Privacy Policy

Last updated: July 2026

Introduction

PalmText ("we", "us", "our") operates a cross-device SMS synchronization service that bridges your Android phone with a web dashboard at palmtext.com. This Privacy Policy explains what data we collect, how we use it, and the choices you have.

Data We Collect

Account Data

  • Email address — used for login and account identification
  • Display name (optional) — for personalization
  • Default country — for phone number formatting

Phone and SMS Data

  • Registered phone numbers — the numbers you register as SMS gateways
  • SMS message content — messages you send or receive through the app, synced between your phone and web dashboard
  • Contact phone numbers — recipients and senders of SMS messages
  • SIM slot selection — to route messages through the correct SIM
  • Message status and delivery timestamps — to track delivery and retries

Device Data

  • Firebase Cloud Messaging (FCM) token — to send push notifications for incoming messages
  • Heartbeat data (charging status, online status) — to monitor phone availability
  • Crash logs — collected via Firebase Crashlytics to identify and fix app crashes

Billing Data

  • Subscription plan and credit balance — managed via Google Play Billing or LemonSqueezy
  • We do not store full payment card details — payments are processed by the respective payment providers

How We Use Your Data

  • To send SMS messages you compose on the web dashboard through your registered Android phone
  • To receive and sync incoming SMS messages from your phone to your web dashboard
  • To display conversation history and message delivery status
  • To notify you of incoming messages via push notifications
  • To manage your subscription and message credits
  • To monitor phone availability for reliable message delivery

SMS Permissions Disclosure

The PalmText Android app requests the following permissions:

  • SEND_SMS — to send messages you compose on the web dashboard via your phone's SIM
  • RECEIVE_SMS — to intercept incoming SMS and sync them to your web dashboard
  • READ_SMS — to read SMS content for synchronization between devices
  • READ_PHONE_STATE — to detect active SIM cards for message routing

The app shows a prominent disclosure dialog explaining the use of these permissions before requesting them. SMS data is only used to deliver and improve the app's core functionality. It is not sold or shared with third parties for any other purpose.

Data Sharing

We do not sell, share, or transfer your data to third parties. All SMS data is processed solely within the PalmText app and web dashboard to deliver and improve the app's core functionality.

Data Security

All data is transmitted over HTTPS. API keys are stored as secure hashes. Passwords are hashed and never stored in plain text. Access to your account is protected by authentication.

Data Retention

Data retention is determined according to your subscription package. You can delete messages and conversations at any time. When you delete your account, all associated data is permanently deleted.

Your Rights

  • Access your personal data
  • Delete your account and associated data
  • Export your message history
  • Revoke SMS permissions at any time through Android system settings

Children's Privacy

PalmText is not directed at children under 13. We do not knowingly collect data from children under 13. If you believe we have collected data from a child, please contact us and we will delete it.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the new policy on this page and updating the "Last updated" date.

Contact Us

If you have questions about this Privacy Policy, please contact us at [email protected].