Ref Settings Ios
In brief
The iOS app protection settings reference updated the Screen capture entry, documenting that Block prevents capture of work or school data, while Allow is the default and permits capture and sharing without restrictions.
What Intune admins need to know
Review the updated setting guidance when configuring iOS app protection policies.
This summary was assembled from the tracked documentation change. Verify important details in the full Microsoft Learn article.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
|
- Unmanaged Browser Protocol | Enter the protocol for a single unmanaged browser. Web content (http/https links) from policy managed applications open in any app that supports this protocol. The web content is unmanaged in the target browser.
http://www.microsoft.com>mybrowser://www.microsoft.comhttps://www.microsoft.com>mybrowsers://www.microsoft.com- Blocked: Don't share notifications.
- If not supported by the application, notifications are allowed.
- Block org Data: Don't share Org data in notifications, for example.
- "You have new mail"; "You have a meeting."
- If not supported by the application, notifications are allowed.
- Allow: Shares Org data in the notifications.
- Outlook for iOS 4.34.0 or later
- Teams for iOS 2.0.22 or later
- Microsoft 365 (Office) for iOS 2.72 or later
- Screenshots
- On-device screen recording
- Screen sharing via on-device apps like Teams and Zoom mobile
- Screen mirroring to another device via AirPlay
- Screen mirroring or recording via QuickTime on a connected Mac
- Siri onscreen awareness
Use this feature only when you need to share protected content with a specific browser that Intune app protection policies don't enable. You must contact your browser vendor to determine the protocol supported by your desired browser.
Note: Include only the protocol prefix. If your browser requires links of the form
mybrowser://www.microsoft.com, enter mybrowser.Links are translated as:
Note:
This setting requires the following app support:
| Allow |
| Genmoji | Choose Block to prevent use of Genmoji for work or school data. If you leave this setting as Allow, the default value, users are able to share org data to the Genmoji generator.
Note: This setting requires v19.7.12 or later for Xcode 15 and v20.4.0 or later for Xcode 16 of the SDK. | Allow | | Screen capture | Choose Block to prevent screen capture of work or school data. If you leave this setting as Allow, the default value, users are able to screen capture all org data and share without restrictions. Screen capture block is applied for the following scenarios:
Note: This setting requires v19.7.12 or later for Xcode 15 and v20.4.0 or later for Xcode 16 of the SDK. | Allow | | Writing Tools | Choose Block to prevent use of Writing Tools for work or school data. If you leave this setting as Allow, the default value, users are able to share org data to Writing Tools.
Note: This setting requires v19.7.12 or later for Xcode 15 and v20.4.0 or later for Xcode 16 of the SDK. | Allow |
@@ -52,7 +52,7 @@ There are three categories of policy settings: *Data relocation*, *Access requir |<ul>**Unmanaged Browser Protocol** | Enter the protocol for a *single* unmanaged browser. Web content (http/https links) from policy managed applications open in any app that supports this protocol. The web content is unmanaged in the target browser. <br><br>Use this feature only when you need to share protected content with a specific browser that Intune app protection policies don't enable. You must contact your browser vendor to determine the protocol supported by your desired browser.<br><br>**Note**: *Include only the protocol prefix. If your browser requires links of the form `mybrowser://www.microsoft.com`, enter `mybrowser`.*<br>Links are translated as:<br><ul><li>`http://www.microsoft.com` > `mybrowser://www.microsoft.com`</li><li>`https://www.microsoft.com` > `mybrowsers://www.microsoft.com`</li></ul> | **Blank** | | **Org data notifications** | Specify how Org data is shared via OS notifications for Org accounts. This policy setting impacts the local device and any connected devices such as wearables and smart speakers. Apps might provide more controls to customize notification behavior or could choose to not honor all values. Select from: <ul><li>**Blocked**: Don't share notifications.</li><ul><li>If not supported by the application, notifications are allowed.</li></ul><li>**Block org Data**: Don't share Org data in notifications, for example.</li><UL><li>"You have new mail"; "You have a meeting."</li><li>If not supported by the application, notifications are allowed.</li></ul><li>**Allow**: Shares Org data in the notifications.</li></ul> <p>**Note**:<br>*This setting requires the following app support:<ul><li>Outlook for iOS 4.34.0 or later</li><li>Teams for iOS 2.0.22 or later</li><li>Microsoft 365 (Office) for iOS 2.72 or later</li></ul>* | **Allow** | | **Genmoji** | Choose **Block** to prevent use of Genmoji for work or school data. If you leave this setting as **Allow**, the default value, users are able to share org data to the Genmoji generator.<p>**Note:** This setting requires v19.7.12 or later for Xcode 15 and v20.4.0 or later for Xcode 16 of the SDK. | **Allow** |-| **Screen capture** | Choose **Block** to prevent screen capture of work or school data. If you leave this setting as **Allow**, the default value, users are able to screen capture all org data and share without restrictions. Screen capture block is applied for the following scenarios: <ul><li>Screenshots</li><li>On-device screen recording</li><li>Screen sharing via on-device apps like Teams and Zoom mobile</li><li>Screen mirroring to another device via AirPlay</li><li>Screen mirroring or recording via QuickTime on a connected Mac</li></ul> <p>**Note:** This setting requires v19.7.12 or later for Xcode 15 and v20.4.0 or later for Xcode 16 of the SDK. | **Allow** |+| **Screen capture** | Choose **Block** to prevent screen capture of work or school data. If you leave this setting as **Allow**, the default value, users are able to screen capture all org data and share without restrictions. Screen capture block is applied for the following scenarios: <ul><li>Screenshots</li><li>On-device screen recording</li><li>Screen sharing via on-device apps like Teams and Zoom mobile</li><li>Screen mirroring to another device via AirPlay</li><li>Screen mirroring or recording via QuickTime on a connected Mac</li><li>Siri onscreen awareness</li></ul> <p>**Note:** This setting requires v19.7.12 or later for Xcode 15 and v20.4.0 or later for Xcode 16 of the SDK. | **Allow** | | **Writing Tools** | Choose **Block** to prevent use of Writing Tools for work or school data. If you leave this setting as **Allow**, the default value, users are able to share org data to Writing Tools. <p>**Note:** This setting requires v19.7.12 or later for Xcode 15 and v20.4.0 or later for Xcode 16 of the SDK. | **Allow** | > [!NOTE] > None of the data protection settings control the Apple managed open-in feature on iOS/iPadOS devices. To use manage Apple open-in, see [Manage data transfer between iOS/iPadOS apps with Microsoft Intune](./manage-data-transfer-ios.md).