SMS auto-tracking
How Android captures supported bank alerts on-device, and how to enable, stop, or audit it.
Android auto-tracking is optional. Manual and receipt entry remain fully available when it is off or permission is denied.
Enable
Open Auto-tracking
Go to More → Auto-tracking on a supported Android device.
Read the prominent disclosure
Confirm that Salli considers recognized bank alerts, filters sensitive and non-transaction messages, processes locally, and uploads nothing automatically.
Grant Android SMS permission
The operating-system prompt controls READ_SMS and RECEIVE_SMS. A denial
leaves auto-tracking off.
Review found transactions
Salli can backfill up to 30 days and then listen for new messages. Supported results appear in the review queue before confirmation.
Processing pipeline
Android SMS
→ consent and runtime-permission check
→ sender allow-list
→ OTP / security / promo / declined / pending deny-list
→ normalization
→ bank-specific template match
→ field and amount validation
→ deduplication
→ local categorization
→ encrypted review or unmatched-evidence queue
Stop
Turn auto-tracking off in Settings. Salli stops the live listener, blocks startup backfill, and leaves manual/receipt entry working. Revoking the Android permission has the same practical effect.
Delete-all also turns tracking off so retained provider messages cannot silently repopulate an empty ledger.
Background behavior
New supported alerts can be processed through the same parser and encrypted store while the app is not foregrounded. A privacy-safe notification may say that an item is ready for review without exposing the amount or merchant.
iPhone
iOS does not allow third-party apps to read the SMS inbox. Salli does not request an impossible permission or claim automatic capture on iPhone.