Skip to main content

Glossary

COPE

COPE (Corporate-Owned, Personally Enabled) is a device ownership model where the company buys and fully manages the phone but explicitly allows personal use. The employee gets one device for everything; IT keeps control of the work side and a lighter touch on the personal side.

How it works

COPE sits between full lockdown and BYOD. The device is enrolled as company-owned, so IT can enforce strong policies: mandatory passcode, encryption, OS update deadlines, app allowlists, factory reset protection. But the user is also allowed to sign in with a personal Google or Apple account, install consumer apps and keep private photos.

Android formalized this in Android 11 (2020) with "work profile on company-owned device". The work profile holds corporate apps and data; the personal side stays private but IT retains device-wide controls like blocking USB debugging or requiring a device passcode. Apple doesn't have a named COPE mode; teams get the same result with a supervised device and a permissive app policy.

Why it matters for a fleet

The appeal is one phone per person. No juggling two devices, higher adoption, and the company still owns the asset when someone leaves.

The catch is expectation management. Employees need to know upfront what IT can and can't see. Android's separation makes this concrete: the work profile is visible and wipeable by IT, the personal profile isn't. Put that in writing in the acceptable use policy.

COPE also changes the wipe conversation. When a device is lost, you can wipe everything, because the company owns it. That's not true in BYOD.

Cost-wise, budget the hardware plus a small support overhead for personal-use questions. Storage fills up faster when someone's personal photo library shares the device with the field app, so pick models with 128 GB or more.

How Appaloosa handles it

Appaloosa enrolls company-owned Android devices with a work profile, which gives the COPE split natively: corporate apps from Managed Google Play in the work side, device-level security policies on top, and a selective or full remote wipe depending on the situation. On iOS and iPadOS, supervised enrollment via Apple Business Manager provides the equivalent. The available modes are compared on the Mobile Device Management page.

Explore

See the full platform

Enrollment, apps, security, remote support: all in one place.

Explore Appaloosa

Ready to try Appaloosa? Start free

Frequently asked questions

Can IT see personal apps on a COPE device?
On Android with a work profile on a company-owned device, IT sees the work profile in full and only a limited set of device-level facts about the personal side, such as OS version or whether a passcode is set. Personal app content stays private.
COPE or BYOD: which is cheaper?
BYOD avoids hardware purchases but adds support variance and legal work. COPE costs the device (roughly 300 to 900 euros per unit depending on model) but gives IT full control and a predictable, replaceable fleet. Most regulated industries end up preferring COPE.
Can a COPE device be wiped completely?
Yes. Because the company owns it, a full factory reset is allowed and legally straightforward. Most teams still prefer a selective wipe of the work profile when an employee leaves on good terms, then a full reset before reassigning the hardware.