App Tracking Transparency audit and compliance
The ATT prompt, what it covers, and everything the app has to declare around it.
- ATT framework implementation: the four statuses, the purpose string, the call at the right moment of the app, and the status re-read at each launch
- Sequencing with the CMP: Apple's prompt and the GDPR consent collection in Didomi or your CMP, in the order the App Store accepts, without asking again after a refusal
- Explanation screen: what Apple allows before the prompt, transparent and without incentive, and what it forbids, gating a feature behind consent
- Privacy Manifests and third-party SDKs: the app's privacy file, the reasons for accessing sensitive APIs, the declared tracking domains, and the inventory of SDKs that carry one
- App Store listing: the App privacy details aligned with the actual collection, at each version