I had an interesting question the other day about “how do you handle the user who hasn’t updated their app when you are cert pinning and you know the cert in the app is about to expire.”

In the past, we had always released apps enough times that anyone who used the app would have an update with updated pinned certs, so we never had to worry about this.

Have any of you iOS developers had to deal with this? Which approaches have you used and found sufficient?

