₹

5. Permissions Audit

ENX Money • Enterprenex Solutions Pvt Ltd

Google Play Security Standard • Verified

Purpose

Every requested Android permission must have a legitimate, clearly communicated purpose tied to core app functionality. Over-requesting permissions is a leading cause of Play Store rejection.

5.1 Sensitive Permissions Requiring Justification

The following sensitive permissions require explicit justification and are subject to elevated Play Store review:

5.2 Audit Rule

For every permission, ask: “Does my application genuinely require this to function?” If the answer is no — remove it.

5.3 Examples

5.4 Permissions Audit Table

Permission Requested? Feature Supported Justified? Runtime Request Used?
CameraNON/A — No camera featuresNo (Not required)N/A
LocationNON/A — Dependent dropdowns usedNo (Unnecessary)N/A
MicrophoneNON/A — No voice featuresNo (Unnecessary)N/A
ContactsNOManual entry or Contact PickerNo (Broad access avoided)N/A (Contact Picker used)
SMSNOSystem SMS/WhatsApp intentsNo (Background SMS avoided)N/A (Delegated to OS app)
Call LogNON/A — No telephony trackingNo (Unrelated)N/A
StorageNOScoped app-private storage usedNo (Scoped storage used)N/A (No broad storage)
BluetoothNON/A — No hardware accessoriesNo (Unrelated)N/A
NotificationsNOUser-initiated actions onlyNo (No push spam)N/A
Internet (INTERNET)YESHTTPS/TLS 1.3 REST API with backendYes (Essential)Normal permission
Network State (ACCESS_NETWORK_STATE)YESOffline detection & candidate failoverYes (Essential)Normal permission

5.5 Implementation Notes

Sign-off Checklist