100% PRIVATE — RUNS OFFLINE

PHONE SECURITY CHECKLIST

Guided audit of your phone security settings

THIS IS A GUIDED AUDIT, NOT A PHONE SCANNER — YOU MANUALLY CHECK EACH SETTING
0 of 14 checked 0%
Screen lock enabled (PIN / pattern / biometric)
Your first line of defense if your phone is lost or stolen.
Android: Settings > Security > Screen lock
iPhone: Settings > Face ID & Passcode (or Touch ID & Passcode)
Use a 6-digit PIN minimum. Biometric (fingerprint/face) is recommended.
Screen lock timeout under 30 seconds
Auto-lock quickly so nobody can access your unlocked phone.
Android: Settings > Display > Screen timeout (set to 15 or 30 seconds)
iPhone: Settings > Display & Brightness > Auto-Lock (set to 30 seconds)
Google Play Protect / App Store protections enabled
Scans apps for malware before and after installation.
Android: Open Play Store > Tap profile icon > Play Protect > Ensure "Scan apps with Play Protect" is ON
iPhone: App Store protections are enabled by default. Ensure you only install apps from the App Store.
Find My Device enabled
Locate, lock, or erase your phone remotely if lost or stolen.
Android: Settings > Security > Find My Device > Ensure it is ON
iPhone: Settings > [Your Name] > Find My > Find My iPhone > Ensure all toggles are ON
Operating system is up to date
Updates patch security vulnerabilities exploited by attackers.
Android: Settings > System > System update > Check for update
iPhone: Settings > General > Software Update
Install all available updates, including security patches.
Unknown sources / sideloading disabled
Prevents installation of malicious APKs from outside the app store.
Android: Settings > Apps > Special app access > Install unknown apps > Ensure all apps say "Not allowed"
iPhone: Not applicable (iOS does not allow sideloading by default). Check this if you are on iPhone.
2FA enabled on Google / Apple account
Protects your primary account from unauthorized access even if your password is stolen.
Google: Visit myaccount.google.com > Security > 2-Step Verification > Ensure it is ON
Apple: Settings > [Your Name] > Sign-In & Security > Two-Factor Authentication
Use an authenticator app instead of SMS when possible.
2FA on banking apps
Adds an extra layer before anyone can access your bank account.
Open each banking app (SBI, HDFC, ICICI, Paytm, PhonePe, GPay, etc.) and check:
Settings > Security > Enable biometric/PIN login
Most Indian banking apps require MPIN or biometric by default. Verify each one is active.
2FA on social media (Instagram, WhatsApp, etc.)
Prevents account takeover on platforms scammers target most.
WhatsApp: Settings > Account > Two-step verification > Enable
Instagram: Settings > Accounts Center > Password and security > Two-factor authentication
Facebook: Settings > Accounts Center > Password and security > Two-factor authentication
Twitter/X: Settings > Security and account access > Security > Two-factor authentication
App permissions reviewed (camera, mic, location)
Ensure apps only have access to what they actually need.
Android: Settings > Privacy > Permission manager > Review Camera, Microphone, Location
iPhone: Settings > Privacy & Security > Review Location Services, Camera, Microphone
Revoke access for apps that do not need it. Set location to "While Using" instead of "Always."
Bluetooth turned off when not in use
Open Bluetooth can be exploited for proximity attacks.
Swipe down to open Quick Settings. Turn off Bluetooth when you are not actively using wireless earbuds, smartwatch, or car audio.
Tip: On Android, you can also disable "Nearby device scanning" under Settings > Location > Scanning.
Auto-connect to open WiFi disabled
Prevents your phone from joining rogue/fake hotspots automatically.
Android: Settings > Network & Internet > Internet > Network preferences > Turn off "Connect to open networks"
iPhone: Settings > Wi-Fi > Ask to Join Networks > set to "Ask" or "Off". Also set Auto-Join Hotspot to "Never"
SIM PIN / eSIM lock enabled
Prevents someone from using your SIM in another phone to receive OTPs.
Android: Settings > Security > SIM card lock > Lock SIM card > Set a PIN
iPhone: Settings > Cellular > SIM PIN > Enable and set a PIN
Default PINs: Jio: 1234, Airtel: 1234, Vi: 1234. Change immediately after enabling.
Backup enabled (Google / iCloud)
If your phone is wiped or stolen, you can restore your data.
Android: Settings > System > Backup > Ensure "Back up to Google Drive" is ON
iPhone: Settings > [Your Name] > iCloud > iCloud Backup > Ensure it is ON
Also back up WhatsApp chats: WhatsApp > Settings > Chats > Chat backup.
0 / 14
CRITICAL

Check each setting above to improve your phone security score.

Install Scam Shield for quick access