one sec is a screen-time management and digital wellness app featuring HealthKit integration, Safari extension controls, and mindfulness tracking. Built with privacy-first analytics and strong encryption.
This app has an open trust check or a verdict held for review.
The five trust checks
Apple ships App Store builds encrypted, so we could not read this app's compiled code. That is why some checks stayed open. A developer can upload the unencrypted build and we will finish the review.
Is this your app?
Upload your unencrypted build to complete the review and earn the TRUSTED mark.
Quick Verdict
Best for: Users comfortable with GDPR-aligned usage analytics
What It Means For You
App usage and crash data is collected by TelemetryDeck and Sentry, both operating under GDPR-compliant terms with EU data residency and no personal identifiers. No advertising networks, behavioral trackers, or device fingerprinting tools are present. Health-related data is processed on-device only and not transmitted to external servers.
Quick Verdict
Best for: Users comfortable with GDPR-aligned usage analytics
What It Means For You
App usage and crash data is collected by TelemetryDeck and Sentry, both operating under GDPR-compliant terms with EU data residency and no personal identifiers. No advertising networks, behavioral trackers, or device fingerprinting tools are present. Health-related data is processed on-device only and not transmitted to external servers.
Method and Limitations
Static analysis only. CITT reviewed the code of this build without running the app, so runtime behavior was not observed. The findings below describe the analyzed build and may not reflect server-side controls or later versions. CITT makes no determination about compliance with any law or platform policy; it reports what the artifacts contain and cites the published guidance so a reader can compare.
Data Security
4 totalNetwork Security
4 totalCode Security
4 totalPrivacy
3 totalThird-Party Risk
3 totalPermission Usage
2 totalVersion diff is on the Developer plan. See developer plans.
Context Tags
Package
wtf.riedel.one-sec
Version
5.2.6 (Build 1654)
Analysis Date
Jun 17, 2026
Feedback helps us improve our analysis
Privacy-focused screen-time app with strong encryption, zero ad tracking, privacy-preserving analytics, and on-device HealthKit data processing. Recommended for users prioritizing digital wellness without external surveillance.
Data Security - 4 findings (2 low, 2 info)
Network Security - 4 findings (4 info)
Code Safety - 4 findings (2 medium, 1 low, 1 info)
Privacy - 8 findings (1 medium, 1 low, 6 info)
The following third parties may receive your data:
Security: 90/100
Privacy: 89/100
The app's privacy practices could be strengthened by:
Safari Extension URL Scope
The Safari extension transmits complete website addresses including page paths and query details to the main app during blocking decisions. Limiting this to just the website domain would reduce the amount of browsing history stored locally and synced via iCloud, particularly for sensitive sites like banking or healthcare portals.
Device Identifier Placement in Requests
A device identifier appears to be included in URL parameters when the app contacts the developer's API for accountability features. Passing this identifier in request headers rather than URL parameters would prevent it from appearing in server access logs.
Backend Automation Service Access
Automation service access codes for Make.com and Integromat integrations are embedded in the app binary and could be extracted by anyone examining the app. Moving these through a server-side proxy would protect the developer's automation workflows from unauthorized triggering.
iCloud Data Visibility in Files App
App data stored in iCloud is configured to be browsable through the iOS Files app by anyone with physical access to the device. Restricting the iCloud container to private document scope would keep wellness and screen-time data out of the Files app.
App Type: Screen-time and digital wellness (health-sensitive)
Classes Analyzed: 0 (symbol-level iOS static analysis)
Third-Party Services: 12 identified
Context Tags: health, sensitive_data, safari-extension
This security analysis was conducted by CITT (Can I Trust That), an independent security analysis service. We perform static code analysis on iOS applications to help users make informed decisions about app security and privacy.
Developer: Riedel
Version: 5.2.6 (Build 1654)
Analysis Date: 2026-06-17
Package: wtf.riedel.one-sec
Developer not yet contacted