Skip to main content

Risky app categories

What it checks

Some kinds of apps do not belong on a work device, for example crypto-mining apps, hacking and security-testing tools, or file-sharing and pirated-content apps. XFA checks whether you have any apps in those risky app categories installed.

The XFA app shows this check under Risky app categories, for example Apps from risky categories found.

Why it matters

This is about the kind of app, not about who made it. An app can be properly signed and still be something that puts your device or your organization's data at risk.

Games and virtual machine software are only flagged when your organization asks for it. They are a workplace choice, not a risk to you on your own.

What XFA sees

XFA looks for the apps in a list of categories that XFA maintains. Your organization only gets the number of apps per category, for example "two VPN apps". It does not get the names.

What happens if it does not pass

The XFA app shows you which apps are involved, which category they fall into, and why that category is risky. You can remove an app from the XFA app. XFA first lists exactly what it will remove and asks you to confirm. When part of it needs administrator rights, your Mac asks for your administrator password, Windows asks for your permission, and Linux asks for your password. A removal cannot be undone.

XFA never removes anything unless you confirm it. If you need the app for your work, ask your IT team.