VM snapshots vs VM live mode

Both snapshots and live mode can be used to prevent persistent malware. But which one is better? From the wiki, it was said that more steps are necessary for live mode to fully work. So is it better to just keep going back to a safe snapshot?

Additionally, it’s not exclusive between snapshots and live mode. So I want to ask if it’s more secure by using both live mode and reverting to a safe snapshot, or is live mode unnecessary if the user will revert to a snapshot later anyway?

Documented just now:
VM Live Mode vs VM Snapshots

