This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Low reputation apps

Hello,

One of the apps I'm developing is flagged as a low-reputation app, for the following security consideration: Trigger installation (This app can ask Android to install another app).
The problem is, that I didn't add a mechanism to install apps, so I'm wondering what might be causing this alert.
Could it be something in the manifest or some third-party library?

Is it possible to have more information about how Sophos X Intercept (Android) detects if an app triggers installations?



This thread was automatically locked due to age.
Parents
  • Thank you for reaching out to the community forum. 


    Based on the scenario you've shared, the app's Reputation feature is turned on, which is why you're getting this low-reputation notification. 
    For further explanation as to why you get the detection you may refer to this KBArticle.
    I
    f you wish to increase the app's reputation and avoid receiving such notifications, follow the steps stated here

    Glenn ArchieSeñas (GlennSen)
    Global Community Support Engineer

    The New Home of Sophos Support Videos!  Visit Sophos Techvids
Reply
  • Thank you for reaching out to the community forum. 


    Based on the scenario you've shared, the app's Reputation feature is turned on, which is why you're getting this low-reputation notification. 
    For further explanation as to why you get the detection you may refer to this KBArticle.
    I
    f you wish to increase the app's reputation and avoid receiving such notifications, follow the steps stated here

    Glenn ArchieSeñas (GlennSen)
    Global Community Support Engineer

    The New Home of Sophos Support Videos!  Visit Sophos Techvids
Children
  • Thank you for your answer.

    It seems that I cannot submit a sample to increase an app reputation without being a client (a client account is necessary to log in on the support platform). Is there a workaround?

    Is there a way to have more info about the security consideration: Trigger  installation without contacting support (since the first article you  mentioned doesn't cover it)