Scopulars Radar is a privacy-first, on-device security awareness app. It scans the wireless environment around your own phone (Wi-Fi, Bluetooth, cellular) to warn you about threats such as unwanted trackers, suspicious access points, and cellular anomalies.
To do its job, the app reads the following through standard Android APIs, only while you use it (scans are user-triggered and foreground; the app performs no background Bluetooth, Wi-Fi, or cellular scanning):
| Category | Examples | Purpose |
|---|---|---|
| Wi-Fi environment | Network names (SSID), access point hardware addresses (BSSID), signal strength, channel, security capabilities | Detect rogue / "evil twin" access points and score network safety |
| Bluetooth (BLE) | Nearby device advertisements: hardware address, advertised name, signal strength | Detect trackers (e.g. AirTag, SmartTag, Tile) that may be following you |
| Cellular | Serving cell identity (Cell ID, TAC/LAC, MCC/MNC), signal metrics | Detect cellular anomalies (e.g. IMSI-catcher-like behavior) |
| Location | Device GPS position | Android requires location permission for Wi-Fi/BLE scans; also powers optional saved-place (geofence) profiles and "same device seen in multiple places" detection |
| Local network | Devices answering mDNS/SSDP multicast on the LAN you are connected to | On-demand local network device discovery |
Retention: device sighting history and scan summaries — 90 days; Wi-Fi access point observations — 30 days; unverified cell-tower records — 90 days; defense evidence — user-configurable (default 24 hours). User-managed lists (trusted devices, saved places) are kept until you delete them.
The app uploads no scan data, no personal data, and no telemetry to any Scopulars server. The only network connections it makes are:
| Connection | When | What is sent |
|---|---|---|
OpenCellID (opencellid.org) | Only if you opt in by entering your own OpenCellID API key in settings | The serving cell's technical identity (Cell ID, TAC, MCC/MNC) — never your GPS position — to verify the tower against a public database |
| Google Play Billing | If you purchase a subscription | Handled by Google Play; we do not operate purchase verification servers |
OpenStreetMap tiles (tile.openstreetmap.org) | Only if you open a map view | Standard map tile requests |
Android connectivity check (connectivitycheck.gstatic.com) | Connectivity detection | Standard OS-level check, no personal data |
| Links you tap | e.g. Play Store, scopulars.com | Opens in your browser; nothing sent by the app |
All app network traffic is HTTPS-only (cleartext traffic is disabled app-wide).
Location (required by Android for Wi-Fi/BLE scanning and optional saved places), Bluetooth scan/connect (tracker detection), Wi-Fi state/scan (network analysis), phone state (cell-tower analysis), notifications (threat alerts), foreground service (keeping a user-started scan alive), internet/network state (the connections in §4), billing (subscriptions). The app requests no camera, SMS, contacts, microphone, storage, or app-usage permissions.
All processing described above happens locally on your device and is necessary to provide the security functionality you actively invoke (GDPR Art. 6(1)(b), and your consent for optional features such as the OpenCellID lookup, Art. 6(1)(a)). Because we do not receive or store your personal data on our systems, data-subject requests (access, erasure, portability) are fulfilled directly by the on-device controls in §7. You may contact us at the address above with any privacy question, and you have the right to lodge a complaint with your supervisory authority.
The app is not directed at children under 13 (or the equivalent minimum age in your jurisdiction) and does not knowingly process children's data.
We will update this policy when the app's data behavior changes and revise the effective date above. Material changes will be highlighted in release notes.
Scopulars Radar, gizlilik-öncelikli, cihaz-üstü çalışan bir güvenlik farkındalık uygulamasıdır. Kendi telefonunuzun çevresindeki kablosuz ortamı (Wi-Fi, Bluetooth, hücresel) tarayarak sizi istenmeyen takip cihazları, şüpheli erişim noktaları ve hücresel anomaliler gibi tehditlere karşı uyarır.
