Legal

Privacy Policy

Last updated: 20 July 2026

  1. Who we are & scope
  2. Information we collect
  3. How we use information
  4. How we share information
  5. Children & kids profiles
  6. Data retention
  7. Security
  8. Your rights & choices
  9. International transfers
  10. Cookies
  11. Changes
  12. Contact

1. Who we are & scope

Zyryn is operated by Zyryn LLC, a New Mexico limited liability company ("we", "us", "our"). This Privacy Policy explains what information we collect when you use the Zyryn apps and website (the "Service"), how we use and share it, and the rights and choices you have. It applies to all Zyryn users.

2. Information we collect

Information you provide

  • Account. Your email address, username, and password. Our authentication provider stores passwords in hashed form. We never see your password in plain text.
  • Profiles & preferences. Profile names, including managed kids profiles, and settings you choose.
  • Library activity. Watch history, playback progress, ratings, watchlists, lists, favorites, and similar choices you make, so we can sync them across your devices and personalize recommendations.
  • Social and moderation activity. Public list titles and descriptions, Watch Party membership and block records, and reports you submit. Watch Party messages are relayed to room members in real time and are not retained as chat history; if a participant reports a message, the report may include a limited excerpt for moderation.
  • Support. Messages you send us, such as support or DMCA requests.

Information collected automatically

  • Search and product activity. We use search terms to return results and may send them to metadata services or connected addon providers. Search terms are not used to personalize recommendations. Movie and show selections, feature interactions, and whether a Premium offer was recently shown may be used to personalize the Service and avoid showing the same offer too often.
  • Device and security data. App version, platform, device model, operating system, IP address, user agent, sign-in events, and similar technical information needed to operate and secure the Service.
  • Diagnostics. Crash and error details, stack traces, performance information, a random diagnostic session identifier, and the part of the app where an error occurred. We remove sensitive URL parameters and design diagnostics not to include media URLs or titles.
  • Cookies & local storage. Used to keep you signed in and remember preferences. See our Cookie Notice.

Payment information

When you subscribe to Premium on our website or in a direct-distribution app, payment is processed by Stripe. Purchases in an app store build are processed by that store, such as Apple App Store, Google Play, or Amazon Appstore. The payment provider collects your payment details directly. We do not receive or store your full card number. We receive purchase and subscription records such as the product, transaction identifier, status, renewal date, and storefront needed to provide Premium and restore purchases.

Content sources you connect

Local library folder paths, local media inventory, and local source credentials stay on your device. We do not upload your media files. If you choose to connect an add-on in a distribution where add-ons are available, its configuration may be saved to your account so it can sync across your devices. Zyryn does not host the media provided by local libraries or connected sources.

Optional Trakt connection

If you connect Trakt, we receive your Trakt username and account identifiers, store the OAuth tokens needed to keep the connection active, and exchange the watch history, ratings, and lists you choose to sync. Tokens are encrypted on our servers. You can disconnect Trakt from Zyryn at any time. Trakt also processes this information under its own privacy policy.

Optional TMDB connection

If you connect TMDB, we store the API Read Access Token you provide in encrypted form on our servers. Zyryn uses it only for TMDB requests made for your signed-in account and does not return it to the app after setup. You can disconnect TMDB at any time, which removes the stored token. TMDB also processes requests under its own privacy policy.

3. How we use information

  • Provide, maintain, and improve the Service and sync your account across devices;
  • Authenticate you and keep your account secure;
  • Process subscriptions and manage billing through our payment processor;
  • Personalize recommendations and content rows based on your activity;
  • Return search results and briefly cache metadata responses to improve speed and reliability;
  • Limit repeated Premium prompts and present relevant subscription offers;
  • Respond to support requests and send service-related notices;
  • Diagnose crashes, performance problems, and service errors;
  • Detect, prevent, and address fraud, abuse, and security issues;
  • Screen user-submitted text, enforce account blocks and room removals, and investigate reports about public lists or Watch Party participants;
  • Comply with legal obligations and enforce our Terms.

4. How we share information

We do not sell your personal information. We share it only as needed:

  • Hosting and account providers. Supabase hosts account, authentication, and synced app data. Cloudflare hosts our website, service endpoints, metadata proxies, caching, and operational logs.
  • Payment providers. Stripe processes direct purchases. Apple, Google, and Amazon process purchases made through their app stores.
  • Metadata and availability providers. The Library of Congress and providers such as OMDb and Movie of the Night receive the search or title details needed to return movie, TV, ratings, and availability information. TMDB receives those details only when you connect and use the optional TMDB integration.
  • Connected services. If you connect Trakt, we exchange the account and library information needed to perform the sync you requested.
  • Legal. When required by law, legal process, or to protect the rights, safety, and property of Zyryn, our users, or the public.
  • Business transfers. In connection with a merger, acquisition, or sale of assets, subject to this Policy.

When you connect TMDB, Zyryn uses the TMDB API for movie and TV metadata. This product uses the TMDB API but is not endorsed or certified by TMDB. Zyryn's built-in public-domain catalog uses records and media supplied by the Library of Congress.

5. Children & kids profiles

The Service is not directed to children, and you must be at least 18 to create an account. We do not knowingly collect personal information from children or minors as independent account holders.

Zyryn offers managed kids profiles that are created and controlled by an adult account holder. A kids profile is a setting within an adult's account, not a separate registration; the adult provides any consent and supervises its use. If you believe a child or minor has provided us personal information directly, contact support@zyryn.com and we will delete it.

6. Data retention

We keep account and synced library information while your account is active. Some metadata service responses may be cached briefly; optional TMDB proxy responses are private and are not placed in a shared response cache. Search terms can also appear in operational request URLs, which are currently retained for up to seven days. Connected metadata and addon providers apply their own retention practices. Diagnostic and client event records are normally kept for up to 90 days and are deleted sooner when their account is deleted. Other security, authentication, and infrastructure logs are kept for a limited operational period and then deleted or rotated. The exact period can vary by log type and hosting plan. Trakt and TMDB tokens are kept until you disconnect the integration or delete your account. Moderation reports, account blocks, and room-removal records are kept as needed to investigate abuse, enforce user choices, and prevent repeated access; Watch Party message text is not retained unless a report includes an excerpt.

When you delete your account, we delete or anonymize personal information within a reasonable period. We may retain purchase, fraud-prevention, or other records where needed for legal, tax, accounting, dispute-resolution, or enforcement purposes. App stores and other providers keep their own records under their policies.

7. Security

We use technical and organizational measures to protect your information, including encryption in transit, access controls, and encryption for connected-service tokens stored on our servers. No method of transmission or storage is completely secure, so we cannot guarantee absolute security. Protect your account by using a strong, unique password.

8. Your rights & choices

Depending on where you live (for example under the GDPR or CCPA/CPRA), you may have the right to access, correct, delete, or export your personal information, to object to or restrict certain processing, and to withdraw consent. Many of these actions are available directly in your account. To make a request, email support@zyryn.com. We will not discriminate against you for exercising these rights, and you may appeal a decision by replying to our response.

9. International transfers

We and our service providers may process your information in countries other than where you live, including the United States. Where required, we use appropriate safeguards for such transfers.

10. Cookies

We use only essential cookies and local storage to keep you signed in and remember preferences. We do not use advertising or cross-site tracking cookies. See our Cookie Notice for details.

11. Changes

We may update this Policy from time to time. We will revise the "Last updated" date above and, for material changes, provide additional notice where appropriate.

12. Contact

For privacy questions or requests, contact us at support@zyryn.com.