shortMSG Privacy Policy

Last updated: 4 September 2026

shortMSG is a private messenger published by Rodger Wilson. This policy describes what the app uses on your device and what our delivery server sees.

What stays on your device

Your nickname, passcode, private keys, chat history, and media live on your phone. The passcode never leaves the device. Messages are encrypted on the device before they are sent.

What we receive

To deliver a message, the app uploads an encrypted file to our delivery server and registers a push token so the phone can be woken when a message is waiting (Apple Push Notification on iOS, Firebase Cloud Messaging on Android). The server stores the encrypted file until the recipient collects it, then deletes it. We cannot read the contents of your chats.

If you share your location, a photo, a voice note, or a file, that content is encrypted the same way before upload. The app asks for camera, microphone, photos, or location only when you use those features.

What we do not do

Push notifications

Apple or Google delivers the wake-up notification, depending on the platform. The payload we send does not include the message text. Their handling of device tokens is described in Apple’s and Google’s privacy policies.

Retention

Encrypted files waiting for a recipient are dropped after they are collected, or after they age out of the mailbox cap. Push tokens are replaced when the app re-registers.

Children

shortMSG is not directed at children under 13.

Contact

Questions about this policy: rw86347@gmail.com

Support