What the guideline actually means, why apps really get flagged for it, and a real example — for both App Store and Google Play.
Apps can't host content that's obscene, defamatory, or designed to demean a group of people.
Read the guideContent that demeans a specific group based on race, religion, gender, or similar traits isn't allowed, even as humor.
Read the guidePhoto-realistic violent imagery has stricter limits than stylized or cartoon violence.
Read the guidePornographic content, or material designed mainly to be sexually arousing, isn't allowed on the App Store at all.
Read the guideYour app's description and functionality can't misrepresent what it actually does.
Read the guideApps where users post content need moderation tools, a reporting mechanism, and a way to block abusive users.
Read the guideApps built around a single creator's content still need the same moderation standards as any other UGC app.
Read the guideApps in the Kids category can't include third-party analytics or advertising SDKs that aren't approved for children.
Read the guideApps that give medical advice or dosing information need to come from a credentialed source.
Read the guideApps encouraging illegal drug use, or making it look casual and safe, aren't allowed.
Read the guideApps can't encourage dangerous stunts, self-harm trends, or other activities likely to cause real injury.
Read the guideYour support URL, contact info, and developer name have to be accurate and actually reachable.
Read the guideApps have to protect user data with reasonable security, and disclose any known data breach.
Read the guideApps that become aware of criminal activity endangering a minor have to report it appropriately.
Read the guideBroken links, placeholder content, or crashes during review will get an app rejected.
Read the guideBeta or unfinished builds can't be submitted for regular App Store review — that's what TestFlight is for.
Read the guideEvery feature in your app has to be visible and described in your review notes — nothing unlocked later or hidden from reviewers.
Read the guideThe "What's New" release notes have to actually describe what changed in that version.
Read the guideAnything that costs extra inside your app has to be clearly marked before the user gets to it.
Read the guideScreenshots have to show your actual app running, not marketing mockups or another platform's UI.
Read the guideApp preview videos have to be actual captured app footage, not staged or heavily edited demos.
Read the guideThe primary category you pick in App Store Connect has to genuinely match what the app does.
Read the guideThe age-rating questionnaire answers have to match what's actually in the app.
Read the guideYour app name and keywords can't copy another app's, or stuff in unrelated terms to game search.
Read the guideApp name, description, and screenshots have to be appropriate for a general audience, regardless of the app's actual age rating.
Read the guideIf your app runs on iPad, it has to actually work well on iPad, not just be a stretched iPhone layout.
Read the guideAn app that drains the battery abnormally fast for what it does will get flagged.
Read the guideApps can only use Apple's public, documented APIs — no private frameworks or undocumented calls.
Read the guideSiriKit intents and Shortcuts actions have to actually do what their name and description say.
Read the guideCall-blocking and SMS-filtering extensions can't be used to enable spam or fraud instead of preventing it.
Read the guideFace ID and other facial recognition data can only be used for on-device authentication, not stored or sent off-device.
Read the guideWidgets and extensions have to follow the same design and functionality rules as the main app, on their own.
Read the guideAds shown on system surfaces like the Lock Screen or Home Screen aren't allowed — ads stay inside your app.
Read the guideApps can't download or execute new code after install — everything has to ship in the reviewed binary.
Read the guideAn app can't include code designed to damage, disable, or gain unauthorized access to a user's device.
Read the guideBackground execution modes can only be used for what they're actually designed for.
Read the guideDigital goods and services must be sold through Apple's In-App Purchase system, not external links.
Read the guideApps generally can't link out to a website to buy the same digital content available via In-App Purchase.
Read the guideAuto-renewable subscriptions need clear terms, price, and length disclosed before purchase.
Read the guideA handful of specific app types are allowed to use payment methods other than In-App Purchase.
Read the guideApps for consuming previously-purchased content, like books or video, can let users view their account without in-app purchase.
Read the guideContent tied to a specific physical accessory you own can be unlocked without going through In-App Purchase.
Read the guideCrypto exchange and wallet apps need the right licenses; mining is only allowed off-device via cloud services.
Read the guideApple gives a specific list of monetization approaches that are fine — ads, IAP, paid downloads, and more.
Read the guideCertain monetization patterns are banned outright — fake App Store-like interfaces, ad-impression manipulation, and forced downloads.
Read the guideYour app can't clone another app's design, or impersonate a brand or another developer.
Read the guideYou can't charge users extra just to access a standard iOS feature that's normally free, like the flashlight.
Read the guideAn app has to do more than wrap a website or repackage content with nothing native added.
Read the guideYour app has to be a complete, standalone experience, not one piece of a larger unpublished product.
Read the guideApps generated from a commercial app-building template need real customization and their own developer submission.
Read the guideRemote desktop apps can only connect to servers you own or control, or ones with clear user consent.
Read the guideApple rejects apps that are too similar to other apps on the Store, including your own.
Read the guideCustom keyboards can't collect what a user types unless it's disclosed, and need a way to switch back easily.
Read the guideApps integrating with Apple Music can't alter how it functions or fail to give it proper attribution.
Read the guideApps can't use Apple services like Game Center or iCloud in ways that generate spam for other users.
Read the guidePush notifications can't be used for ads, marketing blasts, or anything the user didn't opt into.
Read the guideHTML5 mini-games, streaming game catalogs, and emulators are allowed, but only under specific rules.
Read the guideIf you offer any third-party login option, you generally have to offer Sign in with Apple too.
