Thank you Ross for clarifying :)
Regarding Question 1: When using the APP, you need to set "IntuneMAMUpn" (unless this requirement changed) and this is the source of a lot of issues ... Once you set this parameter there are issues with information flowing to other Apps or trying to add a personal account to Outlook.
In our case, we have an APP for unmanaged devices including all Office apps and we do not allow to copy data outside of the Office apps.
When a user on a managed device (having IntunMAMUpn set) opens a mail from Yammer with a link and clicks on it, Yammer App opens and a message is displayed "Action not allowed ..." Although there is no APP for managed devices, both Outlook and Yammer app are installed via Company Portal and IntuneMAMUpn is set on all Office apps.
When I recreate exactly the same ACP for Outlook without "InuneMAMUpn", it works perfectly on a managed device, however I cannot apply the APP to the unmanaged device for the same user.
I was hoping to get rid of the IntuneMAMUpn and the requirement to install apps from the company portal (on managed devices) with these new improvements, but I guess it is for a next version.
Thank you,
Koen