Uygulama, işini yapabilmek için aşağıdakileri standart Android API'leri üzerinden, yalnızca siz kullanırken okur (taramalar kullanıcı tarafından başlatılır ve ön plandadır; uygulama arka planda Bluetooth, Wi-Fi veya hücresel tarama yapmaz):
| Kategori | Örnekler | Amaç |
|---|---|---|
| Wi-Fi ortamı | Ağ adları (SSID), erişim noktası donanım adresleri (BSSID), sinyal gücü, kanal, güvenlik yetenekleri | Sahte / "evil twin" erişim noktalarını tespit etmek, ağ güvenliğini puanlamak |
| Bluetooth (BLE) | Yakındaki cihaz yayınları: donanım adresi, yayınlanan ad, sinyal gücü | Sizi takip ediyor olabilecek takip cihazlarını (AirTag, SmartTag, Tile vb.) tespit etmek |
| Hücresel | Bağlı baz istasyonu kimliği (Cell ID, TAC/LAC, MCC/MNC), sinyal metrikleri | Hücresel anomalileri (IMSI-catcher benzeri davranış) tespit etmek |
| Konum | Cihaz GPS konumu | Android, Wi-Fi/BLE taraması için konum izni şart koşar; ayrıca isteğe bağlı kayıtlı-yer (geofence) profillerini ve "aynı cihaz birden fazla yerde görüldü" tespitini besler |
| Yerel ağ | Bağlı olduğunuz LAN'da mDNS/SSDP çoklu yayınına cevap veren cihazlar | İsteğe bağlı yerel ağ cihaz keşfi |
Saklama süreleri: cihaz görülme geçmişi ve tarama özetleri — 90 gün; Wi-Fi erişim noktası gözlemleri — 30 gün; doğrulanmamış baz istasyonu kayıtları — 90 gün; savunma kanıtları — kullanıcı ayarlı (varsayılan 24 saat). Kullanıcı yönetimindeki listeler (güvenilir cihazlar, kayıtlı yerler) siz silene kadar durur.
Uygulama hiçbir Scopulars sunucusuna tarama verisi, kişisel veri veya telemetri yüklemez. Kurduğu tek ağ bağlantıları şunlardır:
| Bağlantı | Ne zaman | Ne gönderilir |
|---|---|---|
OpenCellID (opencellid.org) | Yalnızca siz ayarlara kendi OpenCellID API anahtarınızı girerek etkinleştirirseniz | Bağlı baz istasyonunun teknik kimliği (Cell ID, TAC, MCC/MNC) — GPS konumunuz asla gönderilmez — istasyonu herkese açık veritabanıyla doğrulamak için |
| Google Play Faturalandırma | Abonelik satın alırsanız | Google Play tarafından yürütülür; satın alma doğrulama sunucusu işletmiyoruz |
OpenStreetMap karoları (tile.openstreetmap.org) | Yalnızca bir harita görünümü açarsanız | Standart harita karo istekleri |
Android bağlantı kontrolü (connectivitycheck.gstatic.com) | Bağlantı tespiti | Standart işletim sistemi kontrolü, kişisel veri yok |
| Dokunduğunuz bağlantılar | ör. Play Store, scopulars.com | Tarayıcınızda açılır; uygulama bir şey göndermez |
Tüm uygulama ağ trafiği yalnızca HTTPS'tir (şifresiz trafik uygulama genelinde kapalıdır).
Konum (Android, Wi-Fi/BLE taraması ve isteğe bağlı kayıtlı yerler için şart koşar), Bluetooth tarama/bağlanma (takip cihazı tespiti), Wi-Fi durumu/tarama (ağ analizi), telefon durumu (baz istasyonu analizi), bildirimler (tehdit uyarıları), ön plan servisi (başlattığınız taramanın sürmesi), internet/ağ durumu (§4'teki bağlantılar), faturalandırma (abonelik). Uygulama kamera, SMS, kişiler, mikrofon, depolama veya uygulama-kullanımı izni istemez.
Yukarıda tarif edilen tüm işleme, cihazınızda yerel olarak gerçekleşir ve aktif olarak çağırdığınız güvenlik işlevini sunmak için gereklidir (GDPR m.6/1-b; OpenCellID sorgusu gibi isteğe bağlı özelliklerde açık rızanız, m.6/1-a; KVKK m.5'teki karşılık gelen dayanaklar). Kişisel verileriniz sistemlerimize ulaşmadığı için erişim, silme ve taşınabilirlik talepleri §7'deki cihaz-üstü kontrollerle doğrudan sizin tarafınızdan yerine getirilir. Her türlü gizlilik sorusu için yukarıdaki adresten bize ulaşabilir, ayrıca yetkili denetim kurumuna şikâyette bulunabilirsiniz.
Uygulama 13 yaş altı çocuklara (veya bulunduğunuz ülkedeki eşdeğer asgari yaşa) yönelik değildir ve bilerek çocuk verisi işlemez.
Uygulamanın veri davranışı değiştiğinde bu politika güncellenir ve yukarıdaki yürürlük tarihi yenilenir. Önemli değişiklikler sürüm notlarında vurgulanır.