Google Reportedly Directs OEMs to Push Android Security for at Least 2 Years

Advertisement
By Jagmeet Singh | Updated: 25 October 2018 14:13 IST
Highlights
  • Google has reportedly brought a new contract for OEMs
  • The new contract is designed to mandate Android security updates
  • It is already applied to 75 percent of "security mandatory models"

Devices with over 100,000 users are reportedly obligated to receive 4 security updates in one year

Google was spotted to have mandated two years of Android security updates for all popular smartphones and tablets. The new development is reportedly a part of the contract that device manufacturers need to sign to use the Android operating system on their hardware. It comes months after Android Security Head David Kleidermacher at developer-focused Google I/O 2018 revealed the modification of OEM agreements to include revisions related to regular security patches. Interestingly, the search giant already offered its Project Treble to help manufacturers easily push new software updates to their Android devices.

According to the terms of the new contract, as obtained by The Verge, any Android device launched after January 31, 2018 that has over 100,000 users is required to receive security updates for at least two years and at least four security updates within one year of its launch. It is reported that as of July 31, the new security update requirements were applied to 75 percent of a manufacturer's "security mandatory models", though this will be expanded to all security mandatory models starting January 31, 2019.

It is worth pointing out that the manufacturers won't be obligated to provide each security update to their devices. However, Google has reportedly added the condition of "at least four updates" within the first year after the launch of the device to ensure that all the major vulnerabilities will be fixed. The company didn't specify the number of updates required in the second year, though. Having said that, the Android device makers are also required to protect the security mandatory models against all vulnerabilities identified over 90 days ago - irrespective of how many updates they've already pushed, as per the reported contract.

Advertisement

If a manufacturer fails to follow the terms specified in the reported contract, it is said that Google could withhold approval of future devices from the same manufacturer. This would encourage all the major device makers to honour the terms.

Advertisement

The reported terms initially appear in Google's EU licensing agreement that is designed for Android phones and tablets using Google apps and services in the European Union. However, Google could roll them out in the global markets to limit security issues on Android devices.

A Google spokesperson didn't explicitly confirm whether the reported contract will be valid for devices available in the global markets though in a statement to The Verge said 90-day patches were a "minimum security hygiene requirement" and stated that "the majority of the deployed devices for over 200 different Android models from over 30 Android device manufacturers are running a security update from the last 90 days."

Advertisement

During I/O 2018 in May, Android Security's Klidermacher reportedly hinted at the development by revealing a modification in Google's OEM agreements to include the requirement of regular security patches. "We've also worked on building security patching into our OEM agreements," Kleidermacher was quoted as saying.

 

For details of the latest launches and news from Samsung, Xiaomi, Realme, OnePlus, Oppo and other companies at the Mobile World Congress in Barcelona, visit our MWC 2025 hub.

Further reading: Android Security, Android, Google
Advertisement

Related Stories

Popular Mobile Brands
  1. Nothing Phone 4a, Phone 4a Pro Launched in India at This Price
  2. Nothing Phone 4a vs Phone 3a: Price in India, Specifications Compared
  3. Moto Watch Review: The Best Smartwatch Under Rs. 6,000 in 2026?
  4. Nothing Phone 4a Pro Teaser Hints at the Presence of This Phone 3 Feature
  5. Realme Narzo Power 5G With 10,001mAh Battery Launched in India: Price, Specifications
  6. Just a Day After Releasing GPT-5.3 Instant, OpenAI Teases GPT-5.4 Model
  7. Vivo T5x 5G AnTuTu Score Exceeds 1 Million Points, Will Launch in India Soon
  8. Nothing Phone 4a vs Motorola Edge 70: Price in India, Features Compared
  9. Infinix Note 60 Ultra With Pininfarina Design Launched at MWC 2026
  10. WhatsApp Plus Could Soon Let You Pay to Access These Features
  1. OpenAI’s Codex App Is Now Available on Windows, Can Be Downloaded via Microsoft Store
  2. OpenAI Teases GPT-5.4 AI Model Launch Just a Day After Releasing GPT-5.3 Instant
  3. Nothing Headphone (a) Launched With Adaptive ANC, Customisable Controls: Price, Specifications
  4. Granny OTT Release Date: When and Where to Watch the Village Mystery Thriller Online?
  5. Andhaka OTT Release: Where to Watch the Telugu Drama-Thriller Online?
  6. Pookie OTT Release: When and Where to Watch Vijay Antony’s Romantic Drama Online?
  7. WhatsApp Plus Paid Subscription Reportedly in Development With Additional Customisation Options, Up to 20 Pinned Chats
  8. Samsung Patent Hints at Potential Clamshell-Style Foldable With Two Cover Displays
  9. Google Introduces Gemini 3.1 Flash-Lite as Its Fastest and Most Cost-Efficient AI Model
  10. Nothing Phone 4a Launched in India With Glyph Bar Interface Alongside Nothing Phone 4a Pro: Price, Specs
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.