Legal
Privacy Policy
Last updated: April 2026
What we collect
- Account data. Email address (via Clerk), Clerk user ID, plan status, Stripe customer ID.
- Stored keys. Debrid API keys, TMDB API key, and optionally an AI API key you provide. These are AES-256-GCM encrypted at rest with a server-held key that is distinct from the free-tier URL encryption key.
- Preferences. Catalog order, enabled upstream addons, Trakt / MDBList connections.
- Usage telemetry. Watch history for AI recommendations (title + timestamp, not the media file itself), metered AI call counts for fair-use enforcement on the Pro tier, rate-limit counters.
- Titles you open inside the addon, used only to personalize your recommendations. Disable any time in settings (account page or the configure wizard).
What we do NOT collect
- Any media content. We do not host, serve, transmit, or proxy playback of any kind — separate addons you install in Stremio handle playback entirely outside our infrastructure.
- Payment card numbers. Stripe handles all payment data; we only see billing metadata.
- Persistent IP address logs beyond short-lived rate-limit windows.
- Third-party analytics (no Google Analytics, no pixels).
Third-party processors
These services receive some of your data in order for AI Streams to function:
- Clerk — authentication. Receives email + sign-in credentials.
- Stripe — payment processing. Receives billing email and card data you enter on their hosted checkout.
- Neon — database hosting. Stores encrypted keys, watch history, plan state.
- Vercel — application hosting. Processes HTTP requests.
- OpenAI — text embeddings for the AI recommendation index. We send short query strings; no personally identifying information.
- Your AI provider (Gemini / OpenAI / LM Studio, depending on your choice) — receives rerank prompts that include recently-watched titles.
Data retention
- Account + keys: until you delete your account.
- Watch history: 180 days.
- Taste signals (titles browsed in the addon): 180 days.
- AI usage counters: 90 days.
- Stripe event dedupe table: 30 days.
- Rate-limit counters: 24 hours.
Your rights
You may at any time:
- Access a copy of your stored data from the Account page.
- Delete your account and all associated data from the Account page.
- Export your config from the Configure UI at any time.
- Rotate your addon URL token from the Account page, which invalidates any copies of the old URL.
Contact
Privacy inquiries: aistreams@proton.me. You can also access and delete your data directly from the Account page.