Prohibited content and behaviour
-
NSFW / adult content in app presentation: Your app’s listing, marketing materials, and user interface must not display or promote NSFW/adult content (including pornography or sexually explicit content). This includes:
- App store screenshots and descriptions
- In-app UI elements, images, and previews
- Push notifications and emails
- Marketing and promotional content
Apps may function as tools that creators use to manage or interact with their content on Fanvue, including NSFW content. The distinction is that the app itself must remain SFW in its presentation, even if it can be used to work with adult content on the platform. - Your app must not encourage, facilitate, or provide instructions for harassment, exploitation, doxxing, self-harm, violence, hate, discrimination, or illegal activity.
- Your app must not attempt to bypass Fanvue safeguards, moderation systems, rate limits, permissions, or other platform controls.
- Your app must not impersonate Fanvue, Fanvue staff, or other creators, and must not mislead users about what the app does, who operates it, or what data it accesses.
Security and authentication
- Passwords: Your application must not under any circumstances ask a user for their Fanvue password.
- Credentials & secrets:
- Your API secret must be stored securely on a server and must not be exposed in any client-side code.
- Store secrets in a secure secrets manager (or equivalent) and rotate if compromised.
- OAuth & tokens:
- Your app must only request the OAuth scopes that are strictly necessary for the documented features to function.
- Any session tokens (access tokens/refresh tokens/session tokens) must be handled securely and treated as sensitive.
- Do not log sensitive tokens or personal data.
- Transport security:
- All application endpoints, web pages, and redirect URIs must be secured using HTTPS.
- You must use valid TLS certificates without browser warnings.
- Malicious behaviour: Your app must be free of malware, spyware, ransomware, or any code that performs hidden, unexpected, or malicious actions (e.g., crypto-mining, ad-injection).
Data protection, privacy, and deletion
- Documentation: Your app must have Terms of Service & Privacy Policy documents that are publicly accessible.
- Compliance: Your app must be GDPR compliant.
- Deletion: Your app must provide a clear and accessible method for a creator to request the full deletion of their data from your systems. This must be honoured promptly.
- Data minimisation: Only collect and store the data you need to provide the app’s features.
- Internal access controls: Restrict internal access to creator data to those who need it to operate/support the app.
Stability, reliability, and user experience
- Your app must be production-grade and stable.
- It must not regularly crash, hang, freeze, or display broken/blank screens.
- Avoid user-facing error pages that block core usage (e.g., persistent 4xx/5xx pages, broken redirects, unhandled exceptions).
- Where errors can occur, provide helpful, human-readable error messages and a way for the user to recover.
- Fanvue may request fixes for stability/performance issues as part of review, or may suspend listing if issues materially impact creator experience.
Accuracy, functionality, and integrity
- Your app must deliver the features described in your listing and marketing materials.
- Claims must be factual and not misleading.
- Your app must synchronise and display data accurately (where applicable).
- Your app must not introduce unexpected charges, hidden functionality, or behaviour that differs materially from what the creator has consented to.
Support and operational readiness
- Provide a reliable support channel (email or support portal) and respond in a reasonable timeframe.
- Provide clear documentation or onboarding guidance so creators can successfully set up and use the app.
- Provide a security contact path for reporting vulnerabilities.
Payments and commercial terms
- If your app requires payment, you must take payment for your app via the Fanvue App Store to have it listed.
- We will not list apps that take payment via other payment processors.
- You must not direct users to off-platform payment flows for the paid functionality of the app.
App Store linking
- Your app’s homepage must link back to the Fanvue App Store (this can be changed to the listing of your app once you are approved for listing).
Ongoing compliance
- Apps are expected to remain compliant over time. New requirements may be introduced and will apply to already-listed apps.