Privacy Policy — Noowar SendMagic
Privacy Policy — Noowar SendMagic
Last updated: 2026-09-07
Overview
Noowar SendMagic (“the App”) is a personal utility application for Android (and, for a subset of non-SMS features, iOS). The App reads the notification content posted by the Samsung Messages app when an SMS arrives, and forwards matching messages to a Telegram destination specified by the user. The App also includes several optional utility tools unrelated to SMS forwarding: an LED marquee display, a kaleidoscope visual toy, a QR code generator, and a device hardware self-diagnostic tool. These optional tools are described in the dedicated sections below.
All forwarding destinations and rules are configured solely by the user. The developer has no access to any message content or user data.
⚠️ CAUTION: If someone asked you to install this app and forward your messages to them, it may be a scam. Never forward your messages to people you do not trust.
What data is accessed
| Data | Purpose |
|---|---|
| Notification content (sender name, message text) from the Samsung Messages app | Matching against user-defined rules and forwarding to Telegram |
What data is NOT collected
- The App does not transmit any message content, forwarding rules, or Telegram credentials to the developer’s servers.
- The App does not collect crash reports.
- The App does not share any data with third parties, except as explicitly configured by the user (Telegram) or disclosed below (Firebase Analytics).
Anonymous usage analytics (Firebase Analytics)
The App uses Firebase Analytics (a Google service) to understand which features (e.g., forwarding rule management, forward log, settings, LED marquee, kaleidoscope) are used and how often, across all users of the App in aggregate.
| Data collected | Details |
|---|---|
| Screen/feature view events | Which screen was opened (e.g., “Kaleidoscope”, “MarqueeList”); no message content, phone numbers, or Telegram data is included |
| Anonymous app instance identifier | A random identifier generated by Firebase per install; not linked to your name, phone number, or Telegram account |
| Basic device/app info | Device model, OS version, app version, country/region (collected automatically by Firebase) |
This analytics data never includes SMS content, sender/recipient numbers, Telegram bot tokens, chat IDs, or forwarding rules. It is used solely in aggregate (e.g., “how many app opens used the kaleidoscope screen this month”) and is processed by Google per Google’s Privacy Policy. You can request Google account-level data controls via Google’s own tools; the developer only sees aggregated, anonymized reports in the Firebase console.
Device diagnostics tool
The App includes an optional “Device Diagnostics” tool that lets the user check whether the phone’s hardware (screen, touch, speaker, microphone, vibration, volume buttons, motion sensors, camera, GPS, battery, network) is working correctly. Each check runs only while the user has that specific test screen open, and none of the data below is ever stored beyond the test session or transmitted anywhere:
| Data accessed | Purpose | Retention / transmission |
|---|---|---|
| Camera preview | Show a live camera preview so the user can visually confirm the camera works | Not saved, not transmitted; the preview only exists on screen while the test is open |
| Microphone audio | Record a few seconds of audio and immediately play it back so the user can confirm the microphone works | The recording is deleted right after playback; never transmitted anywhere |
| Precise/approximate location (GPS) | Fetch a single one-time location fix to confirm the GPS sensor works, shown on screen as coordinates | Not stored, not transmitted; discarded when the test screen closes |
| Motion sensors (accelerometer, gyroscope, magnetometer) | Show live sensor values to confirm the sensors respond to movement | Not stored, not transmitted |
| Vibration | Trigger the vibration motor briefly | No data collected |
QR code generator (in-app browser)
The App includes an optional “QR Generator” tool that opens the developer’s own web service (https://makeqr.duckdns.org) inside an in-app browser (WebView). Any data you enter there — text/URLs to encode into a QR code, an optional logo image you choose to upload, or an account you choose to log into — is sent to that web server exactly as it would be if you visited the same site in a regular mobile browser. This is separate from, and unrelated to, the SMS-forwarding data described above; it is not sent to Telegram or read from your SMS/notifications.
Where data goes
The forwarding destination is entirely under the user’s control:
- Telegram forwarding: Messages are sent to Telegram’s servers. See the dedicated section below.
- QR code generator: Data you choose to enter is sent to
https://makeqr.duckdns.org, as described above.
Telegram forwarding — detailed disclosure
When the user configures a Telegram forwarding rule, the App transmits the following data to Telegram’s Bot API (https://api.telegram.org):
| Data transmitted | Details |
|---|---|
| SMS sender number | Included in the forwarded message text |
| SMS message body | Included in the forwarded message text |
| Bot token | Used to authenticate with the Telegram Bot API (stored locally, never sent to the developer) |
| Chat ID | Identifies the destination chat (stored locally, entered by the user) |
Important notes:
- Transmission is performed over HTTPS (TLS-encrypted).
- The developer has no access to the user’s bot, chat, or any messages sent through it.
- The bot token and chat ID are stored only on the user’s device and are never shared with the developer.
- Telegram’s servers are operated by Telegram FZ-LLC. Once data reaches Telegram’s servers, it is subject to Telegram’s Privacy Policy.
- The user is responsible for the security of their own bot token and chat ID.
