Understanding Appdome Live Update

Last updated September 8, 2026 by Appdome

What is Appdome Live Update?

Appdome Live Update allows you to remotely update selected Appdome protection settings in live, already-deployed mobile applications without rebuilding or republishing the app.

Traditionally, changing protection policies or configuration values required creating a new app build and distributing it through the app stores. With Live Update, eligible settings can be updated remotely, allowing organizations to respond more quickly to changing security requirements, operational needs, and emerging threats while reducing release overhead.

Live Update must be enabled and licensed for your account and is available only for builds created with a supported Appdome Version. Live Update applies to a specific deployed build. Builds created with unsupported Appdome Versions cannot be configured using Live Update.

Welcomepopup3

Why Use Appdome Live Update?

Use Live Update when you need to update supported Appdome configurations after your application has already been deployed.

Common scenarios include:

  • Rotating certificates or cryptographic material.
  • Updating trusted domains or endpoints.
  • Adjusting backend signaling configurations.
  • Changing enforcement behavior for supported protections.
  • Responding to newly discovered threats without waiting for the next application release.

Live Update Capabilities

Policy Configurations

Policy Configurations include items such as certificates, cryptographic keys, secrets, hosts, APIs, and other supported configuration values used by Appdome protections.

When these values change, supported configurations can be updated through Live Update without rebuilding or redistributing the application.

Certificates

Trust Lists

Trust Lists define approved entities that Appdome protections use during runtime, such as trusted domains, endpoints, applications, and other supported resources.

As your environment changes, supported Trust List entries can be updated remotely through Live Update, eliminating the need to publish a new version of the application.

Trust Lists

Backend Signaling

Some Appdome protections exchange security information with backend services through identifiers, headers, payloads, and other signaling mechanisms.

Live Update allows supported backend signaling configurations to be updated remotely, helping keep backend integrations aligned with changing business and security requirements.

Mobilebot:idanchor Selected Api Signals

In-App Data & Enforcement

Many Appdome protections include configurable enforcement actions, user messages, detection behavior, and other runtime policies.

Live Update allows eligible protection settings to be updated remotely, enabling organizations to adjust their protection posture without rebuilding or republishing the application.

Enforcement Modules

Configure Live Update Entitlements

Live Update entitlements are assigned to individual team members through the Team Management settings in Appdome.

To configure Live Update entitlements:

  1. Go to Team Management and select the team member whose entitlements you want to configure.
  2. Open the user’s Entitlements settings.
  3. Locate the Live Update entitlements and enable the appropriate permissions:
    • Configure Live Updates – Allows the user to prepare, edit, and submit Live Updates for approval.
    • Approve Live Updates – Allows the user to review and approve or reject submitted Live Updates.
  4. Save the changes.

Learn more about Appdome Teams Roles Configuration and Appdome Teams Entitlements.

Segregation of Duties

Every Live Update is gated before it reaches production. The user who configures and submits a Live Update cannot approve the same update. A different user with the Approve Live Updates entitlement must approve it.
A user may have both Live Update entitlements but cannot configure and approve the same Live Update. Appdome enforces this separation of duties.

Live Update Workflow

Configure → Review Changes → Submit for Approval → Approve / Reject → Publish

Live Update follows a controlled workflow that separates configuring and publishing an update from approving it. The Requester configures and submits the Live Update, while the Approver reviews and approves or rejects the request.

Configure and Submit a Live Update

  1. Go to Manage and select the deployed build you want to update.
  2. In Remote policy management, locate the configuration you want to change and click the Manage icon.
    1
  3. Make the required update, for example, updating a certificate, and click Done.
    2
  4. Click Submit for Approval.
    3
  5. Review the pending changes and click Continue.
    4
  6. Enter a Reason for update, select an Approver, and click Submit for Approval.
    5

The Live Update enters the Pending Approval state. While the request is pending, the Requester can withdraw it if necessary.

Approve or Reject a Live Update

The Live Update enters the Pending Approval state. The Approver must review the request within 3 hours. If no action is taken within this period, the approval request expires. While the request is pending, the Requester can withdraw it if necessary.

  1. The Approver logs in to Appdome and opens Manage. The submitted Live Update appears with a Pending Approval status. Click Review to open the request.
    7
  2. Review the Live Update details and pending changes, then select Approve Live Update or Reject.
    8
  3. Review the Live Update and choose one of the following:
    Approve – Acknowledge the impact of the Live Update and click Approve. The update moves to Ready to Publish.
    9
    Reject – Click Reject, enter a reason for the rejection, and confirm. The Requester receives a notification with the rejection and the reason provided
    9 Reject

Publish an Approved Live Update

Approval does not automatically publish the Live Update. After approval, the Requester completes the publishing process.

  1. The Requester receives a notification that the Live Update was approved. Click Publish Live Update to open the approved update.
  2. Review the approved update and click Publish.
    11
  3. Appdome publishes the Live Update. When publishing is complete, the update takes effect on the deployed app.

Note: The Requester cannot approve their own Live Update. A different user with the Approve Live Updates entitlement must approve the request. A user may have both the Configure Live Updates and Approve Live Updates entitlements but cannot perform both responsibilities for the same Live Update.

Live Update Audit and Appdome Vault™

Live Update activity is recorded in Appdome Vault™ to provide audit and compliance visibility throughout the update lifecycle. Recorded events include:

  • Submitted
  • Approved
  • Rejected
  • Withdrawn
  • Expired
  • Published
  • Failed

Where applicable, Vault provides details about the Live Update and the changes associated with the event.

Vault

Learn more about Appdome Vault™.

Related Articles:

If you have any questions, please send them our way at support.appdome.com or via the chat window on the Appdome platform.

Thank you!

Thanks for visiting Appdome! Our mission is to secure every app on the planet by making mobile app security easy. We hope we’re living up to the mission with your project. If you don’t already have an account, you can sign up for free.

Appdome

Want a Demo?

Cyber Release Management™

AlanWe're here to help
We'll get back to you in 24 hours to schedule your demo.