# Security & Privacy Scorecard

## Anker soundcore

### App Details

- Package: com.oceanwing.soundcore
- Developer: Anker
- Platform: android
- Scan date: 2026-09-10T06:51:25.785202Z

## What This App Collects

The code sends biometrics to soundcore/Anker cloud; files to soundcore Anka AI; microphone input to soundcore/Anker cloud and unnamed third-party AI translation processors; and device identifiers to Google Firebase Cloud Messaging. Another 2 data points are sent out to other third parties.

Other findings record data arriving from a server.

## Can This Be Trusted

The code sends data out of the device to third-party recipients. Some of those flows are recorded on paths that lack a consent step.

Two findings related to Code Security, Network Security and Third-Party Risk are worth reading before this build handles anything a user would want kept to themselves.

## What Needs Attention

One finding needs attention, on how the app connects to servers. The detailed report states each of these in full.

## Scores

- Overall: 84/100
- Security: 79/100. Held down by how the app talks to servers and by how the app is put together.
- Privacy: 94/100. Held down by the amount collected and by how little of it is recorded as consented to.
- Data Security: 99/100
- Network Security: 86/100
- Code Safety: 84/100
- Data Collection: 95/100
- Data Sharing: 98/100
- User Control: 95/100
- Permission Usage: 99/100

## How This Was Checked

CITT examined 206 files, traced 11 data flows and recorded 52 findings.

On whether the user was asked first, across the 11 flows recorded, not only the outbound ones: 10 have an unsettled consent state either way; 1 runs on paths recorded without a consent step.

## Method and Limitations

Static analysis only. CITT reviewed the code of this build without running the app, so runtime behavior was not observed. The findings below describe the analyzed build and may not reflect server-side controls or later versions. CITT makes no determination about compliance with any law or platform policy; it reports what the artifacts contain and cites the published guidance so a reader can compare.

## About This Analysis

This assessment was produced by CITT (Can I Trust That), an independent analysis service. Each statement above comes from one recorded claim, given here as a summary of what was found rather than as the evidence for it.
