---
title: H1 2021 'dangerous permissions' in Google Play Store mobile apps
description: Check this blog to find out which 'dangerous permissions' were the most common in Google Play Store apps in H1 2021.
image: https://lh6.googleusercontent.com/wVtEt9xW8kDpI5NZw8LTmXCbpjTvzIr6RRQ3jLCqyQzylPEYtgzEKW6x7XjVC5xPw5ZlKYQLshD_Fz0x3KXXuTjRZFRItwuPCoud1fJZOlN4HazRawW_hPblwIXFbnvI8i8mE-F1=s0
---

[![pixalate-full-logo](https://www.pixalate.com/hs-fs/hubfs/Pixalate_Logos/pixalate-full-logo.jpg?width=150&height=60&name=pixalate-full-logo.jpg "pixalate-full-logo")](https://www.pixalate.com)

Search

**Menu**

** **

![](https://www.pixalate.com/hubfs/Blog_Media/Blog%20photos/pixalate-blog-bg.png)

[Mobile](https://www.pixalate.com/blog/topic/mobile) | [Privacy](https://www.pixalate.com/blog/topic/privacy) | [Research Reports](https://www.pixalate.com/blog/topic/research-reports) |

 2 min read

# 2.34 million Google Play Store apps requested at least one dangerous permission - here are the most notorious

[![Piotr Boiwka](https://www.pixalate.com/hubfs/T04HJ6UKU-U020R2VVALF-e2a0de641049-512.jpg)](https://www.pixalate.com/blog/author/piotr-boiwka)

 Written by [Piotr Boiwka](https://www.pixalate.com/blog/author/piotr-boiwka)

 Sep 24, 2021 11:30:00 AM

3 things to know

There is a rise of apps requesting additional access to the restricted data that may contain potentially sensitive information. Overall, [2.34 million Google Play Store](https://www.pixalate.com/blog/mobile-app-dangerous-permissions-report-h1-2021) apps requested at least one “dangerous permission” in the first half of 2021. This number increased by 3% YoY.

However, it is essential to remember that not all apps use potentially dangerous permissions to exploit user’s data. Instead, Pixalate is merely rendering an opinion that these facts may be suggestive of heightened risks to data subjects.

[![Download Report](https://no-cache.hubspot.com/cta/default/2364596/a86b039b-779c-420a-ab46-94cf243fc192.png)](https://cta-redirect.hubspot.com/cta/redirect/2364596/a86b039b-779c-420a-ab46-94cf243fc192)

### **Common 'dangerous permissions' among Google Play Store apps**

![](https://lh6.googleusercontent.com/wVtEt9xW8kDpI5NZw8LTmXCbpjTvzIr6RRQ3jLCqyQzylPEYtgzEKW6x7XjVC5xPw5ZlKYQLshD_Fz0x3KXXuTjRZFRItwuPCoud1fJZOlN4HazRawW_hPblwIXFbnvI8i8mE-F1=s0)

Nevertheless, most of the Google Play Store apps had at least one “dangerous permission.” The most common potentially nefarious permission was [Writing External Storage](https://www.pixalate.com/mobile-app-dangerous-permissions-report-h1-2021?hsCtaTracking=1e2a31f2-60b9-40e3-b7d7-59bb800bf3fc%7Ca7176605-5964-4d9c-8dd9-11e4ac19f7cd). It allows an app to read, upload, or delete personal files stored on the user’s device, which may contain sensitive information. 1.96 million (58%) Google Play Store apps had this permission.

Another notorious permission was access to the device’s [Fine Location](https://www.pixalate.com/mobile-app-dangerous-permissions-report-h1-2021?hsCtaTracking=1e2a31f2-60b9-40e3-b7d7-59bb800bf3fc%7Ca7176605-5964-4d9c-8dd9-11e4ac19f7cd). It gives the app the ability to pinpoint user location down to specific latitude & longitude (GPS) coordinates. This data can be so accurate that it allows the app to identify your house. Over 1 million (30%) Google Play Store apps had the ability to do so.

