TLDR:
The vibe coding startup “Anything” got nuked from iOS.
Their response was to hijack Apple’s most sacred protocol to build a shadow ecosystem.
If you are a developer operating in the Apple ecosystem, you already know the unwritten rule:
you do not build a platform that threatens the thirty percent App Store tax.
Apple will tolerate a lot of things, but they will never tolerate a shadow app store operating inside their walled garden.
On March 26th, Apple brought the hammer down on a startup called Anything.
They are an $11 million, high-momentum platform built entirely around natural language (vibe coded) app generation.
Users type a prompt, and the AI spits out a functional, interactive mini-application.
It is a powerful tool for gig workers, creators, and indie developers who want to bypass Xcode and just ship products.
Apple cited Guideline 2.5.2, which prohibits apps from executing dynamic code that changes their functionality after the initial App Store review.
Now, people were adding more and more vibe coded apps to the App Store, thanks to Anything!
Apple deleted Anything from the store, assuming the startup would quietly die.
Instead, the Anything team executed one of the most brilliant, ruthless engineering pivots in recent memory ;)
They bypassed the App Store entirely and moved their generative AI builder directly into iMessage.
Aaaand the massive privacy paradox it creates for Apple, and why this is the ultimate checkmate against the App Store monopoly is what we describe in this article!
The Guideline 2.5.2 Trap
To understand the pivot, you have to understand the hypocrisy of the ban.
Apple claims Guideline 2.5.2 is purely about security.
They argue that if an app generates and runs unreviewed code on the device, it is a security risk.
But the reality of the iOS ecosystem tells a different story.
Apple is actively building Anthropic’s Claude models into Xcode.
They are perfectly fine with AI writing code, as long as that code goes through their proprietary macOS tooling, requires a paid developer account, and ultimately pays the toll to the App Store.
The Anything app was a threat because it democratized the entire pipeline.
You did not need Xcode. You did not need a Mac. You just needed a prompt.
When Apple started blocking their updates in December, CEO Dhruv Amin tried to play by the rules.
The team pushed a compliance update that redirected all generated apps to Safari.
They removed the native iOS execution entirely.
Apple looked at the browser workaround, rejected the update, and banned the app anyway ;)
The iMessage Horse
When you are locked out of the front door, you find an open window.
If Apple will not let you ship an app container, you use the container Apple pre-installs on every single iPhone: Messages.
By pivoting the Anything interface into iMessage, the team turned Apple’s default communication protocol into an integrated development environment :)
Now, iMessage is not just a text protocol.
It supports rich links, interactive extensions, and dynamic payloads.
By hooking their AI agent into an iMessage bot or extension flow, a user can simply text a prompt to the Anything agent.
The agent processes the request in the cloud, generates the application logic, and returns a fully functional, interactive web app wrapper right inside the chat thread!
You do not need to download an app from the App Store.
You do not need to pass an Apple review.
You are just texting a contact, and that contact happens to be a frontier coding agent that ships software directly into your chat bubbles!
The Privacy Paradox
This is where the engineering pivot becomes a massive corporate liability.
Apple has spent billions of dollars marketing iMessage as the ultimate fortress of privacy.
Their entire brand identity relies on the promise of end-to-end encryption.
In fact, they constantly remind regulators and consumers that they cannot see what you text.
By building a shadow app store inside iMessage, Anything has trapped Apple in a brutal paradox.
If Apple wants to kill the Anything bot, they have two options, and both are terrible.
- Option A: They start actively scanning and blocking specific iMessage payloads to stop the dynamic code delivery.
- If they do this, they have to publicly admit they are monitoring encrypted chat traffic, which destroys their privacy narrative overnight.
- Option B: They cripple the rich messaging architecture of iMessage entirely, rolling back the interactive features that make their messaging app competitive with WhatsApp and Telegram.
Anything did not just find a workaround. They weaponized Apple’s own marketing against them.
If you have been following reverse-engineering battles, this playbook looks incredibly familiar.
It is the exact same dynamic we saw with Beeper Mini, the startup that reverse-engineered the iMessage protocol to give Android users blue bubbles.
Apple could not beat Beeper Mini in court, so they pushed emergency server-side infrastructure updates to break the hardware credential spoofing.
They played a game of architectural whack-a-mole until the startup ran out of resources.
We are about to see the exact same war of attrition play out here.
Apple is not going to sit back and let a $100 million startup use iMessage to bypass their 30 percent revenue cut.
They will likely push obscure security updates, throttle the API limits for rich links, or flag the Anything bot as spam, who knows?
This is amazing though!
Developers are tired of renting space in a walled garden.
Anything just proved that if you squeeze builders hard enough, they won’t just leave the ecosystem.
They will figure out how to build a better system right inside your own walls.
In case we are meeting for the first time, come over here, it’ll be worth the roller coaster of articles that are gonna come up in the next few weeks.