App Store Server Notifications V2: switching from V1 and handling every event
Short answer: Apple’s documentation marks the V1 endpoint and version 1 notifications as deprecated and tells developers to implement V2. Version 2 sends a signedPayload in JWS format that you verify on your server, retries a failed post five times over about a week instead of three, and lets you recover missed events with Get Notification History. You choose V1 or V2 per environment in App Store Connect; Apple recommends testing V2 in sandbox first.
Which notification each event sends
From Apple’s notificationType documentation, read 30 September 2026. A selection of the most common events; subtype is empty where the table shows a dash.
| Event | notificationType | subtype |
|---|---|---|
| Consumable, non-consumable or non-renewing purchase | ONE_TIME_CHARGE | - |
| First subscription in a group | SUBSCRIBED | INITIAL_BUY |
| Resubscribe after expiry | SUBSCRIBED | RESUBSCRIBE |
| Successful auto-renewal | DID_RENEW | - |
| Renewal fails, billing retry starts | DID_FAIL_TO_RENEW | - or GRACE_PERIOD |
| Billing retry recovers the subscription | DID_RENEW | BILLING_RECOVERY |
| User turns off auto-renew | DID_CHANGE_RENEWAL_STATUS | AUTO_RENEW_DISABLED |
| Upgrade or downgrade in the group | DID_CHANGE_RENEWAL_PREF | UPGRADE or DOWNGRADE |
| Subscription ends after cancelling | EXPIRED | VOLUNTARY |
| Billing retry ends without recovery | EXPIRED | BILLING_RETRY |
| Apple refunds a transaction | REFUND | - |
| Apple asks for consumption data on a refund request | CONSUMPTION_REQUEST | - |
What changes from V1 to V2
unified_receipt. A V2 post carries a signedPayload, signed by the App Store in JWS; inside, the data object holds the transaction and renewal info, also JWS-signed, in the same format that StoreKit 2 and the App Store Server API use. So one decoding and verification path covers all three. V2 names events with a notificationType plus an optional subtype, instead of V1’s notification_type values, and adds events V1 never had, such as ONE_TIME_CHARGE and CONSUMPTION_REQUEST.Setting up the endpoint
443 or 1024 and above. If your server only accepts allowlisted IPs, allow the subnet 17.0.0.0/8, which covers sandbox and production. To move an existing app, point the sandbox URL at your V2 handler, test, then switch production to version 2.Responding, retries and missed notifications
Testing your server
TEST to your configured URL, and Get Test Notification Status tells you how your server answered. The test always arrives in V2 format, even if the URL is still set to version 1, which makes it a quick check that your V2 parsing works before you switch.New billing options send the same events
DID_RENEW every month after a user cancels, and marks the end of the commitment in its own fields; see monthly subscriptions with a 12-month commitment. For the review side of a new product, see how to submit an In-App Purchase for review.Where Censuus fits
Frequently asked questions
Is App Store Server Notifications V1 deprecated?
Yes. Apple’s documentation marks the V1 endpoint and version 1 notifications as deprecated and says to implement the V2 endpoint instead. Apple has not published a shutdown date.
How do I switch to V2?
Build a V2 handler that verifies the signedPayload, set it as the sandbox URL in App Store Connect with version 2, test, then change the production URL to version 2.
How many times does Apple retry a failed notification?
For V2, five times, at 1, 12, 24, 48 and 72 hours after the previous attempt. For V1, three times, at 6, 24 and 48 hours. Retries only happen in production.
How do I test App Store Server Notifications?
Call Request a Test Notification in the App Store Server API. The App Store sends a TEST notification in V2 format, and Get Test Notification Status shows your server’s response.
Which IP addresses send App Store Server Notifications?
Apple says to allow the subnet 17.0.0.0/8, for both sandbox and production.
