Skip to main content

Runtime Security Check-wise Recommendations

Overview

This document outlines check-wise runtime security recommendations when integrating Bugsmirror Defender, clearly distinguishing between recommended and optional controls. It is designed to help organizations implement an optimal security configuration based on threats, risk exposure, and UX friction score. Mandatory controls ensure a strong baseline protection against common and advanced threats, while optional features provide additional layers of defence for enhanced security. By following these recommendations, teams can achieve a balanced approach between robust protection, application stability, and operational efficiency.


Security Recommendations Table

Sr. No.Security AreaSecurity ChecksRisk Score on Disable (1-10)UX Friction Score (1-10)Final Conclusion
1Device IntegrityKernel Level Root
Strong Device integrity
Custom ROM
7Med (4)Recommended
2Failure in Attestation Process Detection9Med (4)Recommended
3Strong device Integrity -

Tricky Store Detection
9Low (2)Mandatory
4Strong device Integrity

-Failure in Attestation Process Detection
9Med (4)Mandatory
5Devices with Expired Certificates Detection
(Enabling this will detect old devices and expired certificates. To avoid a huge number of users with this detection, you can consider disabling this)
3High (8)Not Recommended
6OS IntegrityOEM Unlock5Med (5)Optional
7ADB Wireless Debugging
ADB USB Debugging
3High (7)Recommended
8Developer Mode Enable Check2High (8)Recommended
9OverAll Accessibility Permission Detection5Very High (9)Optional
10Third Party Accessibility Permission Detection7Med (5)Recommended
11Device Lock Enablement6Low (2)Optional
12Location Spoofing6Very High (9)Optional
13Active USB Connection Detection7Med (5)Recommended
14Secure CommunicationUnsecured Wifi Detection5High (8)Optional
15Proxy Detection
Packet Sniffing Detection
SSL Pinning
API Tampering
MitM attack prevention
6Low (2)Recommended
16VPN Detection4High (8)Recommended
17Mobile PrivacyScreen Shot Prevention5Med (5)Optional
18Screen Recording Prevention5Med (5)Optional
19Screen Share via ADB Prevention5Med (4)Optional
20Screen Share by Cast Prevention5Med (4)Optional
21Screen Overlay Prevention8Low (1)Recommended
22Permanent Unsecure Device Blocking5Med (4)Recommended
23Mobile FraudApp Cloning/Second Space Prevention6Low (2)Recommended
24Device Screen time detection3Low (3)Optional
25Keylogger Prevention7Low (1)Recommended
26Social EngineeringMarketplace Enforcement Check Apk Sharing6Med (4)Recommended

Disclaimer

We recommend enabling all available security checks to ensure comprehensive protection of your application. However, based on specific application requirements, certain features may be disabled at your discretion.

Please note that disabling any security feature may introduce potential risks and reduce overall protection. Such decisions are solely your responsibility. Bugsmirror shall not be held liable for any vulnerabilities, breaches, or damages resulting from the disabling of recommended features.

This document provides guidance and recommendations only and does not mandate implementation.