Overview
The app_device_integrity package simplifies app attestation by leveraging Apple's App Attest and Google's Play Integrity to generate secure tokens. These tokens can be sent to your server for decryption and verification, ensuring reliable device identity and integrity. It streamlines integration with platform-specific security features, reducing boilerplate code and improving trust in device access. Designed for developers focused on securing app environments and preventing tampering or spoofing.
Use cases
- Securing backend authentication
- Preventing app cloning
- Verifying legitimate device access
- Enhancing fraud detection
- Protecting premium content access
- Enabling secure API calls
Key features
- Cross-platform support (iOS & Android)
- Integration with App Attest and Play Integrity
- Token generation for server verification
- Minimal setup complexity
- Secure device attestation
- Server-side validation readiness
Suitable for
- Apps requiring strong device verification
- Services protecting sensitive data
- Subscription-based or premium apps
- Fraud prevention systems
- Backend services needing trusted device signals
Considerations
- Requires server-side token decryption
- Dependent on platform-specific services
- Limited to iOS and Android
- May require additional server infrastructure
- Not suitable for offline-only apps
- Needs proper error handling for device compatibility