> For the complete documentation index, see [llms.txt](https://docs.cubilock.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.cubilock.com/profile-management/kiosk-settings/key-guard-features-settings.md).

# Key-guard Features Settings

In the **Kiosk Settings** tab of the **Edit Device Profile** page, the **Keyguard Disabled Features** section allows IT admins to *control specific lock‑screen (keyguard) behaviors* on fully managed or kiosk devices.

These settings determine which features are **disabled on the secure keyguard screen** (i.e., the screen shown before device unlock). By disabling specific features, you can tighten security, reduce distraction, or enforce stricter kiosk environments.

**Navigation:**\
`Device Management > Device Profiles > Edit Profile > Kiosk Settings > Keyguard Disabled Features`

Below is a description of each toggle shown

| **Feature**                  | **Description**                                                                                                                                                    |
| ---------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
| **Camera**                   | Prevents access to the camera from the **lock screen** (secure keyguard). Users cannot launch the camera without first unlocking the device                        |
| **Notifications**            | Hides **all notifications** on the lock screen, preventing users from seeing notification banners or content before unlock                                         |
| **Unredacted Notifications** | Allows notifications to appear but hides sensitive content (only redacted notification headlines are shown)                                                        |
| **Trust Agents**             | Disables *trust‑agent logic* (like Smart Lock) that can keep a device unlocked under certain conditions (e.g., trusted Bluetooth device).                          |
| **Disable Fingerprints**     | Disables **fingerprint authentication** on the lock screen. Users must unlock with PIN/Password/Pattern                                                            |
| **Disable Remote Input**     | On **Android 6 and below**, this prevents input into notification text expansion on lock screen notifications. (No effect on Android 7+.)                          |
| **Face**                     | Disables **face recognition** for unlocking the device at the lock screen                                                                                          |
| **Iris**                     | Disables **iris scanning** authentication at the lock screen (where supported)                                                                                     |
| **Biometrics**               | Disables **all biometric authentication** — fingerprint, face, and iris — at the lock screen. This overrides individual biometric toggles.                         |
| **All Features**             | Turns *off all the above* keyguard customizations at once. This is useful in kiosk environments where you want to remove all interactive lock‑screen functionality |

![](/files/Y3wyso1G2LwpGAVtB5b5)

#### **How This Affects Devices**

These settings let you **tighten lock‑screen behavior** in managed environments:

**Enhanced Security:** Prevent access to notifications, camera, or biometrics before an authorized user unlocks the device.\
**Consistent Kiosk Experience:** Disable features that could let users interact with system UI or exit kiosk apps.\
**Compliance Enforcement:** Enforce standard behaviors across a fleet of devices, especially in regulated industries.
