← Back to Scan

Scan · Android · com.thiepn.scan

Privacy Policy

Scan is designed as a local-first document scanner. This policy explains what the app accesses, what stays on your device, what third-party SDK infrastructure may collect, and how you can delete your data.

Last updated: September 28, 2026

1. Scope and developer

This policy applies to Scan, package com.thiepn.scan, developed under the THIEPN project. Scan does not require a THIEPN account and does not provide an app-managed cloud document service.

Privacy questions can be submitted through the publicScan GitHub issue tracker. Do not include confidential document content in a public issue.

2. Documents and content you choose to process

Scan can work with document scans, imported images, imported PDFs, OCR text, annotations, signatures, form values, folders, tags, document types, export settings, security settings and encrypted backups. These are used to provide the features you request.

Scan's own document library, OCR results and editing metadata are stored locally in app-private storage and a local Room/SQLite database. Scan's application manifest removes the app-levelINTERNET permission.

3. Camera and document scanner

Camera capture is provided through Google Play services' ML Kit Document Scanner. Scan itself does not request Android's camera permission for that flow. Google states that the document-scanner flow and document image processing operate on-device; the files you choose to accept are returned to Scan for local storage and processing.

Google Play services may download or update scanner models, logic and other resources before first use.

4. ML Kit diagnostics and SDK data

Scan uses ML Kit components. Google's ML Kit disclosure documentation states that ML Kit SDKs may collect limited technical data for diagnostics and usage analytics, including device information, app/package information, identifiers, performance metrics, API configuration, feature input/output size, feature version, event type and error codes. Google states that this listed diagnostic data is encrypted in transit and is not shared with third parties.

Google also states that ML Kit feature input content such as images and text, and the resulting ML output, is processed on-device rather than sent to Google servers as feature content.

5. Data Scan does not send to THIEPN servers

Scan does not upload your scanned pages, imported PDFs, OCR text, document titles, folders, tags, annotations, signatures, form values or backups to THIEPN servers. Scan has no first-party analytics, advertising SDK, account system or cloud synchronization service in v1.0.0.

6. Sharing and exports you initiate

When you choose Save, Share, export, or a workflow destination, Android may give another app or document provider access to the file you selected. That transfer is initiated by you and is then governed by the receiving service's privacy practices.

Encrypted .scanbak backups are created only when you request them and are saved or shared to a destination you choose.

7. Device authentication and security

Secure-vault features can use Android's biometric or device-credential authentication APIs. Scan receives the authentication result; it does not receive or store your biometric template.

Scan can encrypt protected document binaries and encrypted backup archives. No software can guarantee absolute security, and best-effort secure deletion cannot guarantee physical erasure on flash storage because of wear leveling.

8. Retention and deletion

Local Scan data remains on your device until you delete it, clear the app's data, or uninstall the app. Documents moved to Trash remain recoverable until you choose Delete forever. Files you previously exported outside Scan's app-private storage are not removed when you delete the Scan copy.

Uninstalling Scan normally removes its app-private working library. If you want to preserve documents before uninstalling or moving devices, export them or create a verified encrypted backup first.

9. Accounts, advertising and sales of data

Scan v1.0.0 does not provide user accounts, does not display ads, and does not sell personal information.

10. Changes to this policy

If Scan's data handling changes—for example through cloud sync, accounts, analytics, crash reporting or remote document processing—this policy and the Google Play Data Safety disclosure must be reviewed before that version ships. The date at the top of this page identifies the current policy revision.

11. Contact

For privacy questions or correction requests, use theScan GitHub issue tracker. If the question includes sensitive information, first open a minimal issue requesting a private contact channel rather than posting the sensitive material publicly.