Data stored on device
The App stores the following data locally on the device only:
| Data | Storage |
|---|---|
| Forwarding rules (sender filter, keyword, destination) | Room database (app-private storage) |
| Telegram bot token | SharedPreferences (app-private, not accessible to other apps) |
| Forwarding history log (last 200 records) | Room database (app-private storage) |
No data is uploaded to any cloud service or developer server.
Permissions
| Permission | Reason |
|---|---|
BIND_NOTIFICATION_LISTENER_SERVICE |
Read Samsung Messages notification content to detect incoming SMS |
INTERNET |
Send messages via Telegram Bot API; load the QR generator web page |
POST_NOTIFICATIONS |
Show app notifications |
CAMERA |
Device Diagnostics: show a live camera preview to test the camera (see above) |
RECORD_AUDIO |
Device Diagnostics: record and immediately play back a short clip to test the microphone (see above) |
ACCESS_FINE_LOCATION / ACCESS_COARSE_LOCATION |
Device Diagnostics: fetch a one-time GPS fix to test the location sensor (see above) |
VIBRATE |
Device Diagnostics: trigger the vibration motor to test it |
Children’s privacy
The App is not directed at children under 13 and does not knowingly collect data from children.
Changes to this policy
If this policy changes, the updated version will be published at this URL with a new “Last updated” date.
Contact
If you have questions about this policy, contact: sinnsang@naver.com
개인정보처리방침 — Noowar SendMagic
최종 수정일: 2026-09-07
개요
Noowar SendMagic(이하 “앱”)은 Android용 개인 유틸리티 앱입니다(SMS 관련 기능을 제외한 일부 기능은 iOS에서도 제공됩니다). 앱은 SMS 수신 시 삼성 메시지 앱이 표시하는 알림 내용을 읽어, 사용자가 지정한 텔레그램 수신처로 매칭된 메시지를 전달합니다. 앱에는 SMS 포워딩과 무관한 선택 기능도 포함돼 있습니다: LED 전광판, 만화경 시각 토이, QR 코드 생성기, 기기 하드웨어 자가진단 도구. 이 선택 기능들은 아래 전용 항목에서 설명합니다.
포워딩 대상과 규칙은 전적으로 사용자가 설정합니다. 개발자는 메시지 내용이나 사용자 데이터에 접근할 수 없습니다.
⚠️ 주의: 누군가가 이 앱을 설치하고 회원님의 문자를 자신에게 전달하도록 요청했다면 사기일 수 있습니다. 신뢰할 수 없는 상대에게 문자를 전달하지 마세요.
접근하는 데이터
| 데이터 | 목적 |
|---|---|
| 삼성 메시지 앱 알림 내용 (발신자 이름, 메시지 텍스트) | 사용자 정의 규칙과 대조 후 텔레그램으로 전달 |
수집하지 않는 데이터
- 앱은 메시지 내용, 포워딩 규칙, 텔레그램 인증정보를 개발자 서버로 전송하지 않습니다.
- 앱은 충돌 보고를 수집하지 않습니다.
- 사용자가 명시적으로 설정한 경우(텔레그램)나 아래 고지된 경우(Firebase Analytics)를 제외하고 제3자와 데이터를 공유하지 않습니다.
익명 사용 통계 (Firebase Analytics)
앱은 Firebase Analytics(Google 서비스)를 사용해 어떤 기능(예: 포워딩 규칙 관리, 전송 이력, 설정, LED 전광판, 만화경)이 얼마나 사용되는지를 전체 사용자 기준으로 집계해서 파악합니다.
| 수집 데이터 | 내용 |
|---|---|
| 화면/기능 조회 이벤트 | 어떤 화면이 열렸는지(예: “Kaleidoscope”, “MarqueeList”) — 메시지 내용, 전화번호, 텔레그램 정보는 포함되지 않음 |
| 익명 앱 인스턴스 식별자 | Firebase가 설치마다 생성하는 무작위 식별자 — 이름, 전화번호, 텔레그램 계정과 연결되지 않음 |
| 기본 기기/앱 정보 | 기기 모델, OS 버전, 앱 버전, 국가/지역 (Firebase가 자동 수집) |
이 분석 데이터에는 SMS 본문, 발신/수신 번호, 텔레그램 봇 토큰, Chat ID, 포워딩 규칙이 절대 포함되지 않습니다. 오직 집계된 형태(예: “이번 달 만화경 화면을 연 횟수”)로만 사용되며, Google 개인정보처리방침에 따라 Google이 처리합니다. 개발자는 Firebase 콘솔에서 집계·익명화된 리포트만 확인할 수 있습니다.
