Privacy policy
Last updated: 15 September 2026
This policy covers the FamilyFilterTV Android app (TV and phone). It explains what an account involves, what we store, how payment works, and what the third-party services the app relies on see. It's written in plain language on purpose.
What FamilyFilterTV does
FamilyFilterTV plays streams handed to it by Stremio and mutes its own audio during subtitle lines that match the profanity profile you choose. It fetches subtitles from Stremio's OpenSubtitles add-on and title information from Stremio's Cinemeta service so subtitles can be matched correctly — both are third-party services, not ours. FamilyFilterTV is not affiliated with Stremio, Google, or OpenSubtitles.
Your account
Since version 0.2, using FamilyFilterTV requires an account, created with Firebase Authentication using either an email address and password or Google sign-in. Accounts are for the parent or adult setting up filtering for the household — see "Children" below. The TV itself never asks you to type a password: you sign in on your phone and activate the TV with a short code generated by the TV, which expires after 2 minutes.
What we store
Against your account we store:
- Your email address and the Firebase user id created for your account.
- A record for each device linked to your household: a device id generated by the app, the device model, a name you give it, its kind (TV or phone), and when it was last seen.
- Link-code records used to activate a TV from your phone. These expire 2 minutes after creation.
- A snapshot of your subscription status (active/expired and renewal date) used to unlock filtering and to help with support queries.
This data is stored in Google Cloud / Firebase, in the europe-west1 region. We do not store your card or payment details — see "Payments" below.
Payments
Subscriptions are billed through Google Play Billing and managed by RevenueCat, a subscription-management service. RevenueCat receives your Google Play purchase token and your Firebase user id, so it can tell us whether your subscription is active — it does not receive your card details, and neither do we. No card, bank, or payment-card information ever reaches FamilyFilterTV's own servers.
Network requests the app makes during playback
Besides talking to our own account and billing backend, FamilyFilterTV talks to two third-party services, both necessary for it to function as Stremio's external player:
| Destination | Purpose | What is sent |
|---|---|---|
v3-cinemeta.strem.io (Stremio's public metadata service) |
Look up a title's canonical name/episode so subtitles can be matched correctly | The release name and/or IMDb id of the title being played |
opensubtitles-v3.strem.io (Stremio's OpenSubtitles add-on) |
Fetch a matching subtitle file when the video has no built-in subtitle track | The video's file hash and file size, and/or the IMDb id and episode number, used to find a matching subtitle |
Stremio's own local server on your device (127.0.0.1) hands FamilyFilterTV the
stream to play — that traffic never leaves the device. No video, audio, or subtitle content you
watch is ever uploaded anywhere by FamilyFilterTV; subtitle files are only downloaded, to
be read locally during playback, and are cached in the app's private storage so the same title
isn't re-fetched every time. That cache never leaves your device.
No advertising, no analytics, no selling data
FamilyFilterTV contains no advertising SDK and does not use an advertising ID. It contains no analytics SDK. We do not sell your data, or any data about your household, to anyone, for any purpose.
Diagnostics screen and notification-listener access
Settings → Diagnostics is an optional screen for checking device compatibility (audio muting behaviour, media-session reporting, and so on). To read what another app is currently playing (title, position, playback state) it needs Android's notification-listener permission, which you are asked to grant explicitly in Android's system settings — the app does not have this access until you turn it on yourself, and you can revoke it at any time from Android's notification-access settings. This is used purely to display live diagnostics on screen; FamilyFilterTV never uploads, stores remotely, or shares anything it reads this way. It reads media-session metadata (what's playing, not notification content), and it never reads the text of your notifications.
Direct-install updates
Copies of FamilyFilterTV installed directly (not through Google Play) check a small version file hosted on this site to see if an update is available. That check does not send any personal data — only the app's own version number, to compare against the latest one published.
How long we keep your data, and deleting your account
We keep your account and device records for as long as your account exists, and your subscription snapshot for as long as needed to support billing queries. To delete your account and the data we hold about it, email jacquesjdupreez@gmail.com from the address on the account; in-app account deletion is planned for a future version. Cancelling your subscription in Google Play stops billing but does not by itself delete your account — email us if you want the account removed too.
Your rights
This app is operated from South Africa and this policy is written with South Africa's Protection of Personal Information Act (POPIA) in mind. We collect only what's needed to run your account, activate your devices, and confirm your subscription (see "What we store" above). You can ask us at any time what we hold about you, ask us to correct it, or ask us to delete your account — email jacquesjdupreez@gmail.com.
Children's privacy
FamilyFilterTV accounts are for parents and other adults (18+) setting up filtering for the household, in line with the target-audience declaration on our Google Play listing. The app itself does not collect data from the children watching — filtering happens on-device, and only the account holder's details (above) are stored against the account.
Changes to this policy
If this policy changes, the "Last updated" date above will be updated and the change described here before it takes effect.
Contact
Questions about this policy, or to delete your account:
jacquesjdupreez@gmail.com
Jacques du Preez, South Africa.