A bug in Apple's App Store Server API caused it to reject Bundle IDs registered on or after July 24, returning 401 errors and triggering false "Credentials need attention" warnings in RevenueCat for newly created apps. The issue originated entirely on Apple's side, with no action from affected developers able to resolve it; only existing apps were unaffected. Apple resolved the issue after approximately 92 hours, with key validation confirmed working again on July 31.
Trusted by 1,000+ teams
Stop finding out about outages from your users. Monitor 6,320+ cloud services and get alerted the second something breaks.
The issue appears to have been resolved on Apple's side. We're seeing keys being correctly validated now.
We're awaiting a fix from Apple.
Apple’s App Store Server API returns a 401 for Bundle IDs registered on or after 24 July. The same key works against older Bundle IDs in the same account, and we have reproduced this directly against Apple’s API. The failure happens before any RevenueCat logic.
For affected apps, the “Credentials need attention” warning is not accurate. Your key is almost certainly correct. Regenerating the key, re registering the Bundle ID or recreating the app will not resolve it.
We have reported the issue to Apple and will continue to assist Apple in resolving it.
Developers setting up a newly created app may see "Credentials need attention" for their In App Purchase key. This is caused by Apple's App Store Server API rejecting recently registered Bundle IDs. Existing apps are unaffected, and we have reported it to Apple.
Regenerating the key does not resolve it.
With IsDown, you can monitor all your critical services' official status pages from one centralized dashboard and receive instant alerts the moment an outage is detected. Say goodbye to constantly checking multiple sites for updates and stay ahead of outages with IsDown.
Start free trialNo credit card required · Cancel anytime · 6320 services available
Integrations with