AppReviewFix
Guideline library
Apple App StorePrivacy

1.6Data security

What this guideline means

Beyond privacy disclosures, Apple expects a baseline of technical security — data in transit encrypted, sensitive data not left exposed — and requires disclosure if the app has experienced a data breach affecting users.

Why apps actually get flagged

Rare as a standalone rejection, but comes up when a security researcher's public report about an app's data handling reaches Apple before the developer has disclosed or fixed it.

A real example

"Your app transmits user data without adequate security measures in place, which is not permitted per guideline 1.6."

Got this exact rejection?Paste it in and get a diagnosis specific to your app, free.
Decode my rejection
Related guidelines
5.1.1Data Collection and Storage4.3Spam2.1App Completeness
AppReviewFix
ProductDecoderPre-submission checkPricingGuideline library
CompanyAboutFAQContact
ResourcesBlog
LegalTermsPrivacy
© 2026 AppReviewFixBuilt by a developer, not a committee.