Scan results

    Anker soundcore

    Android

    TRUSTish

    This app did not meet one of the trust checks in this assessment.

    The five trust checks

    Truly LocalNot applicable
    CITT SCORE
    84
    out of 100
    TRUSTish

    What It Means For You

    The code sends biometrics to soundcore/Anker cloud, and files to soundcore Anka AI. Another 4 data points are sent out to other third parties. Two findings are worth reading before this build handles anything a user would want kept to themselves. One is a high severity finding related to Network Security. One more is an open question the analysis could not settle.

    Method and Limitations

    Static analysis only. CITT reviewed the code of this build without running the app, so runtime behavior was not observed. The findings below describe the analyzed build and may not reflect server-side controls or later versions. CITT makes no determination about compliance with any law or platform policy; it reports what the artifacts contain and cites the published guidance so a reader can compare.

    How CITT scores an app

    Findings (49)

    Data Security

    2 total
    1 High
    1 Low

    Network Security

    10 total
    1 High
    4 Medium
    5 Low

    Code Security

    18 total
    8 Medium
    10 Low

    Privacy

    7 total
    2 Medium
    5 Low

    Third-Party Risk

    11 total
    11 Low

    Permission Usage

    1 total
    1 Low
    What changed since the last scan

    Version diff is on the Developer plan. See developer plans.

    Package

    com.oceanwing.soundcore

    Analysis Date

    Sep 10, 2026

    Was this analysis helpful?

    Feedback helps us improve our analysis

    View on Play Store

    What This App Collects

    The code sends biometrics to soundcore/Anker cloud; files to soundcore Anka AI; microphone input to soundcore/Anker cloud and unnamed third-party AI translation processors; and device identifiers to Google Firebase Cloud Messaging. Another 2 data points are sent out to other third parties.

    Other findings record data arriving from a server.

    Can This Be Trusted

    The code sends data out of the device to third-party recipients. Some of those flows are recorded on paths that lack a consent step.

    Two findings related to Code Security, Network Security and Third-Party Risk are worth reading before this build handles anything a user would want kept to themselves.

    What Needs Attention

    One finding needs attention, on how the app connects to servers. The detailed report states each of these in full.

    Scores

    • Overall: 84/100
    • Security: 79/100. Held down by how the app talks to servers and by how the app is put together.
    • Privacy: 94/100. Held down by the amount collected and by how little of it is recorded as consented to.
    • Data Security: 99/100
    • Network Security: 86/100
    • Code Safety: 84/100
    • Data Collection: 95/100
    • Data Sharing: 98/100
    • User Control: 95/100
    • Permission Usage: 99/100

    How This Was Checked

    CITT examined 206 files, traced 11 data flows and recorded 52 findings.

    On whether the user was asked first, across the 11 flows recorded, not only the outbound ones: 10 have an unsettled consent state either way; 1 runs on paths recorded without a consent step.

    About This Analysis

    This assessment was produced by CITT (Can I Trust That), an independent analysis service. Each statement above comes from one recorded claim, given here as a summary of what was found rather than as the evidence for it.

    Right of Reply

    Developer not yet contacted