GoHighLevel Marketplace

CRM

GoHighLevel (HighLevel) · CRM & sales clouds

Best for: Developers building CRM, marketing, sales, messaging, lead-management, automation, or agency operations products that need to connect to or embed within GoHighLevel.

Overview

GoHighLevel Marketplace is the app-discovery and distribution platform for GoHighLevel. Developers register applications, define OAuth scopes, configure redirect and webhook URLs, and publish standard or whitelabel apps for business accounts or agencies. Marketplace apps can use Location-level or Agency-level access and call HighLevel APIs with OAuth access tokens. The platform supports embedded app experiences, webhooks, external authentication with OAuth 2.0 and PKCE, free and paid plans, one-time or subscription pricing, free trials, and usage-based billing through wallet-charge APIs. Public listings are reviewed for naming, installation, functionality, performance, security, privacy, compliance, and user experience.

How to build & ship

  1. 1Create a developer account, register the marketplace app, and define the required scopes.
  2. 2Configure the redirect URI, authentication settings, and webhook URL; choose OAuth 2.0 or PKCE where applicable.
  3. 3Implement authorization-code exchange, token storage and refresh, then call the required HighLevel APIs.
  4. 4Build and test installation, setup, core functionality, error handling, and uninstall or disconnect flows; provide the required Loom demo.
  5. 5Configure listing, distribution, and pricing, submit for public review, and address review findings before publication.

Key APIs & SDKs

OAuth 2.0 authorization and token APIs
Contacts API
Conversations and messaging APIs
Webhooks
Marketplace wallet-charge and usage-based pricing API

Authentication & security

  • Primary auth: OAuth 2.0 authorization-code flow with access and refresh tokens
  • Also supports: OAuth 2.0 with PKCE for public clients, External authentication providers
  • Security review: Required
  • Public marketplace publication requires review of listing accuracy, installation, functionality, performance, least-privilege scopes, secret protection, security, privacy, compliance, and user experience, including a Loom demo of installation and core flows.
  • Submit a public app with listing details, installation and setup instructions, working functionality, applicable screenshots or media, and a Loom demo showing installation, configuration, main flows, expected outcome, authorizations, and relevant error or uninstall paths. HighLevel evaluates branding and naming, description accuracy, installation, performance and reliability, embedded responsiveness, least-privilege access, security, privacy, and compliance.
  • API 2.0 OAuth limits are 100 requests per 10 seconds per Marketplace app and resource, plus 200,000 requests per day per app and resource; response headers expose limit and remaining values.

Monetization

Onboarding
Not publicly specified
Commission
HighLevel currently deducts no commission and developers receive the entire customer payment; agency resale markups can change the end-user price.
Merchant of Record
Not publicly specified

Pros & cons for builders

Pros

  • First-party discovery and distribution inside the GoHighLevel ecosystem
  • Documented OAuth access at Location and Agency levels
  • Supports free, paid, subscription, one-time, free-trial, and usage-based commercial models

Cons

  • Public publication requires substantive review and a demo
  • Implementation requires OAuth scopes, redirect handling, token lifecycle management, and production-ready installation
  • Rate limits apply per app and resource

Frequently asked questions

How do I get my app approved on GoHighLevel Marketplace?

Submit a public app with listing details, installation and setup instructions, working functionality, applicable screenshots or media, and a Loom demo showing installation, configuration, main flows, expected outcome, authorizations, and relevant error or uninstall paths. HighLevel evaluates branding and naming, description accuracy, installation, performance and reliability, embedded responsiveness, least-privilege access, security, privacy, and compliance.

What authentication does GoHighLevel Marketplace use?

GoHighLevel Marketplace apps primarily authenticate with OAuth 2.0 authorization-code flow with access and refresh tokens, also supporting OAuth 2.0 with PKCE for public clients, External authentication providers.

How is GoHighLevel Marketplace monetized?

GoHighLevel Marketplace supports Free, Paid app, Usage-based. Typical commission: HighLevel currently deducts no commission and developers receive the entire customer payment; agency resale markups can change the end-user price.. Onboarding fee: Not publicly specified.

Is a security review required to list on GoHighLevel Marketplace?

Yes, GoHighLevel Marketplace requires a formal security or listing review before apps go live. Public marketplace publication requires review of listing accuracy, installation, functionality, performance, least-privilege scopes, secret protection, security, privacy, compliance, and user experience, including a Loom demo of installation and core flows.