On-device deep learning (DL) has gained popularity in mobile apps for offline model inference and user privacy preservation.However, it introduces vulnerabilities related to model-stealing attacks and intellectual property infringement.A proposed solution called THEMIS lifts the read-only restriction of on-device DL models and protects the model owner's intellectual property.Experimental results and investigation of real-world DL mobile apps demonstrate the practicality and effectiveness of THEMIS.