Default SDK settings apply across Workspace ONE UEM and wrapped apps, providing a unified user experience on devices. Since the configured SDK settings apply to all Workspace ONE UEM and wrapped apps by default, configure the default SDK profile with the entire Workspace ONE UEM and wrapped app suite.

Not all Workspace ONE UEM apps support all available default SDK profile settings. Please keep this in mind while reading this example. Review the SDK features matrix In the case that

The recommendations provided apply to an app suite that includes:

  • Workspace ONE Web
  • Workspace ONE Content
  • Enrolled devices
  • Workspace ONE UEM or wrapped apps
  • SDK settings


  1. Navigate to Groups & Settings > All Settings > Apps > Settings and Policies > Security Policies.
  2. Set Authentication Type to Disabled and SSO to Enabled to open apps without prompting the end user to enter credentials.
  3. Set Offline Access to Enabled so that end users can open and use Workspace ONE UEM and wrapped apps when disconnected from Wi-Fi. Offline Workspace ONE UEM apps cannot perform downloads, and end users must return online for a successful download. Once enabled, configure the following:
    Setting Description
    Maximum Period Allowed Offline Choose an acceptable time frame for offline access before requiring the device to return online for a compliance and security check with Workspace ONE UEM.
  4. Set Compromised Protection to Enabled to override MDM protection.
    App level Compromised Protection blocks compromised devices from enrolling, and enterprise wipes enrolled devices that report a compromised status.
  5. Save your settings.
  6. Navigate to Groups & Settings > All Settings > Apps > Settings and Policies > Settings.
  7. Set Branding to Disabled to maintain the Workspace ONE UEM brand throughout your app suite.
  8. Save your settings.