Gflix
Privacy Policy

Your library stays yours

Gflix is built so there is very little about you for anyone to hold — including us.

Last updated 25 September 2026

The short version

Gflix has no account and no advertising, and nothing you watch passes through a server of ours. Your sources, your credentials and your watch history live on your device and, if you turn it on, in your own iCloud account.

The one thing that reaches a server we run is a bug report or feature request you choose to send from the app. What that carries is set out below.

The app does talk to other services — to find a poster, to look up a description, or because you asked it to connect to a tracker. This page says which, and what each one sees.

There is no account

You do not sign up for Gflix and you do not give us an email address. We never learn who you are, because the app never asks.

While Gflix is distributed through TestFlight, Apple handles the invitation and knows you are a tester. That relationship is between you and Apple, under Apple's privacy policy, not ours.

What stays on your device

The playlists and media servers you add, any usernames, passwords or tokens they need, your watch history and resume positions, your favourites and hidden items, your downloads, and every setting you change.

None of it is sent to us. If you turn on iCloud sync, this data is stored in your own private iCloud database so your devices agree with each other. That database is yours; we cannot read it.

Deleting the app removes the local copy. Removing it from iCloud is done through your device's iCloud settings.

Your sources and their credentials

When you add a playlist or connect a media server, your device contacts that provider directly, using the address and credentials you entered. Nothing is proxied through us, and we never receive the address, the credentials or the list of what they contain.

Credentials are held in the device keychain. What your provider does with the requests your device makes to it is governed by their privacy policy, not this one.

Services the app contacts

To turn a filename into something with a poster, a description and a cast, Gflix looks titles up in public metadata services. These requests carry the title being looked up and your device's IP address, as any web request does. They do not carry your identity, your sources or your history, because the app has no identity for you to send.

  • TMDb — The main source of titles, descriptions, cast and artwork. Posters and backdrops are fetched from its image servers.
  • TheTVDB, Fanart.tv, OMDb — Additional artwork and metadata, used where TMDb has a gap or a series needs a different identity resolved.
  • MDBList, JustWatch, IMDb — Ratings, lists and availability information shown on a title's page.
  • YouTube — Trailer thumbnails and playback, when you open a trailer.
  • TheIntroDB, IntroDB — Where an episode's intro and credits start and end, so they can be skipped.
  • Plex — Used only to sign in to a Plex server when you choose to connect one.

Trackers you choose to connect

Gflix can connect to Trakt, SIMKL and MDBList so your watch history and lists follow you beyond this app. These are off until you connect them.

If you do connect one, you sign in to that service directly and it gives Gflix a token, held on your device. From then on Gflix sends that service what it exists to receive — what you watched and when, and the lists you keep there. Disconnecting it from Settings stops that and discards the token. What the service keeps afterwards is covered by its own policy.

Crashes and diagnostics

TestFlight builds send crash reports to Apple, which shares them with us as stack traces and device model and OS version. They do not contain your sources or your history.

Settings › About › Diagnostics builds a report of the app's state that you can send us yourself, or attach to a bug report. It holds no playlists, credentials or watch history; read it before you send it — it is only ever sent if you choose to.

There is no analytics SDK in Gflix. We do not measure what you watch, what you tap, or how long you stay.

Reports and feature requests you send

Settings › Help & Feedback sends a bug report or a feature request to support.gflixhub.app, a small service we run on Cloudflare. It carries what you typed, the app version, your device model and iOS version, and — only if you switch it on — the diagnostics report described above.

Instead of an account, your device proves the report came from a genuine copy of Gflix using Apple's App Attest. That gives us a random key for this install of the app. It is not your name, your Apple ID or anything Apple or anyone else can tie back to you. We keep it, with the time of each report, to limit how many one install can send in a day.

Bug reports become issues in Gflix's private GitHub repository, seen only by the people building the app. Feature requests join a public queue: the title and description of a request are shown so other people can vote for it, so leave personal details out of them.

Cloudflare, which runs the service, sees your IP address as it does for any website. We do not store it.

Notifications

If you allow notifications, reminders about upcoming episodes and releases are scheduled on your device from data already there. They are not sent from a server of ours, and allowing them tells us nothing about you.

Children

Gflix is not directed at children, and we do not knowingly collect anything from children.

Content

Gflix provides no channels, films or series. It is a player for sources you supply, and you are responsible for holding the rights to whatever you play through it.

Changes to this policy

If what the app does changes, this page changes with it, and the date at the top moves. Anything that would newly collect or share your data would be described here before it shipped.

Getting in touch

Questions about any of this, including a request to see or delete what we hold, go to support@gflixhub.app. What we can hold is small — reports you sent from the app, and the install key they came with — and we will delete it on request.