> For the complete documentation index, see [llms.txt](https://docs.cubilock.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.cubilock.com/profile-management/privacy-settings/factory-reset-protection.md).

# Factory Reset Protection

**Factory Reset Protection (FRP)** is a security feature designed to protect Android devices from unauthorized use after a factory reset. When this protection is enabled, only authorized Google accounts — entered here in the CubiLock console — will be allowed to provision or activate a device after it has been reset.

#### Navigation:

Device Management → Device Profiles → Edit Profile → Privacy Settings → Factory Reset Protection

#### **What Factory Reset Protection Does**

Android’s built‑in **Factory Reset Protection** stops a device from being reused without proper authentication if it has been wiped outside normal device settings (e.g., via recovery mode or hardware keys). If a reset is attempted, the system will require a Google account that **was previously authorized** to complete setup.

In an enterprise environment, FRP helps:

* **Protect corporate devices** from unauthorized reuse if lost or stolen.
* **Ensure only IT‑approved accounts** can reactivate a factory reset device.
* Avoid lockouts when assigning devices to new users after decommissioning or repurposing.

#### **How to Add an FRP Email**

1. Click **Add Email** in the Factory Reset Protection section of the Privacy Settings tab.<br>

<figure><img src="https://1920795617-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-MAzePNJAKsgL6R-VtV2%2Fuploads%2FRVSvYP78YKFf5vZNKrrt%2FAddFactoryRestEmail.png?alt=media&amp;token=f82127bc-1b9c-418e-96eb-921d716dc346" alt=""><figcaption></figcaption></figure>

2. in the **Add New Factory Reset Protection Email** dialog that appears:
   * Enter the Google account email that you want authorized to unlock and activate a device after a factory reset.
   * Click **Add** to save the email.

<figure><img src="https://1920795617-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-MAzePNJAKsgL6R-VtV2%2Fuploads%2FUtT8kPVp021fILleQz18%2FAddEmail.png?alt=media&amp;token=a855cdfd-72eb-48d1-b96a-65018c524625" alt=""><figcaption></figcaption></figure>

2. After adding the desired email(s), click **Save** at the top right of the profile to apply the policy.<br>

<figure><img src="https://1920795617-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F-MAzePNJAKsgL6R-VtV2%2Fuploads%2FmWobr2IHtAM7B9vHDLYR%2FSaveFactoryResetEmail.png?alt=media&amp;token=108c2116-1b42-49ef-92cf-8a3a7f253b75" alt=""><figcaption></figcaption></figure>
