Privacy Policy
Last updated 7 August 2026. Applies to the PlayIP.TV application (Android phone, tablet, Android TV and Google TV) and to playip.tv.
The short version. We collect the email address you sign up with, the provider details you enter, and what you watch within the app, so that your setup follows you from your phone to your television. Provider credentials are encrypted before they are stored. There is no advertising, there are no third-party analytics or advertising SDKs, and we do not sell or share your personal data.
No video passes through our servers. Your device fetches streams from your provider directly, so we never see, host or record the video you watch.
1. Who we are
PlayIP.TV is published by BRAINIAC GINGER S.R.L., a company registered in Romania at Str. Dr Sion Nr. 1-9, Bl. 15, Sc. B, Et. 3, Ap. 52, Sectorul 1, Bucharest 010159 ("we", "us"). The application is a media player for IPTV services supplied by third parties. We are the data controller for the personal data described in this policy.
Questions, requests, or complaints: support@playip.tv.
2. What PlayIP.TV is, and why that shapes this policy
PlayIP.TV is a player. It contains no channels and no content of its own, and we neither sell nor supply IPTV subscriptions. To see anything, you connect a service you already have — Xtream Codes credentials, an M3U playlist URL, or a Stalker portal MAC address — issued to you by a provider we have no relationship with.
Two consequences matter for your privacy:
- Your provider is a separate party with its own practices. When you play a stream, your device contacts your provider directly. Your provider will see your IP address and what you requested. That processing is theirs, governed by their policy, and outside our control.
- We are not in the video path. We do not proxy, cache, transcode or store any stream, so the video itself never reaches us.
3. What we collect, and why
| Data | Why | Basis |
|---|---|---|
| Email address and password | To create and secure your account, so one setup works across your devices. Passwords are stored only as a salted hash and are never recoverable in plain text. | Performance of our contract with you |
| Provider connection details — the panel or portal address, and your provider username, password, MAC address or playlist URL | To fetch your channel list, guide and video-on-demand catalogue, and to build playable stream addresses on your device. Without these the app has nothing to show. | Performance of our contract with you |
| Your library and activity in the app — favourites, recently played items, hidden channels, chosen guide sources | To sync your setup between phone, tablet and television, and to offer "continue watching". | Performance of our contract with you |
| Paired devices — a label such as "Android TV", the time it was last seen, and a one-way hash of that device's access token | To let you sign a television in from your phone, see which devices are connected, and revoke one. | Performance of our contract with you |
| Anonymous stream health reports — whether a given stream started playing, and when | To flag channels that are down. These records carry no account or device identifier and cannot be linked back to you; the database has no column for it. | Legitimate interest in a working product |
| Server logs — IP address, timestamp, request path, and error diagnostics, kept briefly | To keep the service running, and to detect abuse. | Legitimate interest in security and reliability |
What we do not collect
- No advertising identifier, and no advertising or third-party analytics SDKs of any kind.
- No location data, contacts, calendar, photos, call logs, SMS, or installed-app list.
- No name, postal address, date of birth, or government identifier.
- No payment card details. We do not currently take payment in the app; if that changes, any payment is handled by Google Play and card details never reach us.
- No recording of the video you watch, and no copy of any stream.
Camera
On phones and tablets the app can ask for camera access, used for one thing: scanning a QR code to pair a television or to add a provider. The camera preview is processed on your device, nothing is recorded, and no image leaves it. Declining the permission only removes the QR shortcut — every screen it leads to can also be reached by typing a code.
4. How provider credentials are protected
Your provider credentials are the most sensitive thing you give us, and they are handled accordingly:
- They are encrypted with AES-256-GCM by our application before being written to the database, so they are not readable in the stored data or in a database backup.
- They are held per account and never written to a row shared between accounts. Where a stream address itself embeds your credential, that address is encrypted too rather than shared.
- On the device, credentials and access tokens are kept in the platform's secure storage (the Android Keystore), not in ordinary app settings.
- A paired television's access token is stored on our side only as a SHA-256 hash, so the stored value cannot be replayed.
- All traffic between the app and our API uses HTTPS.
No system is perfect, and we do not claim otherwise. If a breach affects your personal data we will notify you and the relevant supervisory authority as required by law.
5. Who we share data with
We do not sell your personal data, and we do not share it for advertising. We disclose it only to:
- Our hosting provider, which runs the servers and database holding the data described above, acting on our instructions as a processor. Our infrastructure is located in the European Union.
- Your IPTV provider — but only in the sense that your device and our servers authenticate to it with the credentials you supplied, in order to retrieve your own lineup and guide.
- Authorities, where we are legally required to, and no further than required.
Google Play processes app distribution and, for testers, your participation in a test track. That processing is governed by Google's own privacy policy.
6. How long we keep it
- Account, provider details, library and paired devices — until you delete them or delete your account.
- Anonymous stream health reports — used for a rolling 30-minute health window and pruned thereafter. They are not personal data.
- Server logs — a short operational period, then discarded.
Deleting a provider from the app deletes its stored credentials and its link to your account.
7. Your rights
If you are in the European Economic Area or the United Kingdom, the GDPR gives you the right to access your data, correct it, delete it, restrict or object to its processing, receive it in a portable form, and complain to your national data protection authority. Similar rights apply under other laws, including for California residents.
You can exercise most of these directly in the app: remove a provider, clear your history, unpair a device. For anything else — including a copy of your data or full account deletion — write to support@playip.tv from your account's email address and we will respond within 30 days.
Deleting your account
Go to playip.tv/deleteme, sign in, and confirm. The account and everything attached to it — provider credentials, favourites, history and paired devices — is deleted immediately, and any television you paired stops working at once. There is no waiting period and nothing to request from us.
You can also email support@playip.tv from your account's address and we will do it within 30 days. Either way, anonymous stream health reports are unaffected, because they are not linked to you and cannot be.
8. Children
PlayIP.TV is not directed at children and is not intended for anyone under 13 (or the higher minimum age where you live). We do not knowingly collect data from children. The app does not curate or filter the content your provider serves; deciding what is appropriate is the account holder's responsibility. If you believe a child has given us personal data, contact us and we will delete it.
9. Changes to this policy
If we change this policy we will update the date at the top, and for material changes we will notify you in the app or by email before they take effect.