to advertise to nearby Bluetooth devices.
- Required to be able to connect to paired Bluetooth devices.
- Allows applications to pair bluetooth devices without user interaction, and to allow or disallow phonebook access or message access.
- Required to be able to discover and pair nearby Bluetooth devices.
- Allows an application to initiate a phone call without going through the Dialer user interface for the user to confirm the call.
- Required to be able to access the camera device.
- Allows applications to change network connectivity state.
- Allows applications to enter Wi-Fi Multicast mode.
- Allows applications to change Wi-Fi connectivity state.
- Allows an application to configure and connect to Wifi displays
- Allows an application to expand or collapse the status bar.
- Allows a regular application to use Service.startForeground.
- Allows a regular application to use Service.startForeground with the type "connectedDevice".
- Allows a regular application to use Service.startForeground with the type "location".
- Allows a regular application to use Service.startForeground with the type "mediaPlayback".
- Allows a regular application to use Service.startForeground with the type "microphone".
- Allows access to the list of accounts in the Accounts Service.
- Allows an app to access sensor data with a sampling rate greater than 200 Hz.
- Allows applications to open network sockets.
- This permission is used to let OEMs grant their trusted app access to a subset of privileged wifi APIs to improve wifi performance.
- Allows an application to know what content is playing and control its playback.
- Allows an application to modify global audio settings.
- Allows modification of the telephony state - power on, mmi, etc.
- Required to be able to advertise and connect to nearby devices via Wi-Fi.
- Allows an application to modify any wifi configuration, even if created by another application.
- Allows an app to post notifications
- Allows query of any normal app on the device, regardless of manifest declarations.
- Allows an application to read the user's contacts data.
- Allows an application to read from external storage.
- Allows an application to read audio files from external storage.
- Allows an application to read image files from external storage.
- Allows an application to read video files from external storage.
- Allows read access to the device's phone number(s), which is exposed to instant applications.
- Allows read only access to phone state, including the current cellular network information, the status of any ongoing calls, and a list of any PhoneAccounts registered on the device.
- Required to be able to reboot the device.
- Allows an application to receive the Intent.ACTION_BOOT_COMPLETED that is broadcast after the system finishes booting.
- Allows an application to record audio.
- Permission an application must hold in order to use Settings.ACTION_REQUEST_IGNORE_BATTERY_OPTIMIZATIONS.
- Allows applications to use exact alarm APIs.
- Allows an application to set the maximum number of (not needed) application processes that can be running.
- Allows an application to open, close, or disable the status bar and its icons.
- Allows an application to subscribe to device locked and keyguard locked (i.e., showing) state.
- Required for apps targeting Build.VERSION_CODES.Q that want to use notification full screen intents.
- Required to be able to range to devices using ultra-wideband.
- Allows access to the vibrator.
- Allows using PowerManager WakeLocks to keep processor from sleeping or screen from dimming.
- Allows an application to write to external storage.
- Allows an application to read or write the secure system settings.
- Allows an application to read or write the system settings.
- Allows an application to install a shortcut in Launcher.
- show less
- See Your App’s Risk Profile
Why Permissions Matter
If not managed properly, dangerous permissions can permit malicious access to sensitive data, and device features.
Sensitive Data Collection and Sharing Observations
SENSITIVE INFO FOUNDThis app collects, stores, or shares information that is often designated as sensitive and private.
Observed During Analysis
- WiFi IP Address
- See Your App’s Risk Profile
Why Data Collection and Sharing Matters
If not managed properly private data can expose enterprises, customers, employees and partners to breach and compliance violations.
AI Observations
DETECTEDThis app uses artificial intelligence and may introduce risks including loss of IP, privacy concerns, or other unintended consequences.
Observed During Analysis
- ML Kit
- OpenAI
- + 1 more
- LiteRT model
- show less
- See Your App’s Risk Profile
Why AI Matters
AI features can process sensitive data in unexpected ways, potentially exposing proprietary information or creating liability.
Network Connections Observations
DETECTEDNetwork analysis has detected communication with external servers and data transfer patterns.
Observed During Analysis
Connected Hostname:
- amazon.com
- fastly.com
- + 1 more
- google.com
- show less
Server Locations:
- Chicago, Illinois, US
- Columbus, Ohio, US
- + 5 more
- Dublin, Dublin, IE
- Kansas City, Missouri, US
- Mountain View, California, US
- San Francisco, California, US
- Seattle, Washington, US
- show less
- See Your App’s Risk Profile
Why Network Connections Matter
Uncontrolled communication with external servers by an employee-used app could expose sensitive business data to unauthorized third parties. This unauthorized access can lead to data breaches, regulatory non-compliance, and damage to your business's reputation and financial standing.
Privacy Declarations Observations
NOT DETECTEDThis test did not detect a discrepancy, indicating all required declarations are disclosed.
- See Your App’s Risk Profile
Why Privacy Declarations Matter
Declarations matter because they provide transparency on how apps collect and use sensitive data. iOS requires Privacy Manifest declarations, while Android requires Data Safety disclosures and manifest permissions.
NowSecure provides detailed risk assessments for millions of mobile apps. We Can Help Secure Your App.
All trademarks, logos, and brand names are the property of their respective owners. All company, product, and service names used in this website are for identification purposes only. Use of these names, trademarks, and brands does not imply endorsement.
MARC App Directory