### **Camera Access increasingly common**

Other common potentially dangerous permissions are [Access Camera](https://www.pixalate.com/mobile-app-dangerous-permissions-report-h1-2021?hsCtaTracking=1e2a31f2-60b9-40e3-b7d7-59bb800bf3fc%7Ca7176605-5964-4d9c-8dd9-11e4ac19f7cd) and [Read Phone State](https://www.pixalate.com/mobile-app-dangerous-permissions-report-h1-2021?hsCtaTracking=1e2a31f2-60b9-40e3-b7d7-59bb800bf3fc%7Ca7176605-5964-4d9c-8dd9-11e4ac19f7cd). The first allows the app to record video and/or take photographs from the phone’s built-in camera. The number of apps requesting access to the camera increased YoY by 13%.

Read Phone State permission allows the app to see the user’s phone number, current cell network information, the status of any outgoing calls, etc. It was requested by over 628,000 (19%) of Google Play Store apps in H1 2021. Interestingly, it is the only dangerous permission studied that became less common compared to H1 2020. Overall, the number of apps requesting Read Phone State permission dropped by 6% YoY.

To learn more about [dangerous permissions](https://www.pixalate.com/blog/mobile-app-dangerous-permissions-report-h1-2021) in Google Play Store and current trends in the field, [download our report here for free](https://www.pixalate.com/mobile-app-dangerous-permissions-report-h1-2021?hsCtaTracking=1e2a31f2-60b9-40e3-b7d7-59bb800bf3fc%7Ca7176605-5964-4d9c-8dd9-11e4ac19f7cd).

[![Download Report](https://no-cache.hubspot.com/cta/default/2364596/a86b039b-779c-420a-ab46-94cf243fc192.png)](https://cta-redirect.hubspot.com/cta/redirect/2364596/a86b039b-779c-420a-ab46-94cf243fc192)

You can also [watch our webinar](https://www.pixalate.com/webinar-mobile-app-privacy-safety-update-h1-2021) on October 7, 2021, we will review this data - and other data about risk factors in the mobile in-app ecosystem — in greater detail.

**Disclaimer**

*The content of this report reflects Pixalate’s opinions with respect to the factors that Pixalate believes can be useful to the digital media industry. Any data shared is grounded in Pixalate’s proprietary technology and analytics, which Pixalate is continuously evaluating and updating. Any references to outside sources should not be construed as endorsements. Pixalate’s opinions are just that, opinions, which means that they are neither facts nor guarantees. It is important to also note that the mere fact that an app receives “dangerous permissions” (as defined by Google) does not necessarily mean that such app, or its publisher, is actually exploiting data. Instead, Pixalate is merely rendering an opinion that these facts may be suggestive of heightened risks to data subjects. Pixalate is sharing this data not to impugn the standing or reputation of any entity, person or app, but, instead, to report facts as they pertain to apps in the Google Play Store. Android and Google Play are trademarks of Google LLC. “*[*Android robot*](https://source.android.com/setup/start/brands)*” by Google LLC is licensed under *[*CC BY 3.0*](https://creativecommons.org/licenses/by/3.0/)*.*

### Search Blog

Search

### Follow Pixalate

<https://twitter.com/pixalateinc> <https://www.linkedin.com/company/pixalate> <https://www.facebook.com/pixalate>

### Subscribe to our blog

*By entering your email address and clicking Subscribe, you are agreeing to our [Terms of Use ](https://www.pixalate.com/terms)and [Privacy Policy.](https://www.pixalate.com/privacypolicy)

Previous Story

[← Pluto TV again tops the EMEA CTV Publisher Trust Indexes; Plex made the podium twice](https://www.pixalate.com/blog/pti-ctv-emea-august-2021)

[** ](https://www.pixalate.com/blog)

Next Story

[Pixalate Week in Review: September 20 - 24, 2021 →](https://www.pixalate.com/blog/september-24-2021-weekly-update)

## You May Also Like

These Stories on Mobile

[![](https://www.pixalate.com/hubfs/Blog%20Media/2026%20Covers%20and%20Images/OpenEPG%20landing%20page%20hero%20image.png) ](https://www.pixalate.com/blog/pixalate-launches-openepg-1.0-analytics-to-bring-linear-tv-grade-measurement-verification-to-open-programmatic-ctv)