기기 진단 도구
앱에는 폰 하드웨어(화면, 터치, 스피커, 마이크, 진동, 볼륨 버튼, 모션 센서, 카메라, GPS, 배터리, 네트워크)가 정상 동작하는지 확인할 수 있는 선택 기능 “기기 진단”이 포함돼 있습니다. 각 테스트는 사용자가 해당 테스트 화면을 열어둔 동안에만 실행되며, 아래 데이터는 테스트 세션 이후 저장되거나 어디로도 전송되지 않습니다:
| 접근하는 데이터 | 목적 | 보관/전송 |
|---|---|---|
| 카메라 미리보기 | 실시간 카메라 화면을 보여줘 사용자가 육안으로 카메라 동작을 확인 | 저장·전송 안 함; 테스트 화면이 열려있는 동안만 화면에 표시됨 |
| 마이크 오디오 | 몇 초간 녹음 후 즉시 재생해 마이크 동작 확인 | 재생 직후 삭제; 어디로도 전송되지 않음 |
| 위치(GPS, 정밀/대략) | 위치 센서 동작 확인을 위해 1회성 위치를 가져와 화면에 좌표로 표시 | 저장·전송 안 함; 테스트 화면을 닫으면 폐기됨 |
| 모션 센서(가속도계, 자이로스코프, 지자기) | 센서가 움직임에 반응하는지 실시간 값으로 확인 | 저장·전송 안 함 |
| 진동 | 진동 모터를 짧게 울림 | 수집되는 데이터 없음 |
QR 코드 생성기 (앱 내 브라우저)
앱에는 개발자가 직접 운영하는 웹 서비스(https://makeqr.duckdns.org)를 앱 내 브라우저(WebView)로 여는 선택 기능 “QR 생성기”가 포함돼 있습니다. 여기에 입력하는 데이터(QR코드로 만들 텍스트/URL, 선택적으로 업로드하는 로고 이미지, 로그인하는 계정 정보 등)는 일반 모바일 브라우저로 같은 사이트를 방문했을 때와 동일하게 그 웹 서버로 전송됩니다. 이는 위에서 설명한 SMS 포워딩 데이터와는 완전히 별개이며 무관합니다 — 텔레그램으로 전송되지도, SMS·알림에서 읽어오지도 않습니다.
데이터 전송 대상
포워딩 대상은 전적으로 사용자가 결정합니다:
- 텔레그램 포워딩: 텔레그램 서버로 전송됩니다. 아래 전용 항목을 참조하세요.
- QR 코드 생성기: 사용자가 입력한 데이터가 위에서 설명한 대로
https://makeqr.duckdns.org로 전송됩니다.
텔레그램 포워딩 — 상세 고지
사용자가 텔레그램 포워딩 규칙을 설정한 경우, 앱은 텔레그램 Bot API(https://api.telegram.org)로 다음 데이터를 전송합니다:
| 전송 데이터 | 내용 |
|---|---|
| SMS 발신번호 | 전달 메시지 본문에 포함 |
| SMS 메시지 본문 | 전달 메시지 본문에 포함 |
| 봇 토큰 | 텔레그램 Bot API 인증에 사용 (기기 내 저장, 개발자에게 전송되지 않음) |
| Chat ID | 전송 대상 채팅 식별 (기기 내 저장, 사용자가 직접 입력) |
중요 사항:
- 전송은 HTTPS(TLS 암호화)를 통해 이루어집니다.
- 개발자는 사용자의 봇, 채팅, 전송된 메시지에 접근할 수 없습니다.
- 봇 토큰과 Chat ID는 사용자 기기에만 저장되며 개발자와 공유되지 않습니다.
- 텔레그램 서버는 Telegram FZ-LLC가 운영합니다. 데이터가 텔레그램 서버에 도달한 이후에는 텔레그램 개인정보처리방침이 적용됩니다.
- 봇 토큰과 Chat ID의 보안 관리는 사용자 본인의 책임입니다.
기기 내 저장 데이터
앱은 기기 내에만 다음 데이터를 저장합니다:
| 데이터 | 저장 위치 |
|---|---|
| 포워딩 규칙 (발신번호 필터, 키워드, 수신처) | Room 데이터베이스 (앱 전용 저장소) |
| 텔레그램 봇 토큰 | SharedPreferences (앱 전용, 타 앱 접근 불가) |
| 전송 이력 (최근 200건) | Room 데이터베이스 (앱 전용 저장소) |
어떠한 데이터도 클라우드 서비스나 개발자 서버에 업로드되지 않습니다.
권한
| 권한 | 사유 |
|---|---|
BIND_NOTIFICATION_LISTENER_SERVICE |
삼성 메시지 알림 내용을 읽어 수신 SMS 감지 |
INTERNET |
텔레그램 Bot API로 메시지 전송, QR 생성기 웹페이지 로딩 |
POST_NOTIFICATIONS |
앱 알림 표시 |
CAMERA |
기기 진단: 카메라 테스트를 위한 실시간 미리보기 (위 참조) |
RECORD_AUDIO |
기기 진단: 마이크 테스트를 위한 짧은 녹음 및 즉시 재생 (위 참조) |
ACCESS_FINE_LOCATION / ACCESS_COARSE_LOCATION |
기기 진단: 위치 센서 테스트를 위한 1회성 GPS 조회 (위 참조) |
VIBRATE |
기기 진단: 진동 모터 테스트 |
아동 개인정보
앱은 만 13세 미만 아동을 대상으로 하지 않으며, 아동의 데이터를 의도적으로 수집하지 않습니다.
방침 변경
방침이 변경될 경우 이 URL에 새로운 “최종 수정일”과 함께 업데이트됩니다.
문의
개인정보처리방침 관련 문의: sinnsang@naver.com