The Strict Mandate of Guideline 5.1.1(v)
Since June 2022, Apple strictly enforces Guideline 5.1.1(v) - Legal: Account Deletion: "If your app supports account creation, you must also offer account deletion within the app."
3 Common Traps Causing Rejections
- Redirecting to an external web contact form or support email: Apple rejects flows where users must manually email support.
- Offering temporary deactivation only: Account deletion must be permanent and irreversible, purging personal data in compliance with GDPR.
- Hidden or hard-to-find deletion buttons: The option must be clearly discoverable in user profile/settings.
Implementing Compliant Deletion in Capacitor
Provide an explicit confirmation dialog with password verification or biometric check:
export const handleDeleteAccount = async () => {
const confirmed = confirm("Are you sure you want to permanently delete your account and all associated data?");
if (!confirmed) return;
try {
await api.delete('/user/account');
await clearLocalStorageAndTokens();
router.push('/login');
} catch (error) {
alert("An error occurred while deleting your account.");
}
};
If your service is subject to statutory retention obligations (e.g., accounting/tax laws), state this clearly in review notes and privacy terms.