Guides for app developers
- How to market an app: a stage-by-stage plan
- Submit your app for free
- How to get your app to show up in Google search
- How to get your app recommended by AI assistants
- Free app promotion sites, checked for dofollow
- App store optimization checklist: what Apple and Google actually say
- App launch checklist: iOS and Android, step by step
- How to find beta testers for your app
- How to get more app reviews without breaking the store rules
- How to get your app featured on the App Store and Google Play
- App Store and Google Play screenshot sizes: what you must upload
- How to promote an app on Google Play with Play Console’s own tools
- How to promote an iOS app with App Store Connect’s own tools
- App Store keywords: how to fill the 100-character field
- How to market a fitness app: what Apple and Google let you claim
- How to market a kids app: the store rules that shape it
- How to market a finance app: the store rules to know first
- How to market a dating app: the store rules that shape it
- How to market a subscription app: what the stores require of your offer
- How to market a mobile game: the store rules that shape it
- Apple Ads MCP: connect an AI assistant to your campaigns
- How to promote an app on TikTok with creators
- How to promote an app on YouTube with creators
- How to market a VPN app: the store rules to know first
- How to market an AI app: the store rules that shape it
- How to market an education app: schools, parents and learners
- How to localize your App Store and Google Play listing
- Android vitals and Google Play visibility: the thresholds that hide apps
- App Store and Google Play age ratings: what drives them
- App Store privacy labels and Google Play Data safety: what to declare
- Common App Store rejection reasons and how to avoid them
- How to get the first users for your app
- App preview video specs: App Store sizes, length and rules, and the Google Play video
- App Store custom product pages, and the Google Play version
- App icon size for the App Store and Google Play
- App Store phased release and Google Play staged rollouts
- App Store subtitle and promotional text: limits and how to use them
- Google Play feature graphic: size, placement and rules
- TestFlight public link: set it up, limit it, and fix it when it does not work
- App Store promo codes and offer codes: how they work and their limits
- App Store A/B testing: product page optimization and Google Play experiments
- App Store in-app events: limits, badges and media sizes
- App Store Connect analytics: what each metric means
- Google Play store listing reports: clicks, CTR and the 2026 changes
- Google Play target API level requirements for 2026
- Android developer verification: what changed on September 30, 2026
- App Store and Google Play fees in 2026
- Google Play’s 12 testers for 14 days rule, explained
- How to transfer an app to another developer account
- How to remove an app from the App Store and Google Play
- The app account deletion requirement on the App Store and Google Play
- Google Play 16 KB page size requirement: dates, checks and fixes
- Declared Age Range and Play Age Signals: age assurance APIs for app developers
- Xcode 26 and the iOS 26 SDK requirement for App Store Connect
- The iOS privacy manifest: what to declare and how
- Accessibility Nutrition Labels: what to declare on your App Store page
- Google Play’s photo and video permissions policy, explained
- Google Play Billing Library version requirement: what you need to ship now
- App Tracking Transparency: when to ask and how
- App Store Connect API key: create it, store it, use it
- How to submit an In-App Purchase for review
- The Play Integrity API: what it checks and how to use it
- How long app review takes on the App Store and Google Play
- Google Play policy updates in 2026, with the deadlines
- Rosetta 2 end of support: what Mac developers need to do
- Monthly subscriptions with a 12-month commitment on the App Store
- Subscription Bundles, Suites and multiseat purchases on the App Store
- Sign in with Apple private relay email and the new private.icloud.com domain
- Migrating to StoreKit 2: what is deprecated and what replaces it
- App Store creative assets: headers and search result visuals in iOS 27
- On-Demand Resources is deprecated: moving to Background Assets
- Time Allowances in iOS 27: how your app gets its category
- Android Contact Picker and the new READ_CONTACTS rules
- The Android 17 location button and Google Play’s precise location rules
- Phone verification without READ_CALL_LOG: what replaces call-based checks
- Apple’s EU business terms from October 1, 2026
- Android 17 app memory limits: detect, test and stay under them
- The Android 17 local network permission
- Android 17 background audio hardening
- Cleartext HTTP and certificate transparency on Android 17
- Android 17: lock-free MessageQueue and static final fields
- Android 17 ignores orientation lock and resizability on large screens
- Android 17 behavior changes: a checklist for target SDK 37
- Preparing your app for iPhone Duo
- Google Play subscription grace period and account hold
- Getting your Android app ready for Googlebook
- The Android 17 Handoff API
- ADB Wi-Fi 2.0 wireless debugging
- Android AppFunctions: your app as on-device tools for AI agents
- Android Live Updates: how to qualify for a promoted notification
- App Store Connect webhooks
- Apple Foundation Models: on-device vs Private Cloud Compute
- Using Claude, Codex and other agents in Android Studio
- Gemini Nano for Android developers
- Firebase AI Logic: the App Check deadline and Gemini 2.5 shutdowns
- Swift 6.4: what’s new for app developers
- The Swift SDK for Android
- Publishing your game on Android Auto and Android Automotive OS
- Liquid Glass in a Compose Multiplatform app
- Expo SDK 58: when it ships and what changes
- Device Hub in Xcode 27
- Using the Xcode MCP server with Claude Code, Codex and other agents
- Xcode 27: release, requirements and point releases
- Gemma 4 and Android skills in Android Studio
- The UIScene life cycle is required in iOS 27
- Migrating to Android Gradle plugin 9
- Navigation 3 for Jetpack Compose
- Kotlin 2.4, 2.4.20 and the road to 2.5
- Upgrading your app build to Gradle 9
- The latest Compose BOM and Compose 1.12
- Compose Multiplatform 1.12 and the Hot Reload MCP server
- Opting out of Liquid Glass with UIDesignRequiresCompatibility
- Flutter 3.47 and the latest stable version
- React Native 0.87 and the latest version
- Android Studio Quail 4 and what comes next
- CocoaPods goes read-only: what changes and when
- Fixing YouTube Error 153 in embedded players
- Fixing “APNS token has not been set yet” in Firebase Messaging
- Older iOS Simulator runtimes and Rosetta destinations in Xcode
- Fixing the fmt consteval error in React Native on Xcode 26.4
Put your app in the ranking
Censuus ranks apps by the visits they draw and by sponsorship, no bots. Listing is free; sponsorship raises placement.