Privacy policy
1. Controller
Various s. r. o., Tallerova 4, 811 02 Bratislava – Staré Mesto, company ID: 57704449, registered in the Commercial Register of the Municipal Court Bratislava III, section Sro, insert no. 200824/B. Contact for data protection matters: [email protected]. We have not appointed a data protection officer; the law does not require one from us.
2. What we process and why
Portal account – e-mail address, password stored only as a strong hash, account role and creation date. Purpose: signing in and managing devices and licences. Legal basis: performance of a contract.
Device and licence – the platform device identifier (Samsung DUID, LG ID, Android ID) stored only as a hash, trial status, activated licences and their validity. Purpose: binding a licence to a device and preventing abuse. Legal basis: performance of a contract and legitimate interest.
Source (playlist or panel credentials) – when a source is sent to a television through QR pairing, we keep it on the server encrypted and only for as long as it takes to deliver it to the application. We never show the source to resellers or anyone else and use it for nothing else. Legal basis: performance of a contract.
Reseller credits and activation records – credit purchases and deductions, the list of devices the reseller activated, and the reseller's own notes about them. Legal basis: performance of a contract.
Licence purchase – the e-mail address given when paying, the TV code, the licence bought, the price, the time of consent and of payment, the document number, the Stripe payment identifier, and the country of the billing address and the country that issued the card. We do not see card details. Purpose: concluding and performing the contract, the purchase confirmation, complaints, refunds, bookkeeping, recording the customer's country for VAT, and aggregate sales statistics by country. If you have a verified account with us under the same e-mail address, the purchase is linked to it. Before an annual licence ends we send a reminder with a renewal link to this address (legitimate interest); every reminder has a link to stop them. Legal basis: performance of a contract and legal obligation.
Purchase through Google Play (Android) – the device code, the licence bought, the Google Play order number, the purchase time and the payment state. We keep the purchase token only until the purchase is confirmed in Google Play and then delete it. Google processes the payment and the customer's data; we do not see your e-mail address or card. Purpose: verifying the purchase, granting the licence, refunds and accounting. Legal basis: performance of a contract and legal obligation.
Transactional e-mails – recipient address and message content (registration confirmation, password reset, activation confirmation, purchase confirmation). Legal basis: performance of a contract.
Operational records – technical server logs including IP addresses, necessary to run the service and protect it from abuse. Legal basis: legitimate interest.
3. What we do not do
- We do not profile, do not run targeted advertising and do not sell data.
- We do not track what the user watches; history and favourites stay on the device.
- A reseller never sees the source address or the credentials of their customer.
4. Who we share data with
- Stripe (Stripe Payments Europe, Limited, Ireland) – payment processing. It processes the data entered on the payment page under its own privacy policy, including to prevent fraud.
- Resend – sending transactional e-mails (Ireland region).
- Zoho – the mailbox used for ordinary correspondence.
- Cloudflare – protecting and delivering the website.
- Google (Google Ireland Limited and Google Commerce Limited, Ireland) – selling the licence in the Android app through Google Play and verifying the purchase.
- The provider of the virtual server that runs the portal and the database.
We do not transfer data outside the EU beyond what follows from these services and their own safeguards.
5. How long we keep data
We keep the account and its licences for as long as the account exists. After an account is closed we delete or anonymise the data, except for records we must archive under tax and accounting law. Purchase records and their confirmations are kept for 10 years under the Slovak Accounting Act, also for purchases without an account. The encrypted source used for pairing is kept only for the time needed to deliver it; pairing links expire, and the source can be removed from the application at any time. Operational logs are kept briefly.
6. Your rights
You have the right of access, rectification, erasure, restriction of processing, data portability, and the right to object to processing based on legitimate interest. Send your request from the e-mail address the account is registered with to [email protected]. You may also lodge a complaint with the Office for Personal Data Protection of the Slovak Republic.
Deleting app data without an account. You do not need an account to use the application. To have the data of a device deleted, e-mail [email protected] with the device code shown in the application (Licence). We delete the hash of the device identifier, the trial status, the link to a reseller and any pending pairing; the licence on that device then stops working. Purchase records (receipt or order number, licence, price, date) are kept without any link to the device for 10 years as required by accounting law. We handle the request within 30 days.
7. Security
Passwords are stored only as salted hashes, device identifiers only as hashes, and the paired source encrypted. Traffic runs over HTTPS and server access is limited to administrator keys.
8. Children
The application is not intended for children under 16 and we do not knowingly create accounts for them.
9. Changes
We may update this policy when features or legislation change; the current version is always on this page.
Last updated:
Back to home