Skip to content

Menu

LexBlog, Inc. logo
NetworkSub-MenuBrowse by SubjectBrowse by PublisherBrowse by ChannelAbout the NetworkJoin the NetworkProductsSub-MenuProducts OverviewBlog ProBlog PlusBlog PremierMicrositeSyndication PortalsAboutContactSubscribeSupport
Book a Demo
Search
Close

Apple introduces “Privacy Manifests” for new and updated apps

By Steve Roosa (US), Wenda Tang (US) & Elyssa Diamond (US) on April 16, 2024
Email this postTweet this postLike this postShare this post on LinkedIn
NTAnalyzer_BlogSeries_Carousel

Apple recently announced that beginning in spring 2024, developers of certain SDKs and apps that use those SDKs will be required to include a “Privacy Manifest,” which lists all tracking domains used in the relevant SDK or app. To determine whether this is relevant to your company, a list of SDKs that require a Privacy Manifest can be found here. Privacy Manifests are required in order to either:

  • Submit a new app to the App Store that includes a listed SDK or
  • Submit an app update to the App Store that adds one of the listed SDKs.

If users have opted out through the App Tracking Transparency (ATT) framework, iOS system will block outgoing network connections to that domain.     

What is in Privacy Manifest? The Privacy Manifest consists of four top-level keys:

  1. NSPrivacyTracking – Reflects whether your app or third-party SDK uses data for tracking (i.e., behavioral advertising)?
  2. NSPrivacyTrackingDomains – Lists tracking domains.
  3. NSPrivacyCollectedDataTypes (i.e., Privacy Nutrition Labels) – Lists the categories of data that your app or third-party SDK collects together with purpose. The responses should match what is currently listed in the relevant app’s Privacy Nutrition Label.
  4. NSPrivacyAccessedAPITypes – Lists the pre-approved “required reason APIs” used by the app or SDK and the corresponding approved purpose.

How we can help

Through the use of our in-house tool, NT Analyzer, Norton Rose Fulbright can assist attorneys and developers with the new Privacy Manifest requirements, including confirming SDK uses and tracking domains and verifying the accuracy of Privacy Nutrition Labels.

If you are interested in learning more about the firm’s technical capabilities, including a demo of NT Analyzer, please contact NTAnalyzer@nortonrosefulbright.com.


Photo of Steve Roosa (US) Steve Roosa (US)
Read more about Steve Roosa (US)Email
Photo of Wenda Tang (US) Wenda Tang (US)
Email
Photo of Elyssa Diamond (US) Elyssa Diamond (US)
Read more about Elyssa Diamond (US)Email
  • Posted in:
    Privacy & Data Security
  • Blog:
    Data Protection Report
  • Organization:
    Norton Rose Fulbright
  • Article: View Original Source

LexBlog, Inc. logo
Facebook LinkedIn Twitter RSS
Real Lawyers
99 Park Row
  • About LexBlog
  • Careers
  • Press
  • Contact LexBlog
  • Privacy Policy
  • Editorial Policy
  • Disclaimer
  • Terms of Service
  • RSS Terms of Service
  • Products
  • Blog Pro
  • Blog Plus
  • Blog Premier
  • Microsite
  • Syndication Portals
  • LexBlog Community
  • 1-800-913-0988
  • Submit a Request
  • Support Center
  • System Status
  • __

New to the Network

  • Crunched Credit
  • Nothing but Substance
  • Franchising & Distribution Law Blog
  • Business Risk Management Blog
  • Employee Benefits & Executive Compensation Blog
Copyright © 2024, LexBlog, Inc. All Rights Reserved.
Law blog design & platform by LexBlog LexBlog Logo