Apps
146 app pages, the newest scanned on 1 October 2026. Each page covers one build: its score, its label and the file behind every finding.
- 99out of 100TRUSTED
What it means for you
All gameplay activity remains on the device. No data is transmitted over the network, and no user information is retained after a session ends. UIDevice access is limited to detecting screen orientation for layout purposes.
- 1 finding
- Privacy 1
- 98out of 100TRUSTED
Wikipedia
iOSWhat it means for you
App usage is tracked only by Wikipedia's own first-party analytics, with consent collected at onboarding. Donation payments are processed through Adyen and Apple Pay. The build includes no code to send user data to advertising networks, behavioral tracking companies, or third-party analytics services.
- 1 finding
- Code Security 1
- 98out of 100TRUSTED
What it means for you
Signal stores messages, voice and video calls, and contact data on-device. The build includes no code to send user data to analytics, advertising, attribution, or crash-reporting services. Third-party libraries are limited to UI components (SDWebImage, Lottie, BonMot) and data utilities (SwiftProtobuf, GRDB, libPhoneNumber_iOS). MobileCoin handles optional peer-to-peer payments.
- 3 findings
- Data Security 1
- Network Security 1
- Permission Usage 1
- 97out of 100unTRUSTED
SUUUUUU
AndroidWhat it means for you
The build includes code to authenticate users through Google Sign-In, Apple Sign-In, and SmartAuth, a third-party phone verification service. The app includes code to send app usage data to Firebase Analytics, and code to store user content in Google's Firestore cloud database. Push notification delivery is handled by Firebase Cloud Messaging.
- 1 finding
- Code Security 1
- 96out of 100TRUSTED
Google Authenticator
AndroidWhat it means for you
The build may include code to pass usage data and device activity to the app developer and any integrated services. Review the category summary below for details.
- 3 findings
- Code Security 2
- Privacy 1
- 95out of 100TRUSTish
What it means for you
Browsing history and tracker-block statistics stay on the device, with no third-party analytics, advertising, or crash-reporting SDKs present in this build. The bundled libraries (GRDB, Lottie, Kingfisher, and others) are utility components with no data-collection function. Telemetry is first-party and anonymous, with no persistent device identifiers and no search query content.
- 2 findings
- Code Security 2
- 95out of 100TRUSTED
What it means for you
The build may include code to pass usage data and device activity to the app developer and any integrated services. Review the category summary below for details.
- 3 findings
- Data Security 1
- Code Security 2
- 95out of 100TRUSTED
Proton Drive: Cloud Storage
AndroidWhat it means for you
File content, names, sizes, and metadata are end-to-end encrypted, meaning Proton cannot read stored files. The app includes code to send crash diagnostics to Sentry using a random identifier that cannot be linked to a Proton account. The build includes no code to send data from normal use to advertising, analytics, or attribution companies.
- 3 findings
- Data Security 1
- Network Security 1
- Code Security 1
- 94out of 100TRUSTish
What it means for you
Yes on the security of the code, with what the build includes code to send worth reading first. The build includes code to send financial data to RevenueCat, and advertising identifiers to RevenueCat. None of the findings recorded rises to the level of putting a user at risk.
- 20 findings
- Data Security 1
- Network Security 2
- Code Security 5
- Privacy 10
- Third-Party Risk 1
- Permission Usage 1
- 94out of 100TRUSTED
What it means for you
Ente Auth stores two-factor authentication secrets locally with strong encryption, excluded from iCloud backups by default. The app includes code to send crash reports to Sentry, with code that strips authentication tokens and cookies from them first. The build includes no code to send user data to advertising, analytics, or attribution services.
- 0 findings
- 93out of 100NOT ASSESSED
George Romania
AndroidWhat it means for you
The build includes code to send analytics data to BCR's own infrastructure rather than directly to third-party companies, limiting external data exposure. Sentry, PostHog, and LUX telemetry are all proxied server-side. Firebase analytics collection is disabled by default.
