OpenAI public plugin submission requirements — verified 2026-09-13

Authoritative sources checked on 2026-09-13 UTC:

Public submission requirements relevant to RUMBO IA CRM

  1. Submission type: With MCP for a remote MCP-only plugin.
  2. Submitter access: organization role with Apps Management Write / api.apps.write. Organization owners automatically have read/write.
  3. Publisher identity: verified individual or business identity matching the public listing.
  4. Final directory metadata: package name (<=64, restricted characters), semantic version (<=64), display name (<=30), short description (<=30), long description (<=4000), developer name (<=80), supported category, and up to 20 capabilities (each <=120).
  5. Listing materials: production-ready logo plus public HTTPS website, support, privacy, and terms URLs matching the publisher and actual data handling.
  6. Starter prompts: provide realistic, high-value workflows. The current RUMBO packet deliberately uses three validated prompts; this receipt does not assert a stricter public-doc maximum beyond the validated packet/schema constraint.
  7. Remote MCP: publicly accessible production HTTPS MCP URL. Do not submit a local or testing endpoint. Universal is the normal/default choice when one fixed URL works for all users and organizations.
  8. Domain verification: required for final remote-MCP directory submission. Serve the exact portal-issued token at the generated /.well-known/openai-apps-challenge URL and complete Verify Domain.
  9. Tool scan: select Scan Tools, inspect discovered metadata, fix issues, deploy, and scan again; final submission requires a successful current scan of the production MCP server.
  10. Tool annotations: every remote MCP tool must accurately expose readOnlyHint, openWorldHint, and destructiveHint, and the submission must provide a justification for every annotation value on every tool.
  11. Response/privacy hygiene: tool responses must not include unnecessary personal data, auth secrets, debug payloads, internal identifiers, or undisclosed user-related fields. Public policy URLs must match actual data handling.
  12. Review materials: a demo-recording URL is not listed as a mandatory field in the current public submission or remote-MCP review documentation. Demo credentials are required only when authentication is needed; screenshots are optional only when the plugin has UI.
  13. Tests: at least five positive and three negative reviewer-reproducible test cases, plus release notes.
  14. Availability: explicitly choose countries/regions in the portal.
  15. UI/CSP/screenshots: CSP applies only when the server returns UI. Screenshots are allowed only when the current tool scan reports a UI output template; RUMBO IA CRM v1 has no custom UI, so screenshots and CSP are not applicable.
  16. Review vs publication: Submit for Review starts review and does not publish. After approval, the developer separately chooses when to publish.
  17. Remote MCP review residency gate: projects with EU data residency cannot currently submit MCP plugins for review; use a project with global data residency.

RUMBO interpretation

  • MONEY_SPEND=0 remains invariant.
  • Current staging technical conformance does not grant production-host, submission, or publication authority.
  • Candidate GitHub HEAD must be reconciled before workspace-draft or public-directory readiness can be promoted.
  • The current rumbo-crm-openai-staging.val.run surface is technically testable, but its use as the production MCP URL remains separately unauthorized and the official review guidance says not to submit a testing endpoint.
  1. Final attestations: complete the policy attestations only after listing, server, prompts, tests, availability, and related submission materials have been confirmed accurate; only then may Submit for Review be selected.