Privacy Policy – Spider TV 4K
Effective Date: September 16, 2026
Last Updated: September 16, 2026
Spider TV 4K respects your privacy. This policy explains the information the application and website may process, why it is used, how it is protected, and the choices available to you.
Spider TV 4K is a media player. It does not provide subscriptions, channels, movies, or series. Users add details obtained from their own service provider.
- 1. Information processed by the application
- 2. How information is used
- 3. Subscription details
- 4. Diagnostic reports and support codes
- 5. Local storage
- 6. Third-party services
- 7. Information sharing
- 8. Data retention
- 9. Information security
- 10. Children’s privacy
- 11. User rights
- 12. Third-party providers and links
- 13. Policy changes
- 14. Contact information
1. Information processed by the application
The application and website may process the following information as needed to operate the service:
- Subscription details entered by the user, such as a host code or server address, username, and password.
- Device information, including platform, television model, and operating system version.
- Application version, build number, language, and time zone.
- A Device ID and a technical device token used to communicate with our services.
- IP address and an approximate country code derived from the HTTPS connection or the reverse proxy in front of the service.
- Application settings, favorites, continue-watching records, search history, and image cache stored on the device.
- Network test results and sanitized technical errors when the user consents to a diagnostic report.
- Information the user voluntarily sends to support by email.
- Device platform and application version when notifications are retrieved from our services.
- A series name that may be sent through our application API when episode artwork is requested.
Subscription details are not stored only on the device. They are kept locally on the television so the application can sign in and play content, and they are also sent to Spider TV 4K servers when the device registers after sign-in and when mobile pairing is used, so the device administration tools can provide technical support. Username and password are stored on our servers in encrypted form.
2. How information is used
Information is used to:
- sign in to the service provider chosen by the user and play content;
- store settings and operate application features on the device;
- refresh channels, movies, and series available from that provider;
- pair the television with a phone through the connect page;
- register the device and manage its status from the administration panel, including notifications and remote commands;
- diagnose connection or playback issues after the user agrees;
- provide technical support; and
- protect the application and support services from abuse through rate limits and administrative controls.
3. Subscription details
Subscription details are used to contact the service chosen by the user. The application sends the username and password directly to that provider’s server to load catalogs and play streams.
On the device, subscription details are stored in the application’s local storage so the user can sign in again later.
On Spider TV 4K servers, the host code, username, and password are stored after encryption when the device registers. During mobile pairing, subscription details are sent over HTTPS and held temporarily in encrypted form in the pairing session until the television retrieves them or the session expires. After retrieval, the encrypted payload is removed from the pairing session. The pairing key is valid for five minutes, and pairing session records are removed from storage after 24 hours.
Support staff must not ask for a subscription password by email. Diagnostic reports do not include the password, stream URLs, or authentication tokens.
4. Diagnostic reports and support codes
The application creates a diagnostic report only after the user agrees.
A report may include application version and platform, television model and operating system version, language and time zone, Device ID, connection status and network test results, whether official application services are reachable, whether the subscription server is reachable (reachable or not reachable only, without the server URL), response time, player type, the last technical error after sensitive data is removed, the last content refresh time, available storage if the platform allows it, and the report creation and expiry times.
A report does not include the subscription password, full username, full host URL, stream URLs, viewing history, favorites, titles the user watched, or authentication tokens.
The diagnostic report is deleted automatically after 24 hours. The user can delete it from the application before it expires. Administrators can look up the report after signing in, using the support code. The code alone cannot be used to view the report through a public interface.
5. Local storage
The application may keep settings, favorites, continue-watching records, search history, temporary catalog data, the parental PIN, and the Device ID on the device to improve performance and restore sign-in.
The user can delete selected data or all application data from Settings. Clearing all data may remove saved subscriptions, settings, favorites, and viewing history from that device.
6. Third-party services
The third-party and infrastructure services actually used to operate the application or website are:
- the subscription provider chosen by the user, which is independent and subject to that provider’s own policy;
- Spider TV 4K servers used to resolve host codes, register devices, complete mobile pairing, deliver notifications, store diagnostic reports, and host the website;
- the HTTPS reverse proxy or content network in front of the service, which may see the device IP address;
- The Movie Database (TMDB) for series episode artwork when a title or identifier is available. See TMDB’s policy at themoviedb.org/privacy-policy; and
- the email service that receives messages sent to [email protected], according to that provider’s policy.
The application code does not currently integrate a separate third-party audience analytics or crash-reporting SDK.
7. Information sharing
We do not sell personal information.
The minimum information needed to operate the website, application, or support service may be processed by hosting, email, or infrastructure providers that help us run those functions.
The application connects to the subscription server added by the user. That provider is independent, and we are not responsible for its practices.
Information may be disclosed if required by law or to protect rights, safety, and the service from abuse.
8. Data retention
- Diagnostic reports: 24 hours, then automatic deletion, or earlier deletion by the user in the application.
- Mobile pairing sessions: encrypted subscription details are cleared after the television retrieves them or after the five-minute key expires. Session records are removed from storage within 24 hours.
- Device administration records: kept while the device is used so we can provide support and manage device status. The current system does not apply a fixed automatic deletion period to these records. They can be deleted manually from the administration panel.
- Local application data: remains on the device until the user clears it or uninstalls the application.
- Support emails: handled as ordinary email. The application does not implement an automated retention schedule for those messages.
We keep information only for as long as needed for the purpose for which it was processed, subject to the periods above.
9. Information security
We use reasonable technical and organizational measures, including HTTPS for our services, AES-256-GCM encryption at rest for usernames, passwords, pairing payloads, and diagnostic reports on our servers, a password-protected administration panel, and rate limits.
On the television, subscription details are stored in the application’s local storage. This is not a separate hardware-backed vault provided by the operating system.
No method of electronic storage or transmission is 100% secure.
10. Children’s privacy
The application is not directed at children for the purpose of collecting their personal information. If a parent or guardian believes a child sent personal information to support, they may contact us to request review or deletion.
11. User rights
Depending on applicable law, a user may