- 8 findings
- Data Security 2
- Network Security 1
- Code Security 4
- Third-Party Risk 1
- 92out of 100unTRUSTED
Widgetsmith
iOSWhat it means for you
Health, calendar, contacts, reminders, and photos data stays on the device and is not transmitted to third parties. Location, when granted for weather widgets, is kept out of advertising and analytics flows. Ad delivery uses Google Mobile Ads with ATT-based consent, and the build includes code to manage subscriptions through RevenueCat and Superwall.
- 1 finding
- Code Security 1
- 92out of 100TRUSTED
What it means for you
Health and workout metrics stay on the device and are not sent to any third-party service. The app includes code to send app usage and session data to Mixpanel for analytics and to Adjust for attribution. Advertising identifier access requires explicit user consent before it can be activated.
- 92out of 100TRUSTish
Session - Private Messenger
AndroidWhat it means for you
The build may include code to pass usage data and device activity to the app developer and any integrated services. Review the category summary below for details.
- 4 findings
- Data Security 1
- Network Security 1
- Code Security 2
- 92out of 100TRUSTish
Proton Authenticator & 2FA
AndroidWhat it means for you
The build may include code to pass usage data and device activity to the app developer and any integrated services. Review the category summary below for details.
- 2 findings
- Data Security 1
- Code Security 1
- 92out of 100NOT ASSESSED
Drop Authenticator
AndroidWhat it means for you
The build may include code to pass usage data and device activity to the app developer and any integrated services. Review the category summary below for details.
- 3 findings
- Data Security 2
- Code Security 1
- 92out of 100TRUSTish
What it means for you
Financial transactions and budget data are stored in Firebase and optionally synced via Dropbox. Analytics and crash reporting through Firebase are disabled until the user explicitly consents, and ad networks (Google AdMob, Facebook Audience Network) are never activated for paying subscribers. Users who connect bank accounts do so through Salt Edge, a third-party financial data aggregation service.
- 3 findings
- Data Security 1
- Code Security 1
- Third-Party Risk 1
- 92out of 100NOT ASSESSED
Lumo by Proton
AndroidWhat it means for you
The app includes code to send crash reports to Proton's own GDPR-governed servers, not to external analytics companies. On-device speech processing via Vosk means audio never leaves the device. Google Play services handle billing and app delivery, with no third-party advertising, analytics, or behavioral tracking SDKs present.
- 3 findings
- Network Security 1
- Code Security 1
- Privacy 1
- 91out of 100NOT ASSESSED
SAP Analytics Cloud
AndroidWhat it means for you
The app includes code to exchange data with the user's organization SAP backend over HTTPS. Firebase Installations registers a device identifier with Google as part of app setup. Enterprise usage telemetry is collected only when enabled by an organization administrator and requires a consent screen before activation.
- 4 findings
- Data Security 3
- Code Security 1
- 91out of 100unTRUSTED
SAP for Me
AndroidWhat it means for you
The app includes code to send usage and interaction data to Firebase Analytics and Adobe Experience Platform for performance tracking, and to Qualtrics for optional in-app surveys. TrustArc consent management controls whether Adobe analytics tracking is active based on user preferences. Locally stored data is protected, and all traffic to company systems uses secure connections.
- 6 findings
- Data Security 1
- Network Security 1
- Code Security 2
- Privacy 2
- 90out of 100unTRUSTED
Revolut Business
AndroidWhat it means for you
The build includes code to send App usage, install attribution, and performance data to AppsFlyer, Firebase Analytics, Firebase Crashlytics, and Branch.io. The build includes code to send Identity verification data to Onfido during onboarding. Financial account and transaction data remain within Revolut's own infrastructure, and financial databases are stored in encrypted form on the device rather than backed up to third-party cloud services.
- 7 findings
- Network Security 2
- Code Security 5
- 90out of 100NOT ASSESSED
Mastodon
AndroidWhat it means for you
The binary bundles no third-party analytics, advertising, or tracking SDKs, and static analysis finds no data-broker or ad-network endpoints. Network traffic in the binary is directed only to the user's chosen Mastodon instance and the developer's own infrastructure. The build includes code that encrypts push notification content on the device, so the request built for Google's notification service contains only routing metadata in readable form.
