Security Disclosure
Last Updated: May 15, 2026Our commitment to security is fundamental to Scoop Docs. We believe in transparency so that users can trust the integrity of their stored documents.
AES-256 Encryption
All documents stored within Scoop Docs are encrypted using AES-256 — the Advanced Encryption Standard with a 256-bit key. This is the same encryption standard used by financial institutions and government agencies for top-secret information.
Offline Architecture
The most secure data is data that cannot be accessed remotely. Scoop Docs operates entirely offline. It does not request the INTERNET permission. This architectural decision mathematically eliminates remote network attacks, man-in-the-middle attacks, and server breaches.
On-Device Document Scanning
Document scanning uses your device's camera with all processing occurring on-device. Camera frames are held only in volatile memory during processing and are instantly discarded once the scan is complete. No image data is ever written to permanent storage in raw form.
No Plaintext Storage
Documents are never stored in plaintext on the device. All content is encrypted before being written to the filesystem. Encryption keys exist only in volatile memory (RAM) while the app is unlocked and are wiped from memory when the app is closed or locked.
Vulnerability Reporting
If you are a security researcher and believe you have found a vulnerability in Scoop Docs, please responsibly disclose it to us at security@scooplabs.tech. We take all reports seriously and respond promptly.
Have questions about this policy?