The short version:
• We do not read, store or share your messages.
• Filtering happens on your device first; bank codes (OTP) never leave your device.
• Undecided messages are processed only for an instant classification and never stored anywhere.
• Messages from your contacts are never accessed (iOS does not allow it in the first place).
Message content (unknown senders only): Apple's SMS filtering infrastructure delivers texts from senders not in your contacts to our filter extension. If on-device rules cannot decide, the message text and sender ID are sent to our server over HTTPS via Apple's secure deferral mechanism. The server forwards the content to our AI provider (Anthropic PBC) solely for classification and returns the category to your device. Message content is never stored on our servers; only an irreversible digest (SHA-256) of the content and the category result are kept for at most 90 days to block repeated spam instantly. The original message cannot be derived from this digest.
Advisor analysis: Text you voluntarily paste into "Is this message safe?" is processed only for the instant analysis and is not stored. If you pick a screenshot, the image is read on your device; only the extracted text is sent — the image never leaves your phone.
Personal topic rules: The rule text you write ("block messages about…") is processed transiently to resolve it into topic labels and is not stored on our servers. The resolved rule lives only on your device and is used only for your own filtering.
Community Radar: The sender IDs (phone number/header) of messages classified as spam, or reported by you, are processed anonymously — no message content and nothing identifying you is attached. This lets a spam sender be blocked automatically for all users.
Anonymous usage statistics: To improve the service, we process an anonymous device ID generated on your device together with daily blocking counts (per-category tallies), app version, OS version, language and subscription/trial status. This data contains no message content, sender information or rule text, and cannot be linked to your identity (name, email, phone). The device ID is used only when you read it to us for support, or to grant special access.
Subscription: Purchases are handled by Apple; we have no access to your payment details.
Analytics: We use no in-app analytics or ad tracking.
Only with our AI classification provider, Anthropic PBC, and only for instant classification. Anthropic does not use API data for model training. Your data is never used for advertising or profiling, and is never sold to third parties.
For access, correction and deletion requests, contact us: info@messagent.app
Updates to this policy will be announced on this page and, where appropriate, in the app.