- 7 findings
- Data Security 1
- Network Security 1
- Code Security 4
- Privacy 1
- 89out of 100TRUSTish
What it means for you
HealthKit and workout GPS route data stays on the device and is not shared with advertising networks or data brokers. Analytics and in-app messaging are integrated with TelemetryDeck (privacy-preserving hashed identifiers) and Customer.io (EU data residency), with subscription management via RevenueCat. The backend runs on developer-controlled infrastructure at fitwoody.camp, keeping user data outside third-party cloud services.
- 2 findings
- Code Security 1
- Privacy 1
- 89out of 100NOT ASSESSED
The White House
AndroidWhat it means for you
No advertising networks, attribution trackers, or behavioral analytics infrastructure is present in this build, and no data broker sharing is configured. The build links OneSignal and Firebase Cloud Messaging for push notifications, and Firebase Installations for device registration. Barcode scanning is configured for on-device processing only; authentication credentials are stored locally and excluded from cloud backup.
- 5 findings
- Data Security 1
- Network Security 1
- Code Security 3
- 89out of 100TRUSTED
What it means for you
The app may include code to pass standard usage and device data to the app developer and integrated services. The breakdown below lists the data types and third parties involved.
- 4 findings
- Data Security 1
- Code Security 3
- 89out of 100NOT ASSESSED
What it means for you
The build includes the TelemetryDeck and Sentry SDKs, whose code reads app usage and crash data, both operating under GDPR-compliant terms with EU data residency and no personal identifiers. No advertising networks, behavioral trackers, or device fingerprinting tools are present. Health-related data is processed on-device only and not transmitted to external servers.
- 7 findings
- Data Security 2
- Code Security 3
- Privacy 2
- 89out of 100NOT ASSESSED
mBank SK
AndroidWhat it means for you
The build includes code to pass performance and push notification data to Firebase, which has Analytics explicitly disabled, limiting telemetry to delivery and performance metrics. The Synerise customer engagement platform is named in code as the destination of behavioral data used to personalize the user experience. Biometric authentication uses the FaceTec face recognition SDK for identity verification.
- 6 findings
- Data Security 1
- Network Security 1
- Code Security 2
- Third-Party Risk 1
- Permission Usage 1
- 88out of 100unTRUSTED
AAWireless for Android Auto™
AndroidWhat it means for you
The build includes code to send user data to the developer's own backend systems, and contains no code to sell it to data brokers or advertising networks. No vehicle telemetry is part of the app's data collection despite its automotive hardware integration. Firebase Crashlytics and Firebase Analytics are bundled for crash reporting and usage metrics.
- 11 findings
- Network Security 1
- Code Security 7
- Privacy 2
- Third-Party Risk 1
- 88out of 100TRUSTish
Airbnb
iOSWhat it means for you
The app may include code to pass standard usage and device data to the app developer and integrated services. The breakdown below lists the data types and third parties involved.
- 5 findings
- Data Security 1
- Network Security 2
- Code Security 1
- Privacy 1
- 88out of 100TRUSTish
ChatGPT
iOSWhat it means for you
The app may include code to pass standard usage and device data to the app developer and integrated services. The breakdown below lists the data types and third parties involved.
- 88out of 100unTRUSTED
What it means for you
Trip content, itineraries, and booking details are not shared with advertisers, data brokers, or cross-app tracking systems. AI-assisted features, including email parsing and itinerary suggestions, run entirely on the device. The build includes Mixpanel and Sentry code that reads usage and crash data to support app performance.
- 3 findings
- Data Security 1
- Code Security 2
- 88out of 100unTRUSTED
Kia Access
AndroidWhat it means for you
The build includes code to send usage and vehicle data to Firebase Analytics, Dynatrace, and LexisNexis Risk Solutions. The crash reports the code builds for Firebase Crashlytics include vehicle identifiers such as VIN and license plate numbers alongside the full vehicle record. The build includes code to send navigation activity to Google Maps and HERE Maps. SiriusXM integration handles entertainment connectivity.
