8 Total
2 High severity
6 Medium severity
0 Low severity
Summary

Apple's App Store Review Guidelines establish the requirements that application developers must satisfy for app approval, distribution, and continued availability across Apple's platforms including iPhone, iPad, Mac, Apple TV, Apple Vision Pro, and Apple Watch. The guidelines require developers to implement Apple's In-App Purchase system for the sale of digital goods and subscriptions, through which Apple retains a commission. The guidelines additionally mandate that apps display App Privacy labels disclosing data collection categories and usage, and establish heightened restrictions on data collection and advertising practices for applications designated for users under 13.

Technical / Legal Breakdown

This document is Apple's App Store Review Guidelines, a platform policy governing the submission, approval, and distribution of applications through the App Store across iOS, iPadOS, macOS, tvOS, visionOS, and watchOS. The guidelines assert that Apple reserves the right to reject, remove, or request modification of any app that does not comply with its rules, and require developers to agree to the Apple Developer Program License Agreement as the binding legal basis for participation. Notable provisions include mandatory use of Apple's In-App Purchase system for digital goods and services (with Apple retaining a commission), requirements for age-gating and parental consent mechanisms for apps directed at minors, restrictions on specific content categories including gambling, political advertising, and health-related apps, and requirements that apps collecting user data disclose practices through App Privacy labels and comply with Apple's tracking permission framework via AppTrackingTransparency. The guidelines engage with COPPA (regarding child-directed apps and data collection from minors), GDPR and CCPA (regarding privacy disclosures, user consent, and data handling obligations), FTC regulations (regarding advertising disclosures and in-app purchase transparency), and sector-specific frameworks such as HIPAA (for health and medical apps) and financial services regulations (for apps offering financial products); applicability of specific regulatory provisions depends on jurisdiction and the nature of the developer's app. Compliance teams should note that Apple's IAP commission requirement, its gatekeeping authority over app distribution, and its unilateral right to update guidelines with developer compliance required as a condition of continued distribution have been subjects of regulatory scrutiny in the EU under the Digital Markets Act, and the guidelines include EU-specific provisions reflecting ongoing legal and regulatory developments in that jurisdiction.

Institutional Analysis

Institutional analysis available with Professional

Regulatory exposure by statute, material risk assessment, vendor due diligence action items, and enforcement precedent. Available on Professional.

Start Professional free trial
High — 2 provisions
Medium — 6 provisions

Monitoring

Apple has updated this document before.

Watcher includes same-day alerts, structured change summaries, and monitoring for up to 10 platforms.

Start Watcher free trial Or create a free account →

Professional Governance Intelligence

Need provision-level monitoring and regulatory mapping?

Professional includes governance timelines, compliance memos, audit-ready analysis, and full provision tracking.

Start Professional free trial

Cross-platform context

See how other platforms handle Anti-Steering Prohibition and similar clauses.

Compare across platforms →

Mapped Governance Frameworks

CCPA/CPRA
California, USA
View official text ↗
COPPA
United States Federal
View official text ↗
FTC Act Section 5
United States Federal
View official text ↗
GDPR
European Union
View official text ↗
UK GDPR
United Kingdom
View official text ↗
Archival ProvenanceSource & Archival Record
Last Captured April 19, 2026 06:03 UTC
Capture Method Automated scheduled archival capture
Document ID CA-D-000025
Version ID CA-V-000638
SHA-256 7e4287937f7a9ed5c6e2564a5084be765477371334b28b3e63fe5661246866cc
✓ Snapshot stored ✓ Text extracted ✓ Change verified ✓ Hash verified

Governance Monitoring

Monitor governance changes across the platforms you rely on.

Structured alerts for policy changes, governance events, and provision updates across 318+ platforms.

Create free account Compare plans