Conduct a web search of “APP NAME” or “DEVELOPER NAME” for any known security incidents or vulnerabilities.
Review any search results to identify articles or postings that suggest that the team and/or application were involved in a data breach or other security incident, and if so, whether it involved the disclosure of user data.
Confirm the security incident has been remediated.
Expected result
No known references that indicate any security vulnerabilities OR security vulnerabilities have been remediated.
If security vulnerabilities have not been remediated, Privacy Policy must state that it does not collect or store user data.
Watch a video
Need help with the Privacy Policy? Get the clarity you need fast with our new Privacy Policy video course featuring tips and resources from Meta experts and Data Protocol: Writing Your Privacy Policy
Revisions
2024-07-31: Removed App Lab from VRC platform requirements.
2023-08-23: Teams and apps can clear data protection checks if the known security incidents or vulnerabilities have been remediated.