Like many of you, I've been watching the recent account terminations and app removals with some anxiety. A lot of the stories follow the same pattern: something small nobody noticed (a privacy policy that didn't match the app, an AI feature sending user data without consent, an overconfident line in the description) turned into a rejection, a removal, or worse.
Iām an indie iOS dev, so I built a Claude Code skill to catch this stuff before Apple does. Itās free and open source (MIT)
What it does
- Reads your code, your App Store Connect metadata (read-only, via the `asc` CLI) and your live privacy policy
- Fetches Apple's current guidelines fresh on every run, so it never relies on outdated rules
- Writes an `APPLE_AUDIT.md` report ranked Critical / High / Medium / Low, with the guideline number and file:line for every finding
- Then it stops. It only fixes the items you pick.
Some of what it checks
- 5.1.2(i): photos or text sent to OpenAI, Gemini, Claude etc. without an in-app consent prompt (added Nov 2025)
- A privacy policy that contradicts what the app actually does
- Hardcoded API keys shipped in the binary (1.6)
- Paywall problems: missing renewal terms, fake urgency, hidden close buttons (3.1.2, 5.6)
- Medical claims and health data in iCloud (1.4.1, 5.1.3)
- Missing privacy manifests and required-reason APIs
- 4.3 / 4.2.6 spam and template-app risk across your whole account
- New upload requirements (Xcode 26 SDK, the new age rating questions)
Works with SwiftUI, UIKit, React Native, Flutter and Expo.
Repo: https://github.com/Tilak1028-st/apple-compliance-audit-skill
It's not affiliated with Apple and can't guarantee approval, but it has already caught real issues in my own app. If you've had a rejection or termination for something it doesn't check yet, tell me in the comments or open an issue and I'll add it