Hi,
we have enabled Adaptive MFA for our application. We are currently submitting the app for review in the Apple App Store, and Apple’s review team is using a dedicated test account that we have provided.
During the review process, the test account was classified as risky, which triggered Adaptive MFA. As a result, the reviewer is required to complete an MFA challenge via a verification code sent to the email address associated with the test account.
The issue is that the Apple reviewer does not have access to this email mailbox and therefore cannot retrieve the verification code. Apple does not provide us with a separate test account or access to the reviewer’s environment; we are required to provide a fully functional test account that allows the review team to access the application without additional intervention.
This currently prevents the Apple reviewer from completing the review.
Is it possible to
- disable Adaptive MFA for this specific test account, or
- exclude the test account from Adaptive MFA/risk-based MFA policies
We would like to keep Adaptive MFA enabled for all other users and only exempt the dedicated Apple App Store review account.