Security

Security Brief

AllScanTool is built on a set of security commitments that govern how we handle your code, your reports, and your privacy. Here is what we commit to.

  • Privacy-First Code Handling

    AllScanTool is designed around privacy-first processing. Current code-handling commitments, operational scope, and applicable limitations are described in the published No-Logs Policy and Privacy Policy.

  • Logging Transparency

    AllScanTool publishes its current logging and privacy commitments in the No-Logs Policy and Privacy Policy. Those policies govern the scope of any technical or operational claims about service activity.

  • Read-Only Scanning

    The scanner diagnoses. It never modifies your code, your files, or your environment. Scanning is a read-only operation from start to finish.

  • No Account Required

    You do not need an account to scan. No username, no password, no profile is created or stored when you use AllScanTool.

  • Deterministic Results

    The same input produces the same output. Our scanner is deterministic โ€” results are consistent and repeatable, not probabilistic or variable.

  • Verifiable Reports

    Supported exported scan reports can include a Verification Report Number (VRN). A recipient can use the number at allscantool.com/verify/ when verification support is available for that report.

  • Privacy-First Design

    Privacy is a design requirement, not an afterthought. Every feature in AllScanTool is evaluated against our privacy commitments before it is built.

  • Honest Scope

    AllScanTool scans are automated and heuristic. A scan report indicates which patterns were detected at the time of scanning. Scans do not constitute a security audit, professional assessment, or certification of code safety.

Report Verification

Supported AllScanTool exports can include a Verification Report Number (VRN). When a report includes a VRN, a recipient can use the verification page to check the report information recorded by the verification system.

Verify a report โ†’

Scope and Limitations

AllScanTool is an automated scanning tool. It detects patterns in submitted code based on a defined set of rules. It does not replace a manual code review, a professional security audit, or penetration testing.

A clean scan result means no patterns matching the current rule set were detected at the time of scanning. It does not mean the code is free of all vulnerabilities.

AllScanTool is not liable for vulnerabilities not detected by the scan engine. For high-stakes deployments, a professional security review is recommended in addition to automated scanning.

Related Policies

Ready to scan your code?

We scan, then we forget. You keep what you want.

Scan Free