Why YSK: It appears several Lemmy Instances are flagged as suspicious and at least 1 instance intentionally using the name of ransomware. A couple of the big enterprise monitoring suites (Fortiguard, ZScaler) will flag your account and may end up with you being pulled into an office for an explanation, or worse.
TL;DR: Keep browsing to your local instance at work for now.
I’ve worked a job that required using an app on my phone, and in order to install that app I had to give ROOT ACCESS and full remote control to the IT department and was subject to the same monitoring as when using a company desk or laptop. I just grabbed an older phone I had lying around and used that for work because I wasn’t about to give complete remote access to the phone I actually used every day.
Why did the company not supply the phone to be used for company purposes?
They were cheap bastards and were forever “in the process of getting” new company phones for brand new hires like I was at the time.
Fuck that. Our company gives us phones because they know they’re secure. And we don’t use them for anything but work related apps. I still make all my phone calls from my personal or office phone
I say, “We,” but that’s not entirely true. There are a couple of jackasses that do everything on them, but I assume the company can see it of they want to. So, fuck that
This does not sound legal. What country are we talking about?
US. California, specifically.
Wait, your job required root access to your personal cell phone phone at all times? So if you were at home off the clock you were still restricted on your personal phone as to what websites you could view?
It’s also a legal issue. If something happens legally that’s work related and your phone becomes part of the discovery process someone would sift through your personal data
I mean that’s one thing to have access as part of an investigation, but to have remote access to it 24/7 seems excessive.
If you are android, there is an app called Shelter that lets you create customized contained work profile inside which apps can be killed completely until you enable work profile again. This would usually be enabled by certain official app by your employer’s IT policy, such as MS’s Company Policy, so you don’t normally have control over what app to put in the profile, but with Shelter you can pick and choose any app into the work profile freely. If you have other apps you don’t trust, you can also use it to contain them too
I use a Pixel 1 for the same purpose. It’s just a couple authentication apps in my case, but I still don’t want their shit on my personal phone.
Not sure why they’ve got to use proprietary shit instead of just using standards. I even offered my own Yubikey.