Privacy Policy

Privacy, explained clearly.

ChromTV is a client for a compatible service selected by you. The policy separates data on your device, communication with your provider and optional ChromTV cloud processing.

8 August 2026

Data controller

The data controller is Kenneth Rene Hansen. ChromTV and Chrominom are product and brand names, not a separate registered legal entity. Privacy and data requests can be sent to chromtv@chrominom.com.

What ChromTV does

ChromTV is media-player software for iPhone and Apple TV. It does not provide TV channels, streams, provider subscriptions, films or series. You connect a compatible third-party service that you are authorised to use.

Data kept on your device

Source definitions and provider credentials use Apple Keychain protection. Guide and catalogue caches, channel organisation, favourites, watchlist, viewing progress, viewing history and app settings are stored in the app's local container or preferences. Viewing progress, history and watchlist are not included in the reviewed Cloud Sync payload.

You can remove individual sources and clear viewing history in ChromTV. Removing the app removes its app-container data; residual Keychain behaviour is controlled by the operating system, so ChromTV does not promise that uninstalling alone erases every Keychain item.

Communication with your provider

When you configure a service, ChromTV sends the server address and required authentication information directly to that provider to retrieve the channel list, programme guide, catalogue, artwork and media you request. That provider is selected by you and its privacy terms apply. Some user-configured providers may use unencrypted HTTP; ChromTV warns when a configured connection has reduced transport protection.

Optional Cloud Sync

Cloud Sync is optional and requires Sign in with Apple. When enabled, ChromTV processes the account identifier used for authentication, an app-generated device identifier and sync status. It can also process selected app settings, channel and category preferences, favourites contained in those preferences, stream-to-channel adjustments, source server and guide addresses, and provider credentials.

Cloud connections use HTTPS. Source definitions and credentials are readable by the protected sync function so it can merge changes between devices, then stored in the database as an AES-256-GCM encrypted document. This is encryption in transit and encrypted cloud storage, not end-to-end encryption.

Sign out stops account access and future sync on that device but does not delete existing cloud records. Settings → Account → Delete Account permanently deletes the ChromTV account and user-linked server data after fresh Sign in with Apple confirmation.

Purchases

Apple processes payments. ChromTV retains only the normalised entitlement fields needed for access and restoration: product, original and current transaction identifiers, environment, ownership type, subscription state, relevant purchase/expiry/revocation dates and the app account token while the account exists. Complete Apple subscription payloads are not retained. ChromTV does not receive payment-card details.

Deleting a ChromTV account does not cancel the Apple subscription. If you create a new account and restore an eligible purchase, the entitlement and future renewals can be associated with the new account without restoring previously deleted ChromTV data.

Sharing, analytics and tracking

ChromTV does not sell personal data. The reviewed app contains no advertising, analytics, cross-app tracking or third-party crash-reporting SDK. ChromTV cloud infrastructure and Apple process the information needed for authentication, sync and App Store purchases. Your selected media provider and its media/artwork hosts receive requests needed to supply the service you chose.

Retention and deletion

Local data remains until you remove it with an available in-app control, replace it during normal cache operation or remove the app's container. Settings → Account → Delete Account permanently deletes the ChromTV authentication account and all user-linked ChromTV server rows. The same flow deletes local sources, credentials, preferences, caches, favourites and playback data on that device by default; you may actively turn local deletion off while server deletion still proceeds.

ChromTV currently uses Supabase Free: platform API/database logs are retained for one day and automatic database backups/PITR are not included. Retention of the public website host's access logs has not yet been verified. For access, correction or other privacy requests, email chromtv@chrominom.com without provider credentials.

Security

ChromTV uses Keychain protection for local secrets, HTTPS for ChromTV cloud traffic, row-level access controls for signed-in sync data and encrypted database storage for source documents. No system can guarantee absolute security.

Children

ChromTV is not designed as a children's service, does not provide media content and does not use advertising or tracking. The content available through a user-selected provider is controlled by that provider and the user.

Changes and contact

This policy may be updated when features or processing change. The effective and last-updated date appears above. Questions and privacy requests: chromtv@chrominom.com.