Read the guideIf you support Apple Pay, it has to work correctly and follow Apple's official Apple Pay marketing guidelines.
Read the guideEvery system permission prompt, for camera, location, or contacts, needs a purpose string explaining why, in plain language.
Read the guideApps that support account creation must also support account deletion.
Read the guideData you collect can only be used for what you told the user, and can't be sold or repurposed.
Read the guideApps handling HealthKit data or running health research studies have extra consent and data-use restrictions.
Read the guideApps directed at kids can't collect personal data from them without verifiable parental consent.
Read the guideBackground location access is only allowed when a core feature genuinely can't work without it.
Read the guideYou need the rights to any music, video, images, or content your app displays.
Read the guideIf your app integrates a third-party site, product, or service, you need documented permission to do so.
Read the guideApps can't offer a way to download copyrighted audio or video from a source that doesn't allow it.
Read the guideContests and sweepstakes run through your app need to be sponsored by you and follow official rules.
Read the guideReal-money gambling, casino, and lottery apps need proper licensing in every region they operate in.
Read the guideApps with account creation need an in-app and web-based account deletion option.
Read the guideGoogle requires developer accounts to be genuine, singly-owned, and not created to evade a prior suspension.
Read the guideFaking ad clicks or impressions — even ones a user never actually saw — is treated as fraud against advertisers, not just a UX problem.
Read the guideAds in your app can't be disruptive, disguised as content, or served outside your app's own UI.
Read the guideApps built around alcohol, tobacco, or other age-gated products need an actual age screen, not just a rating label.
Read the guideApps that generate synthetic media (deepfakes, AI images/voices) need safeguards against misuse and clear labeling.
Read the guideApps that extend to Android Auto have extra restrictions around driver distraction — most notably, video and free-text input are off-limits while driving.
Read the guidePaying people to install your app, or rewarding installs with cash-equivalent value, distorts rankings and isn't allowed.
Read the guideCrypto exchanges, wallets, and NFT apps have to clearly disclose what they do and follow extra financial-app requirements.
Read the guideAny content or feature that sexualizes, endangers, or exploits minors results in an immediate app takedown, no warning cycle.
Read the guideThe IARC content rating questionnaire has to match what's actually in your app, not what you wish the rating was.
Read the guideYour Play Console Data Safety form has to match what your app actually collects.
Read the guideYour app can't trick users into actions like installs, clicks, or granting permissions.
Read the guideApps can't interfere with other apps, download executable code, or degrade device performance.
Read the guideApps aimed at children can only use ad SDKs that have self-certified compliance with Google's families ad program.
Read the guideApps that opt into or target the Families program face stricter rules on content, ads, data collection, and permissions.
Read the guideLending, crypto, and financial apps need extra disclosures and often region-specific licensing.
Read the guideThe app has to work as advertised, without excessive crashes or an essentially empty experience.
Read the guideReal-money gambling apps are only allowed in specific countries, and only if licensed there.
Read the guideApps offering medical or health guidance can't make unsubstantiated claims, especially around serious conditions.
Read the guideAn app whose real purpose is installing other apps — without being clear about it upfront — isn't allowed on Play.
Read the guideApps can't help users buy, sell, or coordinate anything illegal in the regions where the app is offered.
Read the guideYour app, its icon, or its listing can't pass itself off as another company, app, or person.
Read the guideContent that promotes violence, incites hatred against a protected group, or is gratuitously graphic isn't allowed, even as user-submitted content.
Read the guideYour app can't use another rights holder's trademarks, characters, or copyrighted assets without permission.
Read the guideGoogle auto-scans every app; a false positive here still blocks your submission until resolved.
Read the guideYour Play Store listing text and images have to accurately represent the app, no keyword stuffing.
Read the guideBuying reviews, incentivizing five-star ratings, or otherwise gaming your store listing's reputation is a policy violation.
Read the guideApps in the News category need to be clearly attributed to a publisher and transparent about what's original reporting versus aggregated content.
Read the guideDigital goods and in-app content sold inside your app have to go through Google Play's billing system.
Read the guideEvery sensitive permission your app requests has to be justified and disclosed.
Read the guideReviews and ratings have to come from real users with genuine opinions, not incentives, bots, or coordinated campaigns.
Read the guideContent that needs age-gating, extra disclosure, or is disallowed outright.
Read the guideYou're responsible for every SDK you ship, even when the violating behavior comes from the SDK vendor's code, not your own.
Read the guideScaring users into believing their device is compromised, to push a download or purchase, is a policy violation regardless of intent.
Read the guideGoogle removes near-identical apps, and apps that exist mainly to redirect or upsell elsewhere.
Read the guideRepeated policy violations accumulate against your developer account, not just the individual app, and escalate toward account termination.
Read the guideSubscriptions need clear terms and have to use Google Play's billing system for digital content.
Read the guideAn app can't render fake system dialogs, warnings, or settings screens designed to look like they came from Android itself.
Read the guideApps have to target a recent Android API level — Google blocks updates to apps that fall too far behind.
Read the guideApps that let users post content need a real moderation system, not just a reporting button.
Read the guideBeyond declaring what you collect, you need a real privacy policy, a legal basis for collection, and safeguards for how the data is stored and shared.
Read the guideWear OS apps and tiles are expected to work as standalone, glanceable experiences — not a shrunk-down copy of the phone app.
Read the guide