Conversation

Replying to and
An 'anonymous' SIM card is not going to stay anonymous for long if you are actually being targeted. They can correlate it with your location and start tracking you directly once they've identified your phone. I don't understand why you think IMSI catchers are a counter to that.
1
Replying to and
If they have access to the carriers, they can see which devices are active in your house or where they know you go, and then figure out which one is your phone. Local interception mostly serves the purpose of bypassing working through carriers, if they don't have that access.
2
Replying to
They want those devices to intercept *unencrypted* data without getting warrants. In many cases, companies grant access without a warrant anyway. The solution is not sending / receiving sensitive unencrypted data. The carrier has access no matter what and likely logs it all.
1
Replying to and
They are often required by law to keep logs of call metadata and SMS metadata and content at a minimum, for a certain amount of time. They could keep more and can keep it for longer in most cases if they want. You are trusting the employees at that company, their partners, etc.
1
Replying to and
If you're in a position where having the data intercepted locally is concerning, then you're already doing it wrong and should be concerned since the data is inherently visible to the carrier and anyone with access to their network. Law enforcement is one possibility among many.
1
Replying to and
Carriers often sell access to people's location and other sensitive data. They don't just give it to law enforcement without a warrant. They'll happily sell it to advertising firms, etc. for various purposes. Local interception shouldn't concern you much. It changes very little.
1
Replying to
Work profiles are a standard Android feature implemented in the Android Open Source Project. The app you're linking simply acts as a device admin to use work profiles for something they're not well suited to doing. I'm not really a fan of half-baked implementations of features.
1
Replying to and
When I said it wasn't in scope, I meant using the standard feature (work profiles) as a half-baked sandbox implementation. This isn't how I approach things with my work. I don't think it should be done at all if it's not going to be done well. User profiles work better for this.
2
Replying to
ok nice to know. I use different profiles on my pixel 3. Works like a perfect. Only some apps are not boot aware, so when I'm in my second profile and somebody calls me on signal on the first one. It doesn't ring