Last updated: September 2, 2026
iOS DDM Safari Extension Settings
The Safari Extension Settings profile allows administrators to manage Safari extensions on managed iOS devices. It enables organizations to control which extensions are allowed, configure extension behavior, manage private browsing access, and define domain-specific permissions for enhanced security and compliance.
Profile Description
Extension Identifier: Specifies the unique identifier (bundle ID) of the Safari extension to which the configuration applies.

Extension State: Specifies the operational state of the extension. You can allow users to manage the extension (Allowed), force it to remain enabled (Always On), or disable it (Always Off).


Private Browsing State: Specifies whether the extension is allowed, always enabled, or always disabled when Safari is used in Private Browsing mode.
Allowed Domains: Specifies the list of domains where the extension is permitted to run. The extension is active only on the configured domains.
Denied Domains: Specifies the list of domains where the extension is blocked from running, even if it is otherwise allowed.
-