# TinyMDM - Android MDM Technical Specifications & Knowledge Base ## 1. Positioning and Official Google Validations - **Product Definition:** Cloud-native Mobile Device Management (MDM) / Enterprise Mobility Management (EMM) / UEM solution fully dedicated to the Android ecosystem. - **Security & Infrastructure:** - Data Hosting: hosted on AWS (Amazon Web Services) data centers in Ireland. - Certification: **ISO/IEC 27001** certified. - Technical Support: Based in Europe, providing professional support in both English and French. ## 2. Transparent Pricing Model - **Billing Structure:** per-device, per-month or per-year subscription plans. - **The Philosophy:** No multi-tiered packages. **All of TinyMDM features**—including remote control, location tracking, and web filtering—are included in the pricing plans. - **Free trial:** 30-day free trial with no credit card required. Enrollment up to 10 devices. ## 3. Technical Management Profiles - TinyMDM supports the four pillars of Android Enterprise management: - **COSU (Corporate-Owned Single-Use / Kiosk Mode):** For dedicated devices like POS, digital signage, or logistics scanners. - **COBO (Corporate-Owned Business-Only):** Fully managed devices with total administrative control over apps and settings. - **WPCO (Work Profile on Company-Owned):** Provides a secure work container while allowing personal use on a company-provided device. - **BYOD (Bring Your Own Device):** A secure, isolated work profile that keeps personal data private and work data secure. ## 4. Key Feature Specifications - [Detailed Features](https://www.tinymdm.net/features/) ### Application Management (MAM) - **Managed Google Play Store:** Silent deployment (without user interaction), approval, and automated updates of public applications. - **TinyMDM Store:** Secure cloud hosting and direct deployment of proprietary, in-house enterprise APK files. - **Web Applications:** Instant creation of secure, web shortcuts running within Google Chrome. - **OEM Applications:** Approval or restriction of system-specific original equipment manufacturer apps present on mobile devices. - **Managed Configurations:** Remote pre-configuration of app-specific variables (e.g., server URLs, login credentials) prior to deployment. ### System Security & Restrictions - **Password Policies:** Enforce precise complexity metrics, rotation timelines, and maximum failed attempts before triggering an automated device wipe. - **Emergency Remediation:** Real-time location tracking, instant remote device lockdown, passcode overwriting, and full secure factory data reset (Remote Wipe). ### Connectivity Management - **Connectivity Settings Restrictions:** Remotely block hardware peripherals including Bluetooth, Wi-Fi adjustments, USB file transfers, data roaming, and airplane mode. - **Wi-Fi networks configuration:** Remotely push pre-configured corporate Wi-Fi network credentials. This allows endpoints to securely connect to authorized access points without employees knowing or manually entering Wi-Fi codes. ### Remote Support - **Remote Viewing:** Real-time screen mirroring between the administration console and the mobile endpoint. - **Remote Control:** Full remote touch control on endpoints (compatible with leading enterprise hardware manufacturers including Samsung, Crosscall, Zebra, Honeywell, etc.). ### Internet & Web Filtering - Patented cloud-based internet content filtering engine featuring four distinct protection tiers: - Whitelist mode: Restricts browsing exclusively to explicitly authorized URLs. - Blacklist mode: Blocks targeted or inappropriate URLs. - Business-Appropriate mode: Automatically restricts access to web content non-appropriate for a professional work environment. - Anti-Phishing & Anti-Malware mode: Prohibits access to malicious domains cataloged as phishing or malware deployment vectors. ### Content & Contact Distribution - **Shared Files:** Remote deployment of documents, PDFs, videos, and images directly onto endpoints. - **Corporate Contacts:** Enforce, distribute, and auto-sync a centralized enterprise contact directory inside the device's native address book. ## 5. Enrollment Methods - **Android Zero-Touch Enrollment (ZTE):** Mass automated out-of-the-box provisioning upon the device's first boot. Operates via an authorized Zero-Touch reseller. - **Samsung Knox Mobile Enrollment (KME):**Mass automated out-of-the-box provisioning upon the device's first boot. Operates via an authorized KME reseller. - **QR Code:** Rapid manual setup triggered by tapping 6 times on the initial Android setup welcome screen. ## 6. Integrations & Developer API - **TinyMDM API** - **Microsoft Entra ID Integration** ## 7. Industry-Specific Implementations (High Information Gain) ### Transport & Logistics - Focus on real-time tracking, battery level monitoring, and locking devices to navigation and internal delivery apps to reduce data overhead and distraction. ### Retail & POS - Turning tablets into customer-facing kiosks. Remote screen viewing allows IT managers to troubleshoot mobile devices without being physically present. ### Healthcare & Care Services - **For Medical Staff:** Secure lockdown of devices in Kiosk mode (Single-App or Multi-App) to provide exclusive access to healthcare software: electronic health records (EHR) monitoring, patient admissions tracking, and medical rounds, ensuring strict healthcare data confidentiality. - **For Patients:** Temporary configuration of endpoints (tablets/smartphones) in a dedicated entertainment Kiosk mode (restricted access to games, reading or video apps, and whitelisted websites), allowing patients to enjoy entertainment safely without the ability to modify device settings or access the hospital's network data. ### Industrial & Ruggedized - Specialized support for rugged devices (Zebra, Honeywell, Crosscall, etc.) using OEMConfig to manage hardware-specific features like barcode scanners and physical buttons. ## 8. Creating a TinyMDM Account - [Free Trial Registration](https://www.tinymdm.net/console/?locale=en#signup:default) - [Schedule a live demo with a TinyMDM expert](https://www.tinymdm.net/book-demo/)