Privacy Policy
Summary
- The app is local-first — by default, all documents and your NIP (Indonesian civil servant ID) are stored on your device. No server of ours receives your data.
- OCR runs on-device — your images or PDFs are not uploaded to the cloud for text recognition.
- Google Drive backup is optional — it is only active if you tap "Connect Google Drive" and consent. Files are backed up to your own Drive account.
- No ads, no tracking SDKs, no analytics.
- You can revoke Drive access at any time.
Device Permissions Requested
Camera (CAMERA)
- Purpose: Scan physical documents (SK, diplomas, ID cards, certificates) into PDF.
- Storage: Scan results are saved as PDFs in the app's internal storage. No images leave your device.
- Note: Permission is requested only when the Scan feature is first used. You can revoke it at any time via Android Settings.
Biometrics (USE_BIOMETRIC)
- Purpose: Lock the app with fingerprint/face/device PIN — optional, only if enabled in Account.
- Note: The app does not store your biometrics. Verification is handled by the Android system.
Internet (INTERNET)
- Purpose: Used only for the optional Google Drive backup feature — to upload and download documents to your own Drive account.
- Note: All core features (Scan, Compress, Merge, OCR, Signature, Page Reorder) work offline. No network calls are made unless you sign in with Google.
Internal Storage
- Purpose: Store PDFs that you scan, compress, merge, or sign.
- Location: App-private storage (Android scoped storage), inaccessible to other apps.
- Note: Does not require
READ_EXTERNAL_STORAGEorWRITE_EXTERNAL_STORAGE.
Data Stored Locally on Your Device
- PDF documents from scan/compress/merge/signature operations.
- NIP (civil servant ID) (if you enter it in Account) — used solely for automatic file naming. Your NIP is never sent to our servers or any third party.
- OCR results (extracted text) — linked to the related document for local search.
- App preferences (default portal, categories, biometric lock status).
Google Drive Backup Feature (Optional)
This feature is off by default. Only if you tap "Connect Google Drive" and agree to the in-app consent dialog does the app gain access to your Drive.
Google Data Accessed
- Basic profile (display name, email address, profile photo) — accessed via Google Sign-In solely to display the connected account. Held temporarily in app memory.
- Google Drive —
drive.filescope — the most restrictive Drive scope. The app can only see and manage files that this app itself creates or opens. The app cannot see any other Drive files of yours.
What the App Does with This Access
-
Creates an
ASN Pocket Scanner Backupfolder in your Drive (if it does not already exist). - Uploads PDF documents you select to that folder when you tap the Backup button.
- Lists previously backed-up files so you can restore them to your device.
ASN Pocket Scanner's use and transfer to any other app of information received from Google APIs will adhere to Google API Services User Data Policy, including the Limited Use requirements.
Concretely, data received from the Google Drive API:
- Is NOT used for advertising or profiling.
- Is NOT sold or transferred to third parties.
- Is NOT read by humans, except where you give explicit consent, for valid security/legal-enforcement reasons, or where required by law.
- Is used solely for the backup/restore feature described above.
How to Revoke Drive Access
- From the app: Account → Google Drive Backup → "Disconnect" button.
- From Google: myaccount.google.com/permissions — select "ASN Pocket Scanner" → "Remove access".
- Backup files already in your Drive folder remain yours; you can delete them manually via drive.google.com.
On-Device Processing
The app uses several libraries for document processing, all of which run locally on your device without sending document contents to any server:
| Feature | Library | Notes |
|---|---|---|
| Document scan (auto-crop) | Google ML Kit Document Scanner | On-device; no images sent to Google. |
| OCR (image → text) | Google ML Kit Text Recognition | On-device; models cached locally. |
| PDF compression | flutter_image_compress, image | Pure on-device. |
| PDF rendering | pdfx | Native renderer, on-device. |
| Digital signature | signature | PNG stamp drawn over the PDF, on-device. |
Google ML Kit is bundled with the app and makes no network calls for processing your text or documents.
Data Sharing with Third Parties
The app does not sell or share your data with any third party. The only exceptions are:
- Google (if you enable Drive Backup) — documents you select for backup are sent directly from your device to the Drive servers of your own Google account, via HTTPS. See Google's Privacy Policy.
- Target apps via the Android Share Sheet — when you tap the Share button to send a PDF/PNG to WhatsApp/Gmail/a government portal, data flows directly from your device to the target app. We are not involved and receive no copy.
- Android print service (if you use Print) — documents are sent to the Android system print spooler (physical printer / virtual PDF printer / Google Cloud Print). No copies flow to us.
Receiving Files from Other Apps
The app registers as a "Share to ASN Pocket Scanner" target in the
Android share sheet for application/pdf and
image/* file types. When you tap "Share" in WhatsApp /
Gmail / Files / any other app and choose ASN Pocket Scanner:
- The shared file is copied into the app's internal storage (same as any other locally scanned/imported file).
- The original file in the source app remains intact — we do not delete or modify it.
- No extra metadata (who shared it, when, from which app) is stored on any server — we operate no backend.
You can disable ASN Pocket Scanner from the share sheet via Android Settings → Apps → ASN Pocket Scanner → "Open by default" → clear defaults, or by uninstalling.
Advertising and Revenue
The app shows no advertisements and loads no tracking SDKs of any kind.
Children
The app is intended for general adult users (civil servants and civil servant candidates). We do not specifically collect data from children under 13. The app complies with Google Play Families policies.
Data Deletion
Because your primary data is stored on your device and/or your Drive:
- Per document (local): Open the app → Documents → tap a document → ⋮ menu → Delete.
- All local data: Uninstall the app via Android Settings, or use "Clear data" in the app info.
- Drive data: Open drive.google.com → "ASN Pocket Scanner Backup" folder → delete files or the entire folder.
- Revoke Drive permission: Account → Disconnect, or via myaccount.google.com/permissions.
We do not retain duplicates of your data — there is no ASN Pocket Scanner backend server holding user data.
Security
- All local documents are stored in Android app-private storage — inaccessible to other apps without root.
- Uploads to Google Drive are transmitted over HTTPS (TLS).
- Google OAuth tokens are stored by the Google Sign-In system component, not by the app.
- App lock via biometrics is available in Account (optional).
Your Rights
- Access: All your data is visible directly within the app.
- Deletion: See "Data Deletion" above.
- Withdraw consent: Revoke camera/biometric permissions via Android Settings; revoke Drive access via Account or Google's permissions page.
- Portability: Your documents are standard PDF files and can be exported/shared at any time.
Policy Changes
If this privacy policy changes, the latest version will be published on this page and the "Effective date" will be updated. Material changes will be announced in-app.
Contact
For privacy or app-related questions:
- Email: tobanature@gmail.com
- Website: asnscan.swandi.my.id
- Source code: github.com/tobanature/ASN-Pocket-Scanner
The Indonesian version of this Privacy Policy is the authoritative version. In case of any discrepancy, the Indonesian version shall prevail.