STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.
← Back to Google Android 13 COPE Security Technical Implementation Guide

V-254799

CAT III (Low)

Google Android 13 must allow only the Administrator (MDM) to perform the following management function: Disable Phone Hub.

Rule ID

SV-254799r862779_rule

STIG

Google Android 13 COPE Security Technical Implementation Guide

Version

V1R1

CCIs

CCI-001090

Discussion

It may be possible to transfer work profile data on a DOD Android device to an unauthorized ChromeBook if the user has the same Google Account set up on the ChromeBook and in the work profile on the Android device. This may result in the exposure of sensitive DOD data. SFR ID: FMT_MOF_EXT.1.2 #47

Check Content

Review the EMM configuration to confirm phone hub has been disabled.

On the EMM console:
1. Open "Set user restrictions".
2. Verify "Nearby notification streaming policy" is set to "NEARBY_STREAMING_DISABLED".
 
If on EMM console the "Nearby Streaming Policy" is not set to "NEARBY_STREAMING_DISABLED", this is a finding.

Note: From a Chromebook, if a device is connected to the Phone Hub, try to set up the Notifications and it will fail to connect to the device to complete the set up if phone hub has been disabled on the DOD Android device.

Fix Text

Configure Google Android 13 device to disable the nearby notification streaming policy to disable Phone Hub.

COPE and COBO:

On the EMM console:
1. Open "Set user restrictions".
2. Toggle "Nearby Streaming Policy" to "NEARBY_STREAMING_DISABLED".