This Privacy Policy describes how the IPTV Surfing application handles
user information. The app developer is committed to respecting your privacy and to
collecting no more information than is strictly necessary for the app to work.
Summary: your playlists, provider credentials and usage data are
stored on your device by default. Creating an account is optional:
if you do, your email and — as a Plus user — your favorites, profiles and playlists
are stored in the cloud to sync them across devices. The app uses Google services
(Firebase) for accounts, sync, anonymous analytics and crash reports, and Qonversion
to validate purchases. We do not sell your data or use it for advertising.
1. Local data on your device
Your M3U playlist URLs, Xtream Codes provider credentials, favorite channels, hidden
groups and channels, playback positions, downloads and program guide (EPG) data are
stored in your device's local database. If you don't create an account, this data
never leaves your device (except as described in the analytics and
metadata sections).
2. User account (optional)
You can create an account with email and password (a new password,
exclusive to the app) or, on devices with Google Play, with your Google account.
Authentication is handled by Firebase Authentication (Google LLC).
We use your email address solely to identify your account, verify it and let you
recover access. We do not send marketing communications.
3. Cloud sync (IPTV Surfing Plus)
If you are a Plus user and signed in, the app syncs the following data linked to your
account across your devices using Cloud Firestore (Google LLC):
Favorite channels, hidden channels and groups, and channel renames.
Playback positions ("continue watching") and recently watched.
User profiles (name, avatar and, if you set one, the PIN — stored only as a
cryptographic hash, never in plain text).
Metadata of your M3U playlists, including their source URL. Note
that Xtream Codes URLs may contain your provider credentials; they are stored so
your playlists can be restored on other devices and are never shared with anyone
else.
This data is used exclusively for multi-device sync and is deleted if you request
deletion of your account (see section 11).
4. Purchases, subscriptions and free trial
Payments: purchases (Plus subscription or one-time purchase) are
processed entirely by Google Play. The app never sees or stores
your payment details (cards, etc.).
Purchase validation: we use Qonversion Inc. to
validate purchase receipts and keep track of your subscription status. Qonversion
processes the store receipt, device identifiers and, if you have an account, a
user identifier, in accordance with its
privacy policy.
Amazon devices (Fire TV): the Amazon Appstore version does not
sell anything inside the app; Plus is unlocked by signing in with an account that
already has it.
Free trial: to prevent abuse, redeeming the free trial requires
an account with a verified email, and the fact that it has been used is recorded
and linked to your account.
5. Usage analytics and crash reports
Google Analytics for Firebase (Google LLC): collects data about
how the app is used, such as screens visited, navigation events, session duration,
device type and approximate location (country/city, derived from the IP address).
It is used exclusively to improve the app; it does not personally identify you and
is not used for advertising. Processed according to the
Google Privacy Policy.
Firebase Crashlytics (Google LLC): collects technical information
about app crashes (device model, Android version, stack trace) to improve
stability, according to the
Firebase Privacy Policy.
6. Movie and series metadata
To show synopses, posters, cast and ratings for movies and series, the app queries a
first-party service hosted on Cloudflare, sending only the content's
title, year and language — never your account data. Poster images are downloaded
directly from the external metadata provider's content delivery network (CDN), which,
like any web server, receives your device's IP address when serving them.
7. Network usage
The app makes network connections to:
M3U playlists and channels: download channel lists from the URLs
the user enters and manages.
Program guide (EPG): download EPG files from the URL configured
by the user or auto-detected from their provider. If the user adds a playlist from
the built-in "IPTV Catalog", the M3U file and, where applicable, the
associated EPG file are downloaded from IPTVsurfing's own servers. This connection
does not transmit personal data.
Channel playback: connect to the user's provider streaming server
to play the selected content.
Account and sync: communicate with Firebase (Google LLC) for the
authentication and cloud sync described above.
Purchases: communicate with Google Play and Qonversion to validate
Plus status.
Analytics and crashes: send the data described in section 5 to
Google's servers.
Metadata: look up synopses and posters as described in section 6.
The app allows HTTP (unencrypted) connections because many IPTV streaming servers do
not have an HTTPS certificate. These connections are made exclusively to the servers
of the providers configured by the user.
8. Content responsibility
IPTV Surfing is a neutral media player. The application does not
provide, host, distribute or have any affiliation with any channel list provider or
any media content. It is the user's sole responsibility to ensure that the playlists
they use comply with the laws applicable in their country.
9. Requested permissions
INTERNET: required to download playlists and EPG and to play
channels from the user's provider servers.
ACCESS_WIFI_STATE / ACCESS_NETWORK_STATE: to detect the local
network IP and enable the TV-phone pairing feature via QR code.
FOREGROUND_SERVICE / FOREGROUND_SERVICE_DATA_SYNC: so that
playlist and EPG sync can complete even if the user switches apps, showing a
progress notification.
POST_NOTIFICATIONS (Android 13+): to show sync progress and
program reminders in the notification bar.
READ_MEDIA_VIDEO / READ_EXTERNAL_STORAGE: so the user can select
a local M3U file from device storage.
10. Android backup
The app has Android's automatic backup enabled (allowBackup=true). This
means Android may include the app's local data (saved M3U playlists, favorites,
settings) in your Google account backup, managed entirely by the operating system and
Google. You can disable this behavior in your Android device settings.
11. Data retention and deletion
Local data: remains on your device until you clear the app's data
or uninstall it.
Account and sync data: kept for as long as your account exists.
You can request full deletion of your account and all associated data by writing to
[email protected] from the
account's email address; it will be deleted within a maximum of 30 days.
Analytics and crashes: Google retains Analytics and Crashlytics
data according to its standard retention periods (currently up to 14 months for
Analytics and 90 days for Crashlytics).
12. Changes to this policy
This policy may be updated in the future. Any relevant change will be reflected on
this page, updating the date shown at the top of the document. We recommend reviewing
it periodically.
13. Contact
If you have any questions about this Privacy Policy, you can contact us at:
[email protected]