Legal Center
Security & Trust
Last updated: June 26, 2026
RoamDrop is built local-first today. The simplest security guarantee is structural: your trips and documents live on your device by default, while future Smart Import must be explicit, metered by Smart Drops, and protected by privacy guardrails before any cloud AI processing is enabled.
How your information is protected
- Stored on your device today. Your trips, cards, notes and attached documents are kept on your iPhone, protected by your device’s security (passcode, Face ID / Touch ID, and Apple’s on-device encryption). We don’t keep a copy on our servers in the current local-first app.
- Local recognition where possible. The current local recognition path reads screenshots and PDFs on-device. Future Smart Import may use cloud AI only after an explicit user action, through Smart Drops, and only after the privacy policy and App Store disclosures are updated.
- Sensitive-document guardrails. Passport, ID, visa, MRZ, document-number and payment-card content is not a supported AI import target. RoamDrop should block that content before cloud AI and offer manual card creation instead.
- Encryption in transit. The limited network requests the app makes (for example, fetching a preview of a link you paste or resolving places through Apple MapKit) use encrypted connections where supported by the destination service.
- Minimal data. We don’t run analytics on your document content. The current app analytics layer is local-only, metadata-only, and not connected to a remote provider.
- Opt-in cloud features. Optional cloud sync is planned and not active today. When introduced, it’s expected to use Apple’s iCloud, so data syncs through your own Apple account under Apple’s encryption.
Our practices
- We follow least-privilege principles for any internal access and limit who can touch production systems.
- We maintain a process to triage, contain, and remediate security issues, and to notify people where required by law.
- We keep dependencies minimal to reduce the attack surface.
- We keep recognition correction data local unless a future privacy decision, opt-in flow and policy update explicitly changes that.
What you can do
- Use a strong device passcode and biometric lock.
- Keep encrypted device backups so you don’t lose your trips.
- Be thoughtful about who you share an exported trip with, especially if it contains sensitive documents.
- Always verify recognized details (dates, times, places, prices) against the original before relying on them.
- Delete documents you no longer need.
Reporting a vulnerability
If you believe you’ve found a security issue in RoamDrop, please email security@roamdrop.app with enough detail to reproduce it. Please don’t publicly disclose it until we’ve had a reasonable chance to investigate and fix it. We appreciate responsible disclosure.
Contact
Security: security@roamdrop.app · Privacy: privacy@roamdrop.app. See also our Privacy Policy and Legal Center.