Skip to content
Doc Scanner2027 · AndroidBack to product

PUBLICATION DOCUMENTS

Privacy PolicyData Safety DisclosureData DeletionSupportTerms of UseThird-Party NoticesGoogle Play Publication Center
Doc Scanner 2027/Data Safety Disclosure

Data Safety Disclosure

This page describes the production data flows that must remain consistent with the Data safety form submitted in Google Play Console.

Play Console is authoritative.

This page is a preparation aid. The publisher must review the final signed AAB, enabled production services and current SDK disclosures immediately before submission.

User-facing summary

Local by default

Documents, PDFs, HTML OCR output and signatures stay in app-private storage.

Encrypted in transit

All optional network features use HTTPS. Cleartext traffic is disabled.

No account or ads

No Doc Scanner account, advertising SDK or behavioral analytics SDK is present.

Cloud requires action

AI OCR sends selected pages only after the user configures a provider and confirms the upload.

Production data-flow matrix

FeatureDataDestinationPurposeUser control
Scanning and local filesPage images, PDFs, HTML, titles, signaturesApp-private storageApp functionalityDelete, permanently delete, clear app data or uninstall
ML Kit diagnosticsDevice/app information, feature events, performance and error codesGoogleDiagnostics, analytics, maintenance and abuse preventionRequired by the SDK when used
Optional AI OCRSelected page images, OCR instruction, response, request metadataOpenAI using the user’s API keyApp functionalityOptional; confirmation required for each document job
Optional support paymentAmount, currency, payment, transaction, device and anti-fraud dataStripe (hosted Payment Link)Payment processing, fraud prevention and legal complianceOptional; starts only when selected
Android sharingUser-selected PDF or HTML fileApp selected by the userUser-requested sharingOptional; explicit system share sheet
Product websiteIP address and standard HTTP request metadataPeter’s Engineering web serverSecurity and service operationAvoid visiting or contact privacy support

Play Console worksheet

  • Data collection: answer Yes if the release includes ML Kit diagnostics, optional AI OCR or enabled Stripe support.
  • Data sharing: classify each provider using Google Play’s current service-provider and sharing definitions; do not assume that an SDK is exempt.
  • Photos and videos / Files and docs: disclose optional AI OCR because selected document images leave the device.
  • Device or other identifiers and diagnostics: reconcile with the current ML Kit SDK disclosure.
  • Financial information: reconcile with Stripe’s current Android SDK and payment-flow disclosure if Stripe is enabled.
  • Encryption in transit: Yes for network data.
  • Account creation: No. The app has no account system.
  • Deletion: local document deletion is available in-app; no developer account data exists.
  • Ads: No.

What is not transmitted by the default workflow

Document images and recognized text are not sent to Peter’s Engineering. The free Latin-script OCR path runs on device. Google states that ML Kit does not send input images, text or resulting output to its servers, although it does send SDK metrics described above.

Review trigger

Update this page and the Play Console form before enabling cloud backup, adding analytics or crash reporting, changing AI providers, enabling payments, adding accounts, changing retention, or introducing any new SDK that processes user data.

Doc Scanner 2027Peter’s Engineering
PrivacySupportTermsContact

© 2026 Peter’s Engineering · Last reviewed 17 August 2026