From 6e8992e354b26a16f875e06c772cfaba80d0174d Mon Sep 17 00:00:00 2001 From: Dhruva Kumar Date: Sun, 20 Sep 2026 21:35:44 +0530 Subject: [PATCH] docs: clarify data flow and privacy wording --- README.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/README.md b/README.md index 4c4c5d1..04e4352 100644 --- a/README.md +++ b/README.md @@ -37,8 +37,7 @@ Instead of overwhelming you with a list of 200+ CVEs, DockSec: - **Suggests** specific fixes for your Dockerfile. - **Generates** professional, interactive security reports for your team. -Everything scans locally; the only thing that ever leaves your machine is the (secret-redacted) file content sent to the AI provider you choose - and with a local model or scan-only mode, nothing leaves at all. See [Data flow and privacy](#data-flow-and-privacy). - +Everything scans locally. When enabled, DockSec sends only the data required for EPSS lookups or AI analysis, with secrets redacted before AI requests. With a local model, scan-only mode, or offline mode, no scan data leaves your machine. See [Data flow and privacy](#data-flow-and-privacy). --- ## How It Works