Complying with Encryption Export Regulations

Hi, we would like to have more clarifications about the compliance with the encryption export regulations for our app, currently on the App Store. It uses encryption only and exclusively when making HTTPS connections and therefore, according to the article at the link https://developer.apple.com/documentation/security/complying_with_encryption_export_regulations, it should be exempt from the requirements for loading the export documentation. However, we have doubts about the paragraph in the "Important" section, always in the same page, and which we report below:


"If your app uses exempt forms of encryption, you might alternatively be required to submit a year-end self-classification report to the U.S. government. (If you use non-exempt encryption and provide documentation to Apple, the self-classification report isn’t necessary.)".


In our case, is it still necessary to upload the documentation?


Thank you in advance for your help.

Replies

> is it still necessary to upload the documentation?


If this is about the possibility of a govt. report, that link says this about that:


To learn more, see 'How to file an Annual Self Classification Report' [ h ttps://www.bis.doc.gov/index.php/policy-guidance/encryption/4-reports-and-reviews/a-annual-self-classification ] Which eventually leads to h ttps://www.bis.doc.gov/index.php/policy-guidance/encryption


-=-

Also note this seems to be in the wrong forum. Pls. see FAQ 4 here:For Best Results - Read the Label