Complete Publisher Attestation
Publisher Attestation is a voluntary program where you complete a self-assessment of your app's security, data handling, and compliance practices. The information you provide will be presented to your customers so they can better evaluate your app before enabling it for their organization.
Microsoft does not validate the information provided. The developer is solely responsible for the information they provide in the self-assessment.
Publisher Attestation applies to Web Apps (SaaS apps published through commercial marketplace in Partner Center). SaaS apps are currently in a private preview, if you are interested in participating please fill out this form. Attestation also includes all apps that integrate with the following Microsoft products:
- Time savings. Point your customers to your docs page where they can find your responses to commonly asked questions about your application.
- Accelerating an enterprise organization's security and compliance internal review timeline.
- Increased transparency.
- Differentiation from other apps in the store.
- Link to your docs page from your entry in AppSource, the Teams Admin Center, the Microsoft Admin Center, and the Teams Store.
- Qualification to start the Microsoft 365 Certification.
Publisher Attestation Process
Take part — The Publisher Attestation is now integrated within Partner Center. You can complete the attestation in a user friendly questionnaire all within Partner Center. Please refer to our Office Store and Commercial Marketplace user guides for the step-by-step process.
Await review feedback and results — During the consistency-check review, if analysts find blocking issues such as inadequate response data, you will be contacted for further information. Analysts will maintain an app activity log detailing review findings and your follow-up submissions throughout the process. Once it has been determined that your attestation report is complete and your responses are acceptable, your submission will be approved. Your approval status will be valid for one year from the time of submission.
If, within the interim approval status period, you update or modify your app or you receive notification of reported attestation submission misinformation you must revise and resubmit your documentation.
View the online portal — Once your attestation has been approved, your app will be listed in the online repository and will include the following:
- A submission timestamp.
- Links to a detailed copy of your submitted information.
- A declaration that the information provided is based on your submitted attestation report.
For example, See Microsoft Teams App Security and Compliance
Review and re-submission — Your Publisher Attestation will need to be resubmitted on an annual basis. When your attestation nears the one year mark you will receive a notification through Partner Center encouraging a resubmission of your attestation.
If your Publisher Attestation is not renewed before the expiration date, your apps attestation status will be revoked and your Publisher Attestation will be removed from the Microsoft docs pages.
By participating in the Publisher Attestation program, you are agreeing to these supplemental terms and to comply with any accompanying documentation that applies to your participation in the Publisher Attestation program with Microsoft Corporation ("Microsoft", "we", "us", or "our"). You represent and warrant to us that you have the authority to accept these Publisher Attestation supplemental terms on behalf of yourself, a company, and/or other entity, as applicable. We may change, amend or terminate these supplemental terms at any time. Your continued participation in the Publisher Attestation program after any change or amendment means you agree to the new supplemental terms. If you do not agree to the new supplemental terms or if we terminate these terms, you must stop participating in the Publisher Attestation program.