Skip to main content
Apple’s App Review Guidelines are the rules every App Store app is checked against, organized in five sections: Safety, Performance, Business, Design, and Legal. Most rejections come from a handful of them: Apple says over 40% of unresolved issues fall under guideline 2.1 App Completeness (crashes, placeholder content, broken links, missing demo login), followed by privacy (5.1), minimum functionality (4.2), accurate metadata (2.3), in-app purchase (3.1.1), and spam or copycat apps (4.3, 4.1). Run through the checklist below before you submit. This page summarizes Apple’s App Review Guidelines, which are the official source and change over time.

The Five Sections of the Guidelines

Most Common Rejection Reasons

Pre-Submission Checklist

Works and is complete (2.1)
  • The app opens and runs on a real iPhone without crashing. Every button and link does something.
  • No placeholder text, test data, “coming soon” screens, or features that aren’t finished
  • Your backend is deployed and will stay on while Apple reviews the app
  • If the app needs a login, a demo account (that won’t expire) is in App Review Information, with notes for anything that’s hard to reach
  • No hidden or undocumented features (2.3.1)
Honest listing (2.3)
  • Screenshots show the app in use, not just the title, login page, or splash screen
  • The name, description, and screenshots match what the app actually does
  • The age rating answers are accurate
Privacy (5.1)
  • A privacy policy link is in App Store Connect and inside the app. It says what data you collect, how you use it, and how users can ask for it to be deleted.
  • Every permission request (camera, location, photos, contacts, notifications) explains why the app needs it
  • The app only asks for permissions it actually uses
  • If users can create an account, they can delete it from inside the app
  • The app doesn’t make people log in unless it has real account-based features
  • If the app sends personal data to another company, including a third-party AI service, it says so and asks permission first (5.1.2(i))
  • If the app tracks users across other companies’ apps or websites, it asks through App Tracking Transparency
  • The App Privacy questions in App Store Connect match what the app really collects
Payments (3.1)
  • Subscriptions, premium features, in-game currency, and other digital goods use Apple in-app purchase (3.1.1). Links to a web checkout appear only in the US storefront, or with an Apple entitlement elsewhere (3.1.1(a)).
  • Paywalls show clear prices and terms, and include Restore Purchases
  • Auto-renewing subscriptions last at least 7 days and give ongoing value (3.1.2(a))
  • Your in-app purchase products are complete in App Store Connect and submitted with the app
Original and app-like (4)
  • The app does more than show a website (4.2)
  • It isn’t a copy of another app, and you’re not submitting several near-identical apps (4.1, 4.3)
  • If it offers Google, Facebook, or another third-party login for the main account, it also offers Sign in with Apple or an equivalent private login option (4.8)
  • No other company’s trademarks, logos, or copyrighted content without permission (5.2)
Social and user-generated content (1.2)
  • Users can report offensive content and block abusive users
  • Objectionable content is filtered, and your contact information is published
Contact and support
  • The support URL leads to real contact information

How Vibecode Helps You Pass Review

  • Preflight (Mobile apps): run /appstore-preflight in your project chat, or click Preflight in the Deploy menu. The agent checks privacy permissions (5.1), in-app purchases (3.1.1), completeness (2.1, 4.2), and misleading design (4.1, 4.3), fixes what it can, and lists what’s left. See Run Preflight First.
  • Agent testing: after each change, the agent opens your app and taps through what it built, so fewer bugs reach App Review. See Agent Testing.
  • Deployed backend: for native iOS apps, Vibecode asks you to deploy your backend before it builds the app you publish, so the reviewer sees real data. For Mobile apps, deploy your backend before you start Expo Launch.
  • In-app purchases through Apple: RevenueCat runs on Apple’s in-app purchase system, and Preflight checks that your paywall shows clear pricing and a Restore Purchases button
  • Fixing rejections: paste Apple’s rejection message into your project chat and ask the agent to fix it, then publish the new build
You can also just ask: “Check my app against Apple’s App Review Guidelines before I submit.”

What to Do If Your App Is Rejected

  1. Read the message. Apple tells you which guideline your app didn’t meet in App Store Connect, often with screenshots.
  2. Fix it. Paste the message into your Vibecode project chat and ask the agent to fix the issue. For metadata-only problems, edit the listing in App Store Connect; you don’t need a new build.
  3. Resubmit. Publish the new build and submit it for review again, or reply to App Review in App Store Connect if they asked a question.
  4. Appeal if Apple got it wrong. If you believe the reviewer misunderstood your app, you can appeal to the App Review Board. Give specific reasons your app complies, submit only one appeal per rejected submission, and answer any open questions from App Review first.
Fixing a bug in an app that’s already live and Apple finds other issues? Apple can approve the bug fix and let you resolve the other issues in your next submission, as long as there are no legal or safety concerns. Reply to the offer in App Store Connect to accept.

Frequently Asked Questions

Guideline 2.1, App Completeness. Apple says it accounts for over 40% of unresolved issues: crashes, bugs, placeholder content, broken links, and missing demo accounts.
The guidelines judge the app you submit, not the tool you built it with. An AI-built app has to meet the same rules as any other: it must be complete, original, honest about what it does, and handle privacy and payments correctly. If your app sends personal data to a third-party AI service, guideline 5.1.2(i) requires you to disclose that and get permission.
Not by itself. Guideline 4.2 says an app should “elevate it beyond a repackaged website.” Rebuilding your site with native screens and features works much better. See How to Turn a Website Into an App.
For digital content, features, and subscriptions used inside the app, in-app purchase is required (3.1.1). On the US App Store you can also add buttons or links to your own web checkout; in other countries that needs an Apple entitlement, available only in some of them (3.1.1(a)). Physical goods and services used outside the app, such as food delivery or rides, use other payment methods.
Only if your app uses a third-party or social login (such as Google Sign-In or Facebook Login) for the user’s main account. Then you must also offer Sign in with Apple or another login that limits data collection to name and email, lets users keep their email private, and doesn’t track them for ads without consent (4.8).
A resubmission goes back into the queue. Apple reviews 50% of submissions within 24 hours and 90% within 48 hours. See How Long Does App Store Review Take?

Next Steps

Publish to the App Store

The full publishing guide

App Store Review Time

How long review takes and how to speed it up

In-App Purchases

Subscriptions that pass guideline 3.1.1

Compare AI App Builders

Which builders publish to the App Store
Last modified on October 10, 2026