Library / SDK
Lakr233/Asspp avatar
Lakr233/Asspp

Asspp: a multi-region App Store client for iOS and macOS

The App Store for your multi-account eco system.

5,878 stars636 forksSwiftMIT

At a glance

What is it?
Asspp manages several Apple IDs across different storefronts and downloads signed IPAs from Apple's servers. It is a Swift app for iOS 17 and macOS 15, and its own README warns that the protocol it shares with ipatool may stop working.
Who is it for?
Asspp suits people who already juggle several regional Apple IDs and want to pull signed IPAs onto an iOS 17 or macOS 15 device without swapping system accounts. It is not for anyone unwilling to use a secondary Apple ID, and not for anyone who needs a tool with a support commitment: the README states that if the protocol breaks again, the project may not be able to provide further fixes.
Can I use it commercially?
Yes. MIT is a permissive licence: you can use, modify and sell software built on it, as long as you keep its copyright and licence notices.
Is it still maintained?
Yes. The repository last received commits 76 days ago.
What is it written in?
Mainly Swift, according to GitHub's language statistics.

Answers come from the project's GitHub data, last synced on September 30, 2026, and from our analysis. They are not legal advice.

Editorial analysis

What Asspp does that the system App Store will not

The App Store ties your browsing to whichever Apple ID is signed in on the device. Checking a price in the Japanese storefront means signing out, signing in, and often dealing with payment or region prompts. Asspp separates the two: the README describes it as a client for users who manage multiple Apple IDs across different countries and regions, where you browse a region and the app picks the matching account for you. The project also downloads official signed IPAs from Apple's servers and can surface older releases of an app. That combination is the reason people look for it. The target user is someone with accounts in more than one storefront, or someone who wants an IPA file for backup or sideloading and does not want to run a desktop tool to get it. If you have a single Apple ID and never leave your home storefront, the app adds risk without adding capability.

How Asspp talks to Apple, and why the README hedges

Asspp is a Swift application built as an Xcode project, with Asspp.xcodeproj and Asspp.xcworkspace at the repository root and the source under Asspp/. It runs natively on iOS and macOS rather than wrapping a web view. The README states that Asspp uses the same underlying communication protocol as ipatool, the command line tool it credits in its acknowledgments. That is the whole architecture in one sentence: the app authenticates an Apple ID, queries App Store APIs for storefront and version data, and requests a signed IPA, then stores it locally. Two acknowledgments, ipatool-ios and localhost.direct, are listed as no longer used, so the current code does not depend on them. The Special Notice is the part worth reading twice. It attributes past outages of the protocol to community speculation, explicitly marked unverified: widespread usage tripping Apple's risk controls, protocol changes after an iCloud security fix, and stricter front-end gateway validation. The README then says that if the protocol becomes invalid again, the project may not be able to provide further fixes. Treat that as a design constraint, not marketing modesty.

Installing Asspp on macOS and running it once

The macOS path is the shortest. The README says to download the latest .zip from Releases, unzip it, and move Asspp.app to your Applications folder. Requirements are macOS 15.0 or later and an Apple ID, because the app has to communicate with App Store APIs. Gatekeeper will block the first launch, and the README documents the two ways around it. Control-click the app in Finder and choose Open, then Open again in the dialog; or open System Settings, go to Privacy & Security, find the blocked app and click Open Anyway, entering an administrator password if asked. The README recommends verifying the release details before trusting the app.

bash
open Asspp.app

That command launches the app from the folder where you unzipped it, or from Applications once you have moved it there. On first run it will fail with the developer-cannot-be-verified message, which is expected for an app distributed outside the Mac App Store. On iOS the README gives two routes. The recommended one is to fork the repository and let the bundled workflow build and sign the app with your own developer certificate, which yields an OTA installation link; the setup steps live in Resources/Document/FORK_AUTOBUILD_GUIDE.md. The manual route is to download the latest .ipa from Releases and sign it yourself with SideStore, AltStore, TrollStore or another signing service. iOS 17.0 or later is required either way.

The account-ban warning is the real cost of entry

Most tools bury their risk section. Asspp puts it in bold in the README. Two warnings matter. First, treat your device GUID as a highly sensitive password and never share it. Second, do not use your primary Apple ID. The README advises a secondary or burner account, and explains why: if Apple bans the account, it could result in an unremovable Activation Lock on your device. The README is careful to say there are no confirmed cases of this happening and that no guarantees can be made either way. That is an honest framing of an unquantified risk, and it should shape how you evaluate the app. A banned burner account is an inconvenience. A locked device is not. There is a second failure mode with no workaround: the protocol itself. If Apple changes request validation again, Asspp stops working, and the README states the project may not be able to fix it. There is no fallback path documented, no alternate backend, and no offline mode. Asspp is also the wrong tool if you need an iPad-only or Android workflow, and the disclaimer limits the project to educational and research purposes.

