itsWritten Security & Privacy Scorecard

by Filippo Carlo Cilia · iOS

99
Overall trust score
Very Secure
99
Security
100
Privacy

Writing stays on the device and is not shared with any third-party services, advertisers, or analytics platforms. No external companies receive notes, usage habits, or personal information during normal use.

Best for

Writers who want their notes kept entirely on-device

Findings

  • 0 critical
  • 0 high
  • 0 medium
  • 2 low
  • 7 info

1 issue identified across security and privacy analysis.

Top security issues

  • SwiftData store uses default file protection (NSFileProtectionCompleteUntilFirstUserAuthentication), leaving user documents readable on jailbroken or forensically-imaged devices after first unlock
  • Missing PrivacyInfo.xcprivacy manifest leaves NSURLSession and NSUserDefaults API usage undeclared, risking App Store rejection on future updates
  • Network endpoint destinations are entirely opaque due to binary encryption — full data flow assessment is not possible from metadata alone

Top privacy issues

  • Missing PrivacyInfo.xcprivacy means App Store privacy nutrition label is incomplete and does not reflect the app's actual (privacy-respecting) practices
  • Unknown network request destinations — XMLParser and JSONDecoder usage suggests external data fetching but targets cannot be verified without binary decryption
  • On-device Apple Intelligence with permissiveContentTransformations processes user document content, though entirely locally with no data leaving the device

Full analysis

What This Means for You

Writing stays on the device and is not shared with any third-party services, advertisers, or analytics platforms. No external companies receive notes, usage habits, or personal information during normal use.

Recommendation: Very Secure

Best For: Writers who want their notes kept entirely on-device

Key Findings

Data Security - 1 finding (1 low)

Network Security - 2 findings (2 info)

Code Safety - 0 findings

Privacy - 2 findings (2 info)

Privacy Concerns

What Data is Collected

No personal data collection was identified. Notes and writing remain entirely on the device and are not uploaded, indexed, or processed by any external service.

Third-Party Data Sharing

No third-party services were identified. User information is not shared with advertising networks, analytics companies, or any other external parties.

Understanding the Scores

  • Security: 99/100
  • Privacy: 100/100
  • Data Security: 97/100
  • Network Security: 100/100
  • Code Safety: 99/100
  • Data Collection: 100/100
  • Data Sharing: 100/100
  • User Control: 100/100

Positive Security Features

  • Notes are stored locally on the device with no external upload or sync to third-party servers
  • No advertising or analytics frameworks are present in the app
  • No third parties receive any information about user content, usage patterns, or personal details

Areas for Improvement

  • Local data storage practices could be further hardened to strengthen protection against unauthorized access by other apps on the same device.
  • Some network configuration settings are noted for review in a future update, though they present no immediate concern for user data.

About This Analysis

App Details

  • App: cilia.filippo.itsWritten
  • Package: cilia.filippo.itsWritten
  • Version: 1.2 (Build 65)
  • Scan Date: 2026-04-02
  • Findings: 0 critical, 0 high, 0 medium, 2 low, 7 informational

Versions & scan history

ScanDateOverall score
#7 (current) 99/100