Cut, Copy, Paste in App Protection Policies
Implementation Effort: Low – IT administrators only need to configure this setting within the App Protection Policies in Microsoft Intune.
User Impact: Medium – A subset of users may experience changes in how they can move or share content between apps, especially when using personal or unmanaged apps.
Overview
The “Restrict cut, copy, and paste between other apps” setting in Microsoft Intune App Protection Policies (APP) controls how users can transfer data between managed and unmanaged apps. This is a key control for preventing data leakage, especially in BYOD environments or on devices with both personal and work profiles.
Available Options for Android and iOS:
- Blocked – Prevents all cut, copy, and paste actions between managed and unmanaged apps.
- Policy managed apps – Allows cut, copy, and paste only between apps that are managed by Intune.
- Policy managed apps with paste in – Allows paste from unmanaged apps into managed apps, but blocks copying from managed apps to unmanaged ones.
- Any app – No restrictions; users can cut, copy, and paste between any apps 1 2.