- 13 findings
- Data Security 3
- Network Security 4
- Code Security 4
- Privacy 1
- Third-Party Risk 1
- 88out of 100NOT ASSESSED
What it means for you
The app includes code to pass app usage data, including session behavior and feature interactions, to Firebase Analytics, Amplitude Analytics, and Google App Measurement. When the user consents via Apple's App Tracking Transparency prompt, the build includes code to pass attribution data to Adjust and Facebook SDK to measure ad campaigns. OneSignal handles push notifications, and the app includes code to pass subscription and paywall activity to RevenueCat and Superwall.
- 6 findings
- Data Security 1
- Code Security 2
- Privacy 1
- Third-Party Risk 2
- 88out of 100TRUSTish
What it means for you
Financial data is stored locally on the device, and no developer-owned server is named in code as a destination for it. The app includes code to send app usage and crash data to Firebase Analytics and Crashlytics. For users who consent to ads, the app includes code to send ad interaction data to Google AdMob; premium subscribers bypass ads entirely.
- 1 finding
- Data Security 1
- 87out of 100unTRUSTED
Bono
AndroidWhat it means for you
Authentication is handled via Google Sign-In, Apple Sign-In, and FIDO2 passkeys. Push notifications are handled through Firebase, and the build includes code to pass a device identifier to Google. The app includes code to send install referral data to Google when the app is first installed.
- 8 findings
- Data Security 2
- Network Security 2
- Code Security 3
- Privacy 1
- 87out of 100unTRUSTED
What it means for you
Journal and note content is encrypted before syncing to the developer's own Firebase storage. No advertising, attribution, or broad analytics SDKs are present. Error reporting via Sentry is configured to limit behavioral data capture, and the build includes code for authentication through Google Sign-In and Firebase.
- 3 findings
- Network Security 1
- Code Security 1
- Privacy 1
- 86out of 100TRUSTish
MyNISSAN®
iOSWhat it means for you
The build includes code to send vehicle commands and account data to Nissan's own servers, not third-party platforms. The build includes code to pass crash reports to Firebase, usage analytics to Adobe, and link attribution to Branch.io. An advertising identifier is made available to ad-measurement frameworks included in the app.
- 1 finding
- Data Security 1
- 86out of 100TRUSTish
CatLens - Cat Vision Filter
AndroidWhat it means for you
Camera images and photo effects are processed locally on the device, and the build contains no code to route photo or video frames to a cloud backend. Firebase is present for push notification delivery only, not behavioral tracking. The build includes code to pass usage data and device identifiers to Google AdMob for advertising and to OneSignal for targeted notifications.
- 6 findings
- Data Security 2
- Code Security 3
- Permission Usage 1
- 86out of 100unTRUSTED
What it means for you
Firebase Analytics and AppsFlyer are configured to remain inactive until the user explicitly consents, so no analytics or attribution data is generated before that point. Biometric identity verification data is configured to route to Hinge's own servers rather than FaceTec's infrastructure. Firebase, Braze, Sendbird, and related services are integrated in the build for crash reporting, messaging, and performance measurement.
- 5 findings
- Code Security 4
- Third-Party Risk 1
- 86out of 100NOT ASSESSED
Jenius
iOSWhat it means for you
The build includes code to pass usage and behavioral data to AppsFlyer, Google Analytics, MoEngage, and Firebase for analytics, attribution, and messaging. The build also includes code to pass transaction and device activity to NewRelic for performance monitoring. Identity verification is handled via ZOLOZ KYC, and three specialized services monitor for fraud.
- 13 findings
- Data Security 4
- Network Security 2
- Code Security 4
- Privacy 2
- Third-Party Risk 1
- 86out of 100NOT ASSESSED
What it means for you
Analytics collection is permanently disabled in this build. Active Firebase components for push notifications and performance monitoring include code to send functional data to Google. Behavioral and usage data processed by the Synerise CRM module remains on mBank-controlled servers and requires explicit GDPR consent.
