App Lock (com.apple.app.lock)

com.apple.app.lock

The payload that configures a device to run a single app.

iOS(6.0)tvOS(10.2)
Branch: release

Settings (22)

SettingTypeRequiredDefaultManual InstallSupported OS
App
App
A dictionary that contains information about the app.
3 subkeys
dictionaryrequired—
✓Yes
iOS (6.0+)tvOS (10.2+)
└─
Identifier
Identifier
The app's bundle identifier.
stringrequired—
✓Yes
iOS (6.0+)tvOS (10.2+)
└─
Options
Options
A dictionary of options that the user can't change.
13 subkeys
dictionaryoptional—
✓Yes
iOS (7.0+)
└─ └─
Disable touch
DisableTouch
If `true`, the system disables the touch screen. In tvOS, it disables the touch surface on the Apple TV Remote.
booleanoptionalfalse
✓Yes
iOS (6.0+)tvOS (10.2+)
└─ └─
Disable device rotation
DisableDeviceRotation
If `true`, the system disables device rotation sensing.
booleanoptionalfalse
✗No
└─ └─
Disable volume buttons
DisableVolumeButtons
If `true`, the system disables the volume buttons.
booleanoptionalfalse
✗No
└─ └─
Disable ringer switch
DisableRingerSwitch
If `true`, the system disables the ringer switch. When disabled, the ringer behavior depends on what position the switch was in when it was first disabled.
booleanoptionalfalse
✗No
└─ └─
Disable sleep wake button
DisableSleepWakeButton
If `true`, the system disables the sleep/wake button.
booleanoptionalfalse
✗No
└─ └─
Disable auto lock
DisableAutoLock
If `true`, the device doesn't automatically go to sleep after an idle period.
booleanoptionalfalse
✓Yes
iOS (6.0+)tvOS (10.2+)
└─ └─
Enable VoiceOver
EnableVoiceOver
If `true`, the system enables VoiceOver.
booleanoptionalfalse
✓Yes
iOS (6.0+)tvOS (10.2+)
└─ └─
Enable Zoom
EnableZoom
If `true`, the system enables Zoom.
booleanoptionalfalse
✓Yes
iOS (6.0+)tvOS (10.2+)
└─ └─
Enable Invert Colors
EnableInvertColors
If `true`, the system enables Invert Colors.
booleanoptionalfalse
✓Yes
iOS (6.0+)tvOS (10.2+)
└─ └─
Enable AssistiveTouch
EnableAssistiveTouch
If `true`, the system enables AssistiveTouch.
booleanoptionalfalse
✗No
└─ └─
Enable Speak Selection
EnableSpeakSelection
If `true`, the system enables Speak Selection.
booleanoptionalfalse
✗No
└─ └─
Enable Mono Audio
EnableMonoAudio
If `true`, the system enables Mono Audio.
booleanoptionalfalse
✗No
└─ └─
Enable Voice Control
EnableVoiceControl
If `true`, the system enables Voice Control.
booleanoptionalfalse
✓Yes
iOS (13.0+)
└─
User enabled options
UserEnabledOptions
A dictionary of user-editable options.
5 subkeys
dictionaryoptional—
✓Yes
iOS (7.0+)
└─ └─
Voice Control
VoiceControl
If `true`, the system allows the user to toggle Voice Control.
booleanoptionalfalse
✓Yes
iOS (13.0+)
└─ └─
VoiceOver
VoiceOver
If `true`, the system allows the user to toggle VoiceOver.
booleanoptionalfalse
✓Yes
iOS (6.0+)tvOS (10.2+)
└─ └─
Zoom
Zoom
If `true`, the system allows the user to toggle Zoom.
booleanoptionalfalse
✓Yes
iOS (6.0+)tvOS (10.2+)
└─ └─
Invert Colors
InvertColors
If `true`, the system allows the user to toggle Invert Colors.
booleanoptionalfalse
✓Yes
iOS (6.0+)tvOS (10.2+)
└─ └─
AssistiveTouch
AssistiveTouch
If `true`, the system allows the user to toggle AssistiveTouch.
booleanoptionalfalse
✗No

Apple MDM & DDM Policy Explorer

Explore the full catalogue of Apple Mobile Device Management (MDM) and Declarative Device Management (DDM) policies for macOS and iOS. Search, filter, and reference policy keys for use with Microsoft Intune, Jamf, or any standards-compliant MDM solution.

Reference: policy categories & common keys

Policy categories

  • Configuration Profile
  • Declarative Configuration
  • Declarative Activation
  • Declarative Asset
  • Declarative Management

Common policy keys

  • com.apple.wifi.managed – Wi-Fi network configuration
  • com.apple.vpn.managed – VPN configuration
  • com.apple.applicationaccess – App and feature restrictions
  • com.apple.security.pkcs1 – Certificate (PKCS#1) payload
  • com.apple.security.pkcs12 – Identity certificate (PKCS#12) payload
  • com.apple.security.scep – SCEP certificate enrolment
  • com.apple.mail.managed – Mail account configuration
  • com.apple.eas.account – Exchange ActiveSync account
  • com.apple.MCX – Managed Client (macOS) preferences
  • com.apple.MCX.FileVault2 – FileVault 2 disk encryption
  • com.apple.dock – macOS Dock configuration
  • com.apple.screensaver – Screensaver configuration
  • com.apple.loginwindow – macOS login window configuration
  • com.apple.systempolicy.managed – Gatekeeper / system policy
  • com.apple.systempreferences – System Preferences pane restrictions
  • com.apple.SoftwareUpdate – Software update behaviour
  • com.apple.TCC.configuration-profile-policy – Privacy Preferences Policy Control (PPPC)
  • com.apple.notificationsettings – Per-app notification settings
  • com.apple.webcontent-filter – Web content filter
  • com.apple.dnsSettings.managed – DNS settings (DoH / DoT)
  • com.apple.relay.managed – Network relay configuration
  • com.apple.extensiblesso – Extensible Single Sign-On
  • com.apple.configuration.passcode.settings – DDM: passcode policy
  • com.apple.configuration.softwareupdate.enforcement.specific – DDM: enforced software update
  • com.apple.configuration.services.configuration-files – DDM: service configuration files
  • com.apple.configuration.management.status-subscriptions – DDM: status subscriptions
  • com.apple.activation.simple – DDM: simple activation predicate
  • com.apple.management.organization-info – DDM: organization information