My policy is set to Prevent Save As = Yes, with only OneDrive for Business and SharePoint selected.
I selected the Outlook, OneDrive and other Office apps as the targeted applications. I have created the policy in 'Intune App Protection'. My goal is to allow a user to access email, OneDrive and sharepoint content on their unmanaged mobile device with some restrictions achieved through an Intune policy. Problem: When the user logs into the OneDrive app they are able to download the files to their local device and open the files in whatever app they want, not just office apps as specified by the policy.