MASA L1 focuses on essential security controls, providing a baseline for the security best practices that every mobile app should meet to protect against common threats, regardless of their functionality or the sensitivity of the data handled.
The goal of MASA L1 is to ensure a baseline level of security in order to prevent commonly seen vulnerabilities. DEKRA, as an accredited lab, emphasizes adhering to secure defaults provided by the OS, frameworks and implementing well recognized security measures considered “fundamental”. These include, using TLS or up-to-date strong cryptography. It is important to recall that certain tests are included due to their minimal implementation effort relative to their significant security enhancement.
MASA L1 is recommended for:
- All mobile apps as a baseline.
- Apps that only deal with (user) low-risk sensitive data and do not contain sensitive functionality.
App Defense Alliance (ADA) Directory
Users also have the ability to “Learn More” about your app, which redirects them to the ADA directory, a centralized place to view all apps that have completed an independent security review. Users can also discover additional technical assessment details in the ADA directory, helping them to make more informed decisions about what apps to download, use, and trust with their data.