Having worked for a flailing IoT startup before, I can tell you that it's not uncommon for products to ship with TLS certificates, but without any notion of a PKI or cert management infrastructure that would enable these devices to keep working in the future. As usual, a rush to launch leads to corners being cut. Sometimes these arguably crucial pieces are added later; other times, customers are left holding the bag when renewal of certificates turns out to be impossible for one reason or another.
Their doodad had all the features. Yours has a really great update framework. Guess which one gets funded at demo day, or makes it to retail shelves this christmas?
If your doodad has a weak enough update framework that it bricks itself a handful of years after production, good luck getting any revenue or funding going forward.