Last updated: 4 September 2026
shortMSG is a private messenger published by Rodger Wilson. This policy describes what the app uses on your device and what our delivery server sees.
Your nickname, passcode, private keys, chat history, and media live on your phone. The passcode never leaves the device. Messages are encrypted on the device before they are sent.
To deliver a message, the app uploads an encrypted file to our delivery server and registers a push token so the phone can be woken when a message is waiting (Apple Push Notification on iOS, Firebase Cloud Messaging on Android). The server stores the encrypted file until the recipient collects it, then deletes it. We cannot read the contents of your chats.
If you share your location, a photo, a voice note, or a file, that content is encrypted the same way before upload. The app asks for camera, microphone, photos, or location only when you use those features.
Apple or Google delivers the wake-up notification, depending on the platform. The payload we send does not include the message text. Their handling of device tokens is described in Apple’s and Google’s privacy policies.
Encrypted files waiting for a recipient are dropped after they are collected, or after they age out of the mailbox cap. Push tokens are replaced when the app re-registers.
shortMSG is not directed at children under 13.
Questions about this policy: rw86347@gmail.com