Official Privacy Statement
ScanOrbit Privacy & Security Policy
ScanOrbit is engineered with a strict local-first architecture. Free tier operates 100% offline, while ScanOrbit Pro provides opt-in encrypted cloud sync.
Zero Data Harvesting
We do not sell, monetize, inspect, or log your document contents, personal notes, or device identifiers.
Offline Core Architecture
The free core scanner executes 100% on your device processor without requiring accounts or network transmission.
Local Sandboxed Storage
All images, thumbnails, and generated PDFs reside securely in your operating system’s isolated application sandbox.
Opt-in Encrypted Cloud Sync
Cloud storage is exclusively enabled for ScanOrbit Pro subscribers who explicitly sign in with Google to sync across devices.
1. Overview & Privacy Philosophy
ScanOrbit ("we", "our", or "the app") is a high-performance document scanning and PDF productivity suite designed around local-first privacy.
Unlike traditional scanner apps that force mandatory account registration, sell user data to advertising brokers, or upload unencrypted documents to centralized servers, ScanOrbit keeps your documents under your complete control. Your sensitive contracts, invoices, personal ID cards, and medical records are never inspected or monetized.
2. Information & Data Handling
• Free Tier Users: ScanOrbit operates with zero cloud infrastructure for free accounts. We do not collect names, email addresses, phone numbers, or passwords. Your documents remain strictly inside your device sandbox.
• ScanOrbit Pro Subscribers: If you choose to subscribe to ScanOrbit Pro, Google Sign-In is used to authenticate your account and securely synchronize your encrypted documents across your devices (up to 2GB cloud storage).
• Payment Processing: In-app subscriptions are processed directly through Google Play and RevenueCat. We never receive or store your credit card numbers or banking information.
• Telemetry & Advertising: ScanOrbit contains zero third-party advertising trackers and zero user tracking networks.
3. Device Permissions & How They Are Used
ScanOrbit requests only the permissions necessary to provide its document scanning capabilities:
• Camera Permission (android.permission.CAMERA): Used exclusively while the scanner is active to stream camera frames to native machine learning (Google ML Kit on Android, Apple VisionKit on iOS) for automatic edge detection. Frames are processed entirely in memory.
• Photo Library Access: Used only if you choose to import existing photos or receipts from your gallery.
• Local Network / Wi-Fi: Used only when you initiate the "Scan to PC" feature to transfer files directly to your computer browser over your local Wi-Fi network.
• Blocked Permissions: ScanOrbit explicitly denies permissions for fine location tracking and background audio recording.
4. Data Storage & Local Sandbox Architecture
• Local Sandbox: All document pages, thumbnails, and compiled PDFs are stored in an isolated app directory protected by OS sandboxing.
• Indexing: Metadata (document title, page count, file size, timestamp) is indexed locally using encrypted MMKV key-value storage.
• PDF Compilation: PDFs are generated on-device using expo-print with bundled assets, ensuring no external servers render your files.
• Data Deletion: Deleting a document or choosing "Delete everything" in Settings instantly and permanently wipes all files and index records from your device storage.
5. Third-Party Services & Subprocessors
• Native Machine Learning: Edge snapping and text recognition use Google ML Kit / Apple VisionKit libraries bundled within your operating system's native runtime, operating offline on-device.
• Subscription Infrastructure: RevenueCat and Google Play Billing are utilized solely to verify active ScanOrbit Pro subscription status.
• Exporting Files: When you use the system Share Sheet (e.g., WhatsApp, Gmail, Drive), you interact directly with the chosen recipient app under their respective privacy policies.
6. Compliance with GDPR, CCPA, and App Store Guidelines
• General Data Protection Regulation (GDPR): Local document processing ensures full data sovereignty. Pro cloud users can delete their account and associated cloud backups at any time.
• California Consumer Privacy Act (CCPA): ScanOrbit does not sell, share, or monetize personal information or document data.
• Children's Online Privacy Protection Act (COPPA): ScanOrbit does not collect personal information from children or adults.
7. Contact & Support
For any inquiries regarding this Privacy Policy or data security practices, please contact us at support@simplescan.app.