- 4 findings
- Data Security 1
- Code Security 1
- Privacy 2
- 85out of 100unTRUSTED
What it means for you
No Meta Audience Network or Google AdMob SDK is bundled in this build; LinkedIn's advertising operates through its own infrastructure rather than external consumer ad networks. The build includes code to send usage, device, and attribution data to Singular, Apple AdServices, and Firebase Crashlytics. Qualtrics XM is also integrated for in-app surveys.
- 7 findings
- Network Security 3
- Code Security 3
- Privacy 1
- 85out of 100unTRUSTED
What it means for you
Financial transaction data, including balances and transfer amounts, was not observed reaching advertising networks, and no advertising SDK is present in the app. Biometric identity verification during account setup is processed on the device. The app includes code to pass usage and crash data to Firebase Analytics, Mixpanel, Braze, Facebook, and Sentry, with SDK-level opt-out controls for Braze and Singular built into the app.
- 10 findings
- Data Security 2
- Network Security 1
- Code Security 2
- Privacy 3
- Third-Party Risk 1
- Permission Usage 1
- 85out of 100unTRUSTED
Keeper Password Manager
AndroidWhat it means for you
Passwords, notes, and credentials are stored as ciphertext on the device, with Android backup disabled to block vault data from cloud or device-transfer backups. Payment card scanning is handled on-device with no card data reaching external servers. The build includes code to report app usage to Singular for attribution only; no advertising network SDK is present, and Firebase is limited to push notifications.
- 8 findings
- Network Security 2
- Code Security 4
- Privacy 1
- Third-Party Risk 1
- 85out of 100unTRUSTED
MyBible
AndroidWhat it means for you
Bible reading progress, notes, and history stay on the device and are not accessible to the developer or sold to data brokers. Reading habits are not shared with ad networks. Firebase Analytics and Crashlytics are integrated for performance monitoring.
- 4 findings
- Data Security 1
- Network Security 1
- Code Security 1
- Privacy 1
- 85out of 100unTRUSTED
WHOOP
iOSWhat it means for you
The build includes code to direct health and biometric data, including heart rate, HRV, sleep, and GPS, only to WHOOP's own infrastructure, and contains no code to pass it to advertising or analytics networks. The build includes code to send usage data to Amplitude for product analytics and to Sentry for crash reporting. The build contains no code that reads advertising identifiers, and internal performance telemetry is processed locally; the build contains no code to send it to third-party clo…
- 5 findings
- Data Security 1
- Network Security 1
- Code Security 3
- 85out of 100NOT ASSESSED
mBank CZ
AndroidWhat it means for you
The build includes code to pass behavioral and CRM data through the Synerise SDK to mBank-controlled servers, keeping it within the bank's own infrastructure. Firebase Analytics collection is explicitly disabled. The build includes code to pass install and referral data to Google via AdServices and Play Install Referrer. Stored account data remains on-device with strong protections in place.
- 7 findings
- Network Security 2
- Code Security 2
- Privacy 1
- Third-Party Risk 1
- Permission Usage 1
- 85out of 100NOT ASSESSED
Fio Smartbanking CZ
AndroidWhat it means for you
No analytics, advertising, or behavioral tracking SDKs are present. Firebase is used only for push notifications, with analytics explicitly disabled. User data stays on device, and bank servers are the only destination named in code, with no code to send it to third parties detected.
- 4 findings
- Data Security 3
- Code Security 1
- 84out of 100unTRUSTED
My EYA
AndroidWhat it means for you
Camera frames for barcode and QR code scanning are processed on the device and not sent to external servers. No advertising or ad-targeting networks are linked in the build. The build includes code to send usage analytics and crash reports to PostHog and Sentry, Firebase Cloud Messaging handles push notifications, and Stream.io supports in-app messaging.
- 9 findings
- Data Security 1
- Code Security 6
- Privacy 2
- 84out of 100unTRUSTED
RemindMeWhere Reminders
AndroidWhat it means for you
Geofence locations and reminder data are stored on the device and are not shared with advertising networks. The app includes code to send usage data and authentication activity to Firebase Analytics and Facebook SDK. Cloud-synced data requires authentication before access.
- 8 findings
- Data Security 1
- Network Security 1
- Code Security 4
- Privacy 1
- Permission Usage 1