Managing permissions for the Zoom Marketplace

The Zoom Marketplace gives admins precise control over how users in their account discover, request, and interact with apps. From configuring app request settings and setting pre-approval requirements for published, development, and beta apps, to controlling app visibility and managing IP allow lists, these tools help ensure that only the right apps are accessible to the right people. The steps below walk through each of these permission areas so admins can tailor the Marketplace experience to fit their organization's needs.

Requirements for managing permissions for the Zoom Marketplace

Table of Contents

How to configure app request settings

Admins can configure whether users can request apps that administrators have not already approved, as well as request permission to create and publish apps.
Note: These settings do not apply to Marketplace admins.

To configure app request permissions for users on your account:

  1. Sign in to the Zoom Marketplace as an admin or owner.
  2. In the bottom-left corner of the page, click Marketplace admin.You will be taken to the Marketplace admin portal.
  3. In the side navigation, under Marketplace Management, click Permissions.
  4. Under App requests, disable or enable the following settings:

How to manage pre-approval of Marketplace apps

To have more control over apps used by members of the account, admins can require that all apps be approved by an admin before they can be added by users on the account. The admin can preemptively approve apps that are already cleared for use, while members of the account can request approval for apps, which will notify admins.

By default, any single-user account that has not yet accessed Marketplace has pre-approval disabled, whereas multi-user accounts that have not yet accessed Marketplace have pre-approval enabled. Single-user accounts will be reminded of pre-approval settings upon adding a user(s).

Manage admin pre-approval for published apps

Admins can manage pre-approval for published apps, which are those that have successfully completed Zoom's app review process. This category includes both listed apps (publicly available in the marketplace) and unlisted apps (accessible only via direct link).
To manage pre-approval for published apps:

  1. Sign in to the Zoom Marketplace as an admin or owner.
  2. In the bottom left corner of the page, click Marketplace admin.You will be taken to the Marketplace admin portal.
  3. In the side navigation, under Marketplace Management, click Permissions.
  4. Under Published apps, click the Require published apps to be approved by Marketplace admin toggle to enable or disable it.
  5. (Optional) Under Exceptions, check the following checkboxes to allow their associated exemption from the need for admin approval:

Manage admin pre-approval for development apps

Admins can manage pre-approval for development apps, which are apps currently being built by members of your account.

To manage pre-approval for development apps:

  1. Sign in to the Zoom Marketplace as an admin or owner.
  2. In the bottom left corner of the page, click Marketplace admin.You will be taken to the Marketplace admin portal.
  3. In the side navigation, under Marketplace Management, click Permissions.
  4. Under Development apps, click the Require development apps to be approved by Marketplace admin toggle to enable or disable it.

Manage admin approval for beta apps

Beta apps are those currently in the testing phase. These include apps by a third party that have been approved by the Zoom Marketplace team for beta testing, or apps in development in your organization. If you disable this permission, your account members can add apps without your (Marketplace admin) approval. To manage pre-approval for beta apps:

  1. Sign in to the Zoom Marketplace as an admin or owner.
  2. In the bottom left corner of the page, click Marketplace admin.You will be taken to the Marketplace admin portal.
  3. In the side navigation, under Marketplace Management, click Permissions.
  4. Under Beta apps, click the Require beta apps on the Zoom App Marketplace to be approved by Marketplace admin toggle to enable or disable it.
  5. (Optional) Under Exceptions, check the following checkboxes to allow their associated exemption from the need for admin approval:

How to manage who can remove admin-authorized apps

Admins can control whether admin-authorized apps require admin permission to be removed by users. To require authorization to remove apps:

  1. Sign in to the Zoom Marketplace as an admin or owner.
  2. In the bottom-left corner of the page, click Marketplace admin.You will be taken to the Marketplace admin portal.
  3. In the side navigation, under Marketplace Management, click Permissions.
  4. Under Admin authorized apps, click the Require admin authorized apps to be removed by an admin toggle to enable or disable it.
  5. (Optional) If the setting is enabled, under Exceptions, search for and select apps that users do not need authorization to remove.
  6. Click Save.

How to manage app visibility

Admins can limit the apps users can see to only pre-approved apps. While users will only be able to see and add pre-approved apps, admins can still view and manage apps that are not pre-approved. To manage app visibility:

  1. Sign in to the Zoom Marketplace as an admin or owner.
  2. In the bottom-left corner of the page, click Marketplace admin.You will be taken to the Marketplace admin portal.
  3. In the side navigation, under Marketplace Management, click Permissions.
  4. Under App requests, click the Show only approved apps toggle to enable or disable it.

How to manage the IP allow lists for Marketplace apps

Admins can restrict server-to-server apps to only be accessed from specific IP addresses or subsets of IP addresses. If no address is added, your apps can be accessed from any IP address. Admins can add new IP addresses or subnet ranges (CIDR) to the allow list, manage existing entries, and configure developer-specified IPs for apps added to the account.

Add a new IP address or subnet range (CDIR) to the IP allow list

To manually add a new IP address or subnet range (CDIR) to the IP allow list:

  1. Sign in to the Zoom Marketplace as an admin or owner.
  2. In the bottom left corner of the page, click Marketplace admin.You will be taken to the Marketplace admin portal.
  3. In the side navigation, under Marketplace Management, click Permissions.
  4. Under Security permissions, locate IP allow list for apps.
  5. Click + Add IP address/CDIR to add another address or subnet range.
  6. Enter the desired address or subnet range.
  7. Click Save.

Remove existing addresses or subnet ranges (CDIR) on the IP allow list

To manually remove existing addresses or subnet ranges (CDIR) on the IP allow list:

  1. Sign in to the Zoom Marketplace as an admin or owner.
  2. In the bottom left corner of the page, click Marketplace admin.You will be taken to the Marketplace admin portal.
  3. In the side navigation, under Marketplace Management, click Permissions.
  4. Under Security permissions, locate IP allow list for apps.
  5. Next to desired address, click the Delete icon  to delete an address or range.

Manage developer configured IPs for apps added to the account

While admins can manually manage their IP allow list, they can also add and remove addresses for specific apps that support the IP allow list. To manage developer configured IP addresses for the IP allow list:

  1. Sign in to the Zoom Marketplace as an admin or owner.
  2. In the bottom left corner of the page, click Marketplace admin.You will be taken to the Marketplace admin portal.
  3. In the side navigation, under Marketplace Management, click Permissions.
  4. Under Security permissions, locate IP allow list for apps.
  5. Click the Apps tab. All apps added to the account will be listed in alphabetical order.
  6. Click Has IPs to filter the list to apps that support IP allow lists.
  7. Click the name of the desired app.The IP addresses configured for the app by the developer will be displayed.
  8. Next to the IP address or range you want to allow, click Add.Note: To allow all IP addresses configured for the app, click Add all.
  9. (Optional) Next to the desired address, click Remove to remove the address.
    Note: To remove all addresses associated with the app, click Remove all.