Asspp against ipatool: same protocol, different shape

The closest comparison is ipatool, which Asspp credits and whose protocol it shares. The difference is not the backend, it is the interface and the platform. ipatool is a command line tool: you script it, run it on a desktop, and pipe the resulting IPA wherever you want. Asspp is a native GUI application that runs on the device itself, on iOS 17 or macOS 15, with account switching and region browsing as first-class interactions rather than flags. If your workflow is a CI job that fetches a specific app version on a schedule, ipatool fits better, because a GUI on a phone is not a build step. If your workflow is a person on an iPhone who wants to check a Japanese storefront and pull an IPA without touching a laptop, Asspp is the only one of the two that runs there. The shared protocol also means they share the same fragility: an Apple-side change that breaks one is likely to break the other. Choosing between them does not diversify that risk.

Licence, releases and what maintenance actually looks like

Asspp is MIT licensed, with the LICENSE file at the repository root. MIT is permissive: you can use, modify and redistribute the code, including in closed products, provided the copyright notice and permission notice are retained. It says nothing about Apple's terms of service, which is a separate question the licence cannot answer, and nothing here is legal advice. On cadence, the releases tell a clearer story than any claim about activity: 4.1.1 on 2026-02-20, 4.2.0 on 2026-06-12, and 4.2.1 on 2026-06-14. The last push to the repository was on 2026-07-16, so the project is not dormant, but the release gaps are uneven and the README's own warning about future protocol fixes means an upgrade can be a one-way door. The upgrade cost is low in mechanical terms, a new .zip or .ipa from Releases, and high in operational terms if a release lands after an Apple-side change and you have already migrated your accounts to it.

Editorial conclusion

Asspp suits people who already juggle several regional Apple IDs and want to pull signed IPAs onto an iOS 17 or macOS 15 device without swapping system accounts. It is not for anyone unwilling to use a secondary Apple ID, and not for anyone who needs a tool with a support commitment: the README states that if the protocol breaks again, the project may not be able to provide further fixes. Before adopting it, read the Special Notice section in full, confirm which install path you will use (fork-and-sign or a downloaded .ipa), and check that your macOS build is 15.0 or later.

Frequently asked questions

How do I use Asspp?

Install it on iOS 17 or macOS 15, sign in with an Apple ID, browse the storefront you want, and let the app match the account to that region. From there you can download signed IPAs and look for older versions of an app. The README recommends a secondary or burner Apple ID rather than your primary one.

What is Asspp?

Asspp is a client for managing multiple Apple IDs across different App Store countries and regions, and for downloading signed IPAs from Apple's servers. It is a native Swift app for iOS and macOS, and it uses the same underlying communication protocol as ipatool.

Does Asspp support installing on iOS and macOS?

Yes. The README lists iOS 17.0 or later and macOS 15.0 or later as requirements. On iOS you either fork the repository to build and sign the app with your own certificate, or download the latest .ipa from Releases and sign it with a tool such as SideStore, AltStore or TrollStore.

Why does macOS block Asspp when I open it?

The app is distributed outside the Mac App Store, so Gatekeeper shows a developer-cannot-be-verified message. The README documents two fixes: Control-click the app in Finder and choose Open, then Open again, or go to System Settings, Privacy & Security and click Open Anyway for the blocked app.

Is it safe to use my main Apple ID with Asspp?

The README advises against it and recommends a secondary or burner account. It warns that if Apple bans the account, it could result in an unremovable Activation Lock on your device, while noting there are no confirmed cases of this happening and that no guarantees can be made.

Official sources

  1. Issues
  2. Lakr233/Asspp on GitHub
  3. License: MIT
  4. README
  5. Releases
Add this badge to your README

If you maintain this project, the badge below links readers to this analysis and shows its maintenance status from the daily GitHub snapshot. Paste the markdown into your README; add ?metric=license or ?metric=stars to the image URL for a different field.

Add this badge to your README

markdown
[![Hysen Labs](https://hysenlabs.com/badge/lakr233-asspp.svg)](https://hysenlabs.com/projects/lakr233-asspp)