Home / Privacy Policy
Privacy Policy
Last updated: August 26, 2026. This describes what StreamLine Lite ("we," "us," "our") collects when you use the app or website, why, and the choices you have.
1. The short version
StreamLine Lite is built "portal-blind" by default: the app does not send us the address or login details of any IPTV portal you connect to. We collect what's needed to run your account, activate your devices, and process payment — not the content you watch or where it comes from, unless you explicitly opt in to share that for support purposes (Section 4).
2. What we collect
Account information. If you create an account: your email address, a securely hashed password (we never store your actual password), and an optional display name. If you sign in with Google, we receive your Google account's email and a unique identifier from Google — not your Google password.
Device information. A device key generated from your device's hardware, plus platform, model, and app version, so we can tell your devices apart and enforce your plan's device limits. We also record a hardware fingerprint used only to detect when one activation is being shared across unrelated devices.
Billing information. Payments are handled entirely by Stripe. We receive your Stripe customer and subscription IDs, which plan you're on, and payment status — never your full card number, which only Stripe sees.
Usage and support data. IP address at the time of each request, timestamps of device check-ins, and the content of any support messages you send us or a reseller you're working with.
Reseller data (if you're a reseller). Your business name and the activation records for customers you've activated (email, device key, what you charged them if you choose to record it).
3. What we don't collect by default
Unless you turn on portal sharing (next section), we never receive: the IPTV portal address you connect to, your portal login/MAC address, or anything about the channels or content you watch. This is a deliberate design choice, not an oversight — most of the app's backend genuinely has no way to know what portal you're using.
4. Optional portal sharing
You can choose, in Settings, to share your portal name, address, and MAC address with support staff or the reseller who activated your device — this exists so they can help troubleshoot a connection problem without you having to read credentials over chat. It's off unless you turn it on, you can turn it back off at any time, and it's used only to help you when you ask for help — never to monitor what you watch.
5. Why we collect it
- To create and secure your account, and let you sign back in.
- To activate the devices your plan covers and enforce plan limits (device slots, swap credits).
- To process payment and manage your subscription through Stripe.
- To respond to support requests you or your reseller send.
- To detect and prevent one activation being shared across devices that aren't yours.
- To meet legal obligations, like responding to a valid legal request.
6. Who we share it with
We don't sell your personal information. We share it only with:
- Stripe, to process payments — governed by Stripe's own privacy policy.
- Google, only if you choose Google sign-in — governed by Google's own privacy policy.
- Resend (our email provider), to send account verification and password-reset emails.
- Your reseller, if one activated your device — limited to your email, device status, and whatever you've opted to share per Section 4.
- Law enforcement or other parties, only where we're legally required to.
7. How long we keep it
We keep account and device data for as long as your account is active, plus a reasonable period afterward for billing records, fraud prevention, and legal compliance. You can ask us to delete your account and associated personal data at any time (Section 9); some records (like completed payment history) may be retained longer where we're legally required to keep them.
8. Security
Passwords are hashed, not stored in plain text. Device activation is authorized using signed tokens verified with a public key baked into the app — the private signing key never leaves our server. Traffic between the app and our servers is encrypted, and the app additionally pins our server's certificate to guard against network-level interception even on a compromised network.
9. Your choices
- Access and correction: your account dashboard shows your devices, plan, and billing history directly.
- Portal sharing: toggle it on or off any time in Settings.
- Device removal: remove a device from your account whenever you want.
- Account deletion: contact us to request deletion of your account and associated personal data, subject to the retention needs in Section 7.
10. Children's privacy
The Service isn't directed at children under 13, and we don't knowingly collect personal information from them. If you believe a child has provided us personal information, contact us and we'll remove it.
11. Changes to this policy
We may update this policy as the Service changes. Material changes will be flagged in-app or by email to registered accounts. Continuing to use the Service after an update means you accept the revised policy.
12. Contact
Questions about this policy, or a data request? Reach us through the in-app support channel once signed in, or at [email protected].