[Mobile](https://www.pixalate.com/blog/topic/mobile)

### [Pixalate Launches OpenEPG™ 1.0 Analytics to Bring Linear TV-Grade Measurement & Verification to Open Programmatic CTV; OpenEPG DB™ Unlocks 12,875 Shows From 318 Channels Using Bidstream Bundle ID](https://www.pixalate.com/blog/pixalate-launches-openepg-1.0-analytics-to-bring-linear-tv-grade-measurement-verification-to-open-programmatic-ctv)

 Jun 16, 2026 8:33:30 AM |

 5 min read

[![](https://www.pixalate.com/hubfs/Blog%20Media/2026%20Covers%20and%20Images/United%20States%20%26%20GLOBAL%20-%20IVT%20Benchmarks%20-%20Q1%202026.png) ](https://www.pixalate.com/blog/q1-2026-ad-fraud-benchmarks-report-for-north-america)

[Mobile](https://www.pixalate.com/blog/topic/mobile)

### [Pixalate Releases Q1 2026 North America Invalid Traffic (IVT) & Ad Fraud Benchmarks: United States Mobile Apps See 32% Invalid Traffic (IVT) Rate](https://www.pixalate.com/blog/q1-2026-ad-fraud-benchmarks-report-for-north-america)

 Apr 29, 2026 8:00:01 AM |

 2 min read

[![](https://www.pixalate.com/hubfs/Blog%20Media/2026%20Covers%20and%20Images/UNITED%20KINGDOM%20%26%20GERMANY%20%26%20GLOBAL%20-%20IVT%20Benchmarks%20-%20Q1%202026.png) ](https://www.pixalate.com/blog/q1-2026-ad-fraud-benchmarks-report-for-emea)

[Mobile](https://www.pixalate.com/blog/topic/mobile)

### [Pixalate Releases Q1 2026 EMEA Invalid Traffic (IVT) & Ad Fraud Benchmarks: United Kingdom Connected TV (CTV) Most at Risk with 46% IVT Rate](https://www.pixalate.com/blog/q1-2026-ad-fraud-benchmarks-report-for-emea)

 Apr 29, 2026 8:00:00 AM |

 2 min read

**

### Subscribe to our blog

*By entering your email address and clicking Subscribe, you are agreeing to our [Terms of Use ](https://www.pixalate.com/terms)and [Privacy Policy.](https://www.pixalate.com/privacypolicy)

![pixalate-logo-red-small](https://www.pixalate.com/hs-fs/hubfs/2018NewTemplate/pixalate-logo-red-small.png?width=208&name=pixalate-logo-red-small.png "pixalate-logo-red-small")

**

 By entering your email address and clicking Subscribe, you are agreeing to our [Terms of Use](https://www.pixalate.com/terms) and [Privacy Policy](https://www.pixalate.com/privacypolicy)

Products

[Analytics](https://www.pixalate.com/products/analytics) [Blocking](https://www.pixalate.com/products/blocking) [Media Rating Terminal](https://www.pixalate.com/products/mrt) [Publisher Trust Indexes](https://www.pixalate.com/rankings/?group=app&reportId=publisherTrustIndex) [Seller Trust Indexes](https://www.pixalate.com/rankings/?group=app&reportId=publisherTrustIndex) [IoT Device Rankings](https://www.pixalate.com/rankings/?group=app&reportId=iotDeviceReach)

Resources

[Blog](https://blog.pixalate.com/) [Press](https://www.pixalate.com/press) [Careers](https://www.pixalate.com/jobs) [Team](https://info.pixalate.com/pixalate-leadership-team)

Contact

Email

[** sales@pixalate.com ](mailto:sales@pixalate.com)

[** privacy@pixalate.com ](mailto:privacy@pixalate.com)

US:

[** +1 888 749 2528 ](tel:+1%20888%20749%202528)

EU:

[** +44 (0)800 011 2050 ](tel:+44%20(0)800%20011%202050)

Slack:

[Join ATSAPI Slack Channel ](https://atsapi-pixalate.slack.com/join/shared_invite/zt-10dtow5cj-OEtlNr5yzJkrZMQUqcEEow#/shared-invite/email)

Offices

Global Offices

US

1775 Greensboro Station Place, Suite 425, McLean, VA 22102

UK

20 North Audley Street   
London, W1K 6WE, United Kingdom

EU

10 Earlsfort Terrace   
Dublin 2, D02 T380, Ireland

Singapore

10 Anson Road, #22-02 International Plaza, Singapore 079903

[![facebook](https://www.pixalate.com/hubfs/footer/icons/facebook.png) ](https://www.facebook.com/pixalate) [![x](https://www.pixalate.com/hubfs/footer/icons/twitter-x.png) ](https://twitter.com/pixalateinc) [![linkedin](https://www.pixalate.com/hubfs/footer/icons/linkedin.png) ](https://www.linkedin.com/company/pixalate) ![wechat](https://www.pixalate.com/hubfs/footer/icons/wechat.png) [![slack](https://www.pixalate.com/hubfs/footer/icons/slack.png) ](https://atsapi-pixalate.slack.com/join/shared_invite/zt-10dtow5cj-OEtlNr5yzJkrZMQUqcEEow#/shared-invite/email)

[Terms of Use](https://www.pixalate.com/terms) [Privacy Policy](https://www.pixalate.com/privacypolicy) [GDPR Compliance](https://www.pixalate.com/gdpr) Disclaimer

Copyright © 2025 Pixalate

[Back to top **](https://www.pixalate.com/blog/most-notorious-dangerous-permissions-apps-google-h1-2021#)

# Disclaimer

 Disclaimer: The content of this page reflects Pixalate’s opinions with respect to the factors that Pixalate believes can be useful to the digital media industry. Any proprietary data shared is grounded in Pixalate’s proprietary technology and analytics, which Pixalate is continuously evaluating and updating. Any references to outside sources should not be construed as endorsements. Pixalate’s opinions are just that - opinion, not facts or guarantees.

 Per the MRC, “'Fraud' is not intended to represent fraud as defined in various laws, statutes and ordinances or as conventionally used in U.S. Court or other legal proceedings, but rather a custom definition strictly for advertising measurement purposes. Also per the MRC, “‘Invalid Traffic’ is defined generally as traffic that does not meet certain ad serving quality or completeness criteria, or otherwise does not represent legitimate ad traffic that should be included in measurement counts. Among the reasons why ad traffic may be deemed invalid is it is a result of non-human traffic (spiders, bots, etc.), or activity designed to produce fraudulent traffic.”

**

**

*By clicking Download and entering your email address, you are agreeing to our [Terms of Use](https://www.pixalate.com/terms) and have read and acknowledge our [Privacy Policy](https://www.pixalate.com/hubfs/2024-08-20_Pixalate_Privacy_Policy.pdf).

*Copyright © 2025 Pixalate** *

* *

* *

* *

* *

* *

* *

* *

* *

* *

* *

* *

* *

* *

*

×

## Subscribe to the Pixalate Blog

The first step in ad fraud prevention.

Loading...

 By entering your email address and clicking Submit, you are agreeing to our [Terms of Use](https://www.pixalate.com/terms) and [Privacy Policy](https://www.pixalate.com/privacypolicy).

![pixalate-logo-white](https://www.pixalate.com/hubfs/Blog_V2_08_26_2016/logo/Pixalate_Logo_WHITE.png)

##### Contact Us12

Loading...

![pixalate-logo-white](https://www.pixalate.com/hubfs/Blog_V2_08_26_2016/logo/Pixalate_Logo_WHITE.png)

##### Download GSTI

Loading...

Schedule your demo today

Please complete all fields

Loading...

By entering your email address and clicking Submit, you are agreeing to our [Terms of Use](https://www.pixalate.com/terms) and [Privacy Policy](https://www.pixalate.com/privacypolicy).

*

* *

*

*