AppDefender.dev console is open for Client onboardinghello@appdefender.dev
Request access

App Security · AppDefender.dev

Offline Threat Defender

Signed cached policy and local detection when the radio is down.

Offline Threat Defender is a first-class module inside the Launch Security Gate. When the network is down, a signed cached policy plus local sensors still return ALLOW, RESTRICT, or BLOCK. Waiting for the cloud is not fail-open.

Signed cached policy

Local detection with no network

No fail-open on the cloud

BLOCK cannot be overridden later

Isolated environment caches

Default failMode BLOCK

What it does

Offline Threat Defender on the launch path

Offline Threat Defender runs on every launch. AppDefender sensors score the handset against a signed cached policy when the radio is down. React Native UI is not trusted until the gate returns a decision.

The same BLOCK rule holds on a rooted or hooked handset with a valid access token. Network restore does not reopen a blocked launch. Sandbox and Production caches never mix.

Super Admin enables the environment. Client Admin sees offline FAILs in ThreatDesk for that Client only. Fail mode is operator policy — default is BLOCK.

What it scores

Signals this module is built for

  • Signed cached ThreatDesk policy on the device
  • Local root, jailbreak, emulator, and hooking sensors
  • No fail-open while waiting for the cloud
  • BLOCK still wins over a valid token or cookie
  • Isolated Sandbox and Production caches
  • Operator failMode — default BLOCK

How it runs

Detect, decide, enforce

Cache

After an honest online launch, the device holds a signed policy for that environment only.

Score offline

Local AppDefender and CodeDefender sensors run against the cache. No API call is required.

Enforce

ALLOW, RESTRICT, or BLOCK. A later network path cannot override BLOCK.

Operators

Who owns the control

Super Admin

Enables Offline Threat Defender per environment. Owns default failMode.

Client Admin

Reviews offline FAILs. Cannot copy a Production cache into Sandbox.

Other App Security modules

Read the product page, not a copy here

All modules