Pixel 6, Android 15, GrapheneOS Build 2025020200
Big thanks for the instructions. After trying this method a couple of times with no success I finally got everything to work by giving Company Portal Device admin in my work profile by going to Settings>Security & privacy>More security & privacy > Device admin apps and then toggling the work profile Company Portal to on.
(Props to dreamland in this thread for pointing me in the right direction https://discuss.grapheneos.org/d/19131-outlook-intune-company-portal)
So my order of operations was
-Install Shelter and set up a work profile
-Install Google Play services in work profile using the Graphene App store
-Migrate Aurora from Personal to Work profile
-Install MS Company Portal to work profile from Aurora
-Give Company profile Device Admin privileges AND turn on exploit protection compatibility mode (App info>Exploit Protection)
-Log in to Company Portal using your work credentials (I didn't have to follow the Company Access setup after)
-Install Outlook, Teams, etc from Aurora and log into your MS apps.
Playing around with it afterwards, it seems like I can then turn off the admin privileges and exploit protection compatibility mode or even disable the Company Portal with no impact on the other MS apps. I expect I might need to toggle these back on if something syncs or updates.