How Ramisun approaches Store publishing for software vendors whose product needs enterprise distribution — re-architecting for certification, preparing for security review, and managing submission through to a live listing.
An ISV reaches the ServiceNow Store by enrolling in the Technology Partner Program, obtaining Build Partner designation, and developing a scoped application on provisioned vendor instances rather than a personal developer instance. Where a working prototype was built in the global scope it generally requires re-architecture rather than remediation. The application must then meet certification criteria for access control, credential handling, input validation, data handling, dependencies and upgrade safety before submission for app and listing review.
A frequent position for software vendors selling into large enterprises. The majority of target buyers already run ServiceNow, and every deal stalls in bespoke vendor security review — adding months to a sales cycle the business cannot afford to lengthen.
The Store offers distribution through a channel procurement and security teams already trust. The obstacle is usually architectural: the working product was built as a prototype in the global scope on a personal developer instance, and neither is eligible for Store certification.
No amount of remediation to a global-scope prototype makes it certifiable. Recognising that early is what keeps the timeline honest.
Built in the global scope, colliding with platform tables and ineligible for Store certification without re-architecture.
Developed on a personal developer instance rather than provisioned vendor instances, which are the only environment Store apps can be submitted from.
Enterprise buyers were each running their own bespoke vendor security review before purchase.
Certification is treated as a construction standard rather than a final inspection — the decisions that make listing achievable are made in week one.
Assessed the existing build against Store requirements and reported honestly that this was a rebuild rather than a remediation, with the effort scoped before commitment.
Supported Technology Partner Program enrolment and Build Partner designation, and got vendor instances provisioned — frequently the longest-lead item.
Rebuilt the application in its own scope with an explicit API boundary, a designed data model and planned extension points.
Built the least-privilege role and ACL model alongside the data model, with input validation and platform credential storage as build standards.
Ran a full manual review against the published certification criteria, remediated every finding, and verified each fix before submitting.
Prepared the test plan, design document and installation guide, managed app and listing review, and shaped listing content for enterprise buyers.
Rebuilt as a scoped application on vendor instances, upgrade-safe by construction.
Application certified and published to the ServiceNow Store.
Buyers procure through a channel where certification has already been performed.
A regression and recertification process defined before listing, not after the first break.
Book a free consultation for an honest readiness assessment — whether you are looking at remediation or a rebuild, and what each would actually take.
Explore the Service → Book Free Consultation →Every quarter without the right platform is revenue and efficiency left on the table. Tell us your challenge — get a real plan back, not a sales script.
A ServiceNow consultant will reach out within one business day to schedule your session.