Provision record
Apple · Apple App Store Review Guidelines · View original document ↗

Privacy Nutrition Labels and Data Collection Disclosure

Medium severity High confidence Explicit document language Common · 295 of 352 platforms
Stay ahead of the changes
Track Apple and get the diff the day its terms change.
Share 𝕏 Share in Share 🔒 PDF

This analysis describes what Apple's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology

ConductAtlas Analysis

Why it matters (compliance & governance perspective)

This provision establishes mandatory disclosure and data minimization requirements that govern how apps on Apple's platform collect and use user data. It creates operational constraints on data access requests and establishes a prohibition on unauthorized tracking.

Recent Activity

This document changed recently

Medium Jun 9, 2026

The updated guidelines state that developers must ensure kids receive age-appropriate experiences within their apps and must remove user-generated content that violates the guidelines, terms of service, or community standards. Under the revised policy, if Apple identifies policy-violating content, the developer will be asked to remove it and provide a compliance improvement plan. Based on the developer's response, the app may be removed from the App Store until compliance is demonstrated. This establishes a formal escalation pathway where developer inaction or inadequate remediation can result in app suspension or removal.

View change record →

Clause Stability Stable

0
Changes
5
Months Monitored
Apr 9, 2026
First Seen
May 11, 2026
Last Seen
This clause type exists across 4187 other provisions on other platforms.

Consumer impact (what this means for users)

Users receive standardized privacy disclosures for apps before download, and apps are restricted to collecting only data relevant to core functionality and using it only for stated purposes. Users retain control over tracking, as apps cannot engage in user tracking without explicit permission.

How other platforms handle this

ZipRecruiter Medium

You may give us your Identity Data, Contact Data, Financial Data, Profile Data, and other information by filling in forms or by corresponding with us by post, phone, e-mail or otherwise.

NVIDIA NIM Medium

NIM container releases that collect data, collect it for the following purposes: (a) to properly configure and optimize products for use with Software; and (b) to improve NVIDIA products and services.

Glassdoor Medium

Some of our ad partners may also enable us to collect similar data directly from their website or app by integrating our or our affiliates' advertising technology.

See all platforms with this clause type →
▸ View Original Clause Language DOCUMENT RECORD
"
Apps must include accurate and up to date privacy information in their product page. Apps must request access only to data relevant to the core functionality of the app and only collect and use data for the purpose it was collected for. Data collected from apps may not be used to track users without their permission.

Excerpt from Apple's App Store Review Guidelines

Applicable regulations

EU AI Act
European Union
BIPA
Illinois, USA
CCPA/CPRA
California, USA
COPPA
United States Federal
Connecticut Data Privacy Act Amendments
US-CT
CAN-SPAM
United States Federal
DMA
European Union
ePrivacy Directive
European Union
FCRA
United States Federal
FTC Act Section 5
United States Federal
GDPR
European Union
GLBA
United States Federal
HIPAA
United States Federal
Indiana Consumer Data Protection Act
US-IN
Kentucky Consumer Data Protection Act
US-KY
TCPA
United States Federal
UK GDPR
United Kingdom
Universal Opt-Out Mechanism Expansion 2026
US

Provision details

Document information
Document
Apple App Store Review Guidelines
Entity
Apple
Document last updated
May 5, 2026
Tracking information
First tracked
April 28, 2026
Last verified
May 12, 2026
Record ID
CA-P-002422
Document ID
CA-D-00025
Evidence Provenance
Source URL
Wayback Machine
Content hash (SHA-256)
307db15d06f03003277f88a1476a1308e92cc7cba75906b4fac341d1054f5040
Analysis generated
April 28, 2026 08:36 UTC
Methodology
Evidence
✓ Snapshot stored   ✓ Hash verified
Citation Record
Entity: Apple
Document: Apple App Store Review Guidelines
Record ID: CA-P-002422
Captured: 2026-04-28 08:36:55 UTC
SHA-256: 307db15d06f03003…
URL: https://conductatlas.com/platform/apple/apple-app-store-review-guidelines/provision/CA-P-002422/privacy-nutrition-labels-and-data-collection-disclosure/
Accessed: Aug. 25, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
Classification
Severity
Medium
Categories

Other risks in this policy

Related Analysis

Get the research letter

Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.

Frequently Asked Questions

What does Apple's Privacy Nutrition Labels and Data Collection Disclosure clause do?

This provision establishes mandatory disclosure and data minimization requirements that govern how apps on Apple's platform collect and use user data. It creates operational constraints on data access requests and establishes a prohibition on unauthorized tracking.

How does this clause affect you?

Users receive standardized privacy disclosures for apps before download, and apps are restricted to collecting only data relevant to core functionality and using it only for stated purposes. Users retain control over tracking, as apps cannot engage in user tracking without explicit permission.

How many platforms have this type of clause?

ConductAtlas has identified this type of provision across 295 platforms. See the full comparison.

Is ConductAtlas affiliated with Apple?

No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by Apple.