itsWritten Security & Privacy Scorecard
by Filippo Carlo Cilia · iOS
Writing stays on the device and is not shared with any third-party services, advertisers, or analytics platforms. No external companies receive notes, usage habits, or personal information during normal use.
Best for
Writers who want their notes kept entirely on-device
Findings
- 0 critical
- 0 high
- 0 medium
- 2 low
- 7 info
1 issue identified across security and privacy analysis.
Top security issues
- SwiftData store uses default file protection (NSFileProtectionCompleteUntilFirstUserAuthentication), leaving user documents readable on jailbroken or forensically-imaged devices after first unlock
- Missing PrivacyInfo.xcprivacy manifest leaves NSURLSession and NSUserDefaults API usage undeclared, risking App Store rejection on future updates
- Network endpoint destinations are entirely opaque due to binary encryption — full data flow assessment is not possible from metadata alone
Top privacy issues
- Missing PrivacyInfo.xcprivacy means App Store privacy nutrition label is incomplete and does not reflect the app's actual (privacy-respecting) practices
- Unknown network request destinations — XMLParser and JSONDecoder usage suggests external data fetching but targets cannot be verified without binary decryption
- On-device Apple Intelligence with permissiveContentTransformations processes user document content, though entirely locally with no data leaving the device
Full analysis
What This Means for You
Writing stays on the device and is not shared with any third-party services, advertisers, or analytics platforms. No external companies receive notes, usage habits, or personal information during normal use.
Recommendation: Very Secure
Best For: Writers who want their notes kept entirely on-device
Key Findings
Data Security - 1 finding (1 low)
Network Security - 2 findings (2 info)
Code Safety - 0 findings
Privacy - 2 findings (2 info)
Privacy Concerns
What Data is Collected
No personal data collection was identified. Notes and writing remain entirely on the device and are not uploaded, indexed, or processed by any external service.
Third-Party Data Sharing
No third-party services were identified. User information is not shared with advertising networks, analytics companies, or any other external parties.
Understanding the Scores
- Security: 99/100
- Privacy: 100/100
- Data Security: 97/100
- Network Security: 100/100
- Code Safety: 99/100
- Data Collection: 100/100
- Data Sharing: 100/100
- User Control: 100/100
Positive Security Features
- Notes are stored locally on the device with no external upload or sync to third-party servers
- No advertising or analytics frameworks are present in the app
- No third parties receive any information about user content, usage patterns, or personal details
Areas for Improvement
- Local data storage practices could be further hardened to strengthen protection against unauthorized access by other apps on the same device.
- Some network configuration settings are noted for review in a future update, though they present no immediate concern for user data.
About This Analysis
App Details
- App: cilia.filippo.itsWritten
- Package: cilia.filippo.itsWritten
- Version: 1.2 (Build 65)
- Scan Date: 2026-04-02
- Findings: 0 critical, 0 high, 0 medium, 2 low, 7 informational
Versions & scan history
| Scan | Date | Overall score |
|---|---|---|
| #7 (current) | 99/100 |