ApproveKit
MCP serverSecurityAudit apps against App Store, Google Play and Google OAuth review rules; get the required docs.
Available today. Use it from your connected AI after setup.
No other account needed.
Add ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.
Then ask your AI: use the audit app tool from ApproveKit
Install ApproveKit
The server’s own address, for the clients that take one directly. Or connect ahel once and every client you use reads it from one address, with the account kept on ahel rather than in each client’s config.
Claude Code
claude mcp add --transport http --scope user approvekit 'https://approvekit.dev/mcp'Run it once in your project, then open /mcp to approve any sign-in the server asks for.
Claude Desktop
https://approvekit.dev/mcpAdd a custom connector in Settings, paste this address, and approve the sign-in.
Cursor
cursor://anysphere.cursor-deeplink/mcp/install?name=approvekit&config=eyJ1cmwiOiJodHRwczovL2FwcHJvdmVraXQuZGV2L21jcCJ9Open the link and Cursor adds the server at that address.
ChatGPT
https://approvekit.dev/mcpIn Settings, enable Developer mode, create an MCP app, and paste this address. Your plan and workspace must allow custom apps.
Codex
codex mcp add approvekit --url 'https://approvekit.dev/mcp'Run it once, then sign in with codex mcp login approvekit if the server asks for an account.
From the project's README
As published by yateshaw/approvekit in README.md.
Get AI-built apps through App Store review, Google Play review and Google OAuth verification.
ApproveKit is a Claude Code plugin plus a remote MCP server. Your coding agent reads the repo, builds an inventory of what the app collects, and runs a free audit against the rules reviewers actually apply. If you want the documents those reviews require, the agent gets them generated and hosted for a one-time fee per app.
Install
claude plugin marketplace add yateshaw/approvekit
claude plugin install approvekit@approvekit
Then, inside any app repo, tell Claude:
get my app ready for the App Store
or "prepare the Google OAuth verification", "why would Google Play reject this app", "I need a privacy policy and an account deletion page".
Any MCP-capable agent can use the server without the plugin:
claude mcp add --transport http approvekit https://approvekit.dev/mcp
What it does
- Inventory. The skill tells the agent how to derive platforms, sign-in methods, permissions, data collected, third-party SDKs, Google OAuth scopes and payments from the repo (Expo, React Native, Flutter, native iOS and Android, web). Your source code never leaves your machine; only the inventory is sent.
- Free audit. 23 rules across Apple's App Review Guidelines, Google Play policy and Google's OAuth verification. Every finding comes with its severity, the fix, and a link to the official source.
- Documents (paid, optional). A privacy policy and an account deletion page hosted at
yourapp.approvekit.dev, reviewer notes for App Store Connect and Play Console, and for Google OAuth the per-scope justifications and the demo video shot list. Anything the repo cannot answer is marked[CONFIRM: ...]for you to fill in; pages go live only when the text is final.
The agent never buys on its own: it reports the findings and the price, and creates a checkout link only after you say yes.
Pricing
| Audit | Free |
| Launch Pass (privacy policy, account deletion page, reviewer notes) | US$49 per app |
| Google OAuth Verification Pack (Launch Pass + scope justifications + demo video script) | US$249 per app |
MCP tools
| Tool | Purpose |
|---|---|
audit_app | Send the inventory, get findings and offers. Returns an app_token to reuse. |
create_checkout | Stripe link for a package, after the user agrees. |
get_order | Payment status and, once paid, the documents as Markdown. |
publish_document | Save the final text and put the hosted pages live. |
Endpoint: https://approvekit.dev/mcp (Streamable HTTP, no authentication; the app token identifies the app).
Links
- Site: https://approvekit.dev
- Terms: https://approvekit.dev/terms
- Privacy: https://approvekit.dev/privacy
- Support: support@approvekit.dev
ApproveKit is a product of WyeTech LLC. It is a software tool, not legal advice, and it does not guarantee approval by any platform.
Tools it offers (4)
What this server listed when ahel dialed its public endpoint in Oct 2026, with no key and no account of yours. The names are the server’s own.
audit_appcreate_checkoutget_orderpublish_document
Signals
- Last commit
- Sep 2026
Advanced
- Delivery
- approvekit MCP server → your ahel connector (mcp.ahel.ai) → your AI.
- Item type
- mcp-server
- Key
dev-approvekit-approvekit- Source
- github.com/yateshaw/approvekit
- Hosted endpoint
https://approvekit.dev/mcp