Content Providers, direct URI access, and the Android
API in general allow arbitrary manipulation of data. To en-
force access control policies on a granular level, i.e. for
single data items, Constroid must describe how a data item
is dened. It must ensure that all operations performed on
a data item can be monitored, guarantee that a policy is
uniquely associated with its dataitem, and that it is updated consistently.