Privacy Policy
This document explains what information drover, an SSH client for Android (package name org.j2w2.drover), handles and how. This English version is provided for convenience; if it differs from the Korean version, the Korean version prevails.
Summary — drover does not communicate with the Company's servers, and it sends no information to the Company. There is no sign-up or sign-in, and the app uses the network only when connecting over SSH to a server specified by the user. Hosts, SSH keys, and passwords are stored encrypted only on the user's device. No ad SDKs or analytics tools are included.
Article 1 (General Provisions)
WISP (the "Company") uses this Policy to explain how the Android application drover (the "Service"), which the Company produces and operates, handles users' information. The Service is an Android app distributed only through Google Play and is not offered on the web or as a Toss mini app.
Article 2 (Information Stored Only on the Device)
The information below is stored only on the user's device and is not sent to the Company.
| Item | How it is stored |
|---|---|
| Host information | Alias, server address, port, username, post-connect command, display settings — in a database encrypted with SQLCipher |
| SSH keys | Private keys are stored wrapped (AES-256-GCM) with a key in the Android Keystore; biometric or device authentication can be chosen per key |
| Saved connection passwords | Only if the user chooses to save them; stored wrapped with a Keystore key |
| Known host keys | Server fingerprints (for host key verification), in the encrypted database |
| Terminal content | Only displayed on screen; not stored or sent |
Data exchanged during an SSH connection travels, encrypted, only between the user's device and the server specified by the user, and the Company cannot see it. App data is excluded from device backups and device-to-device transfers.
Article 3 (Information Sent to the Company)
None. The Service has no sign-up, sign-in, or payment features, and it sends no requests of any kind to servers operated by the Company. No ad SDK, advertising ID (AAID), or analytics or crash collection tools are included either. When a feature that involves collecting information is introduced, this Policy will be revised before release.
Communication with SSH servers registered by the user is a matter between the user and that server's operator, and the connection records (such as IP addresses) kept by that server are governed by the policies of that server's operator.
Article 4 (App Permissions)
| Permission | Purpose of use |
|---|---|
| Internet | SSH connections to servers specified by the user |
| Biometric authentication | Identity verification before an SSH key is used |
The app does not request location, contacts, storage, camera, microphone, or notification permissions.
Article 5 (Retention and Use Period)
| Category | Retention period |
|---|---|
| Information stored only on the device | Until the user deletes it or deletes the app |
The Company does not keep users' information. However, if you optionally signed in with Google in a version earlier than September 28, 2026, the account information created at that time may remain on the Company's server. How to delete this information is described on the Account and Data Deletion page.
Article 6 (Provision to Third Parties)
Because the Company does not receive users' information, there is no information that it provides or sells to third parties.
Article 7 (Outsourcing of Processing)
| Processor | Outsourced task |
|---|---|
| Google Play | App distribution |
Information processed by Google Play during app installation and updates is governed by Google's Privacy Policy.
Article 8 (Users' Rights and How to Exercise Them)
- Access — You can view the stored content in the Hosts (호스트) and Key management (키 관리) tabs and on the Settings (설정) screen.
- Deletion — Hosts and keys can be deleted individually in the app, and deleting the app removes all data on the device.
- Sign-in information from previous versions — If you previously signed in with Google, you can request deletion of the server records using the method described in Account and Data Deletion.
Article 9 (Children's Personal Information)
The Service is not directed at children under the age of 14, and because no information is sent to the Company, it does not collect children's personal information either.
Article 10 (Security Measures)
- The on-device database is encrypted with SQLCipher, and its encryption key and the SSH private keys are wrapped with a key in the Android Keystore.
- Each SSH key can be set to require biometric or device authentication.
- The fingerprint of a server is shown on the first connection to it, and a warning is shown if the server key changes.
- App data is excluded from device backups and device-to-device transfers so that it is not copied off the device.
Article 11 (Changes to This Policy)
If the content of this Policy changes, the changes and their effective date are posted on this page. For changes that introduce information collection, this Policy is revised before the relevant feature is released.
| Effective date | Changes |
|---|---|
| September 28, 2026 | Google sign-in removed — communication with the Company's server and collection of account information ended; foreground service and notification permissions removed |
| September 26, 2026 | Initial version |
Article 12 (Contact)
Please send inquiries about the processing of personal information to the contact below.
- Responsible: WISP, privacy protection officer
- Email: [email protected]
- Reply: within 7 business days
If you need counseling or want to file a report regarding an infringement of personal information, you can contact the Personal Information Infringement Report Center (privacy.kisa.or.kr, 118 with no area code), the Supreme Prosecutors' Office Cyber Investigation Division (spo.go.kr, 1301), or the Korean National Police Agency Cyber Investigation Bureau (ecrm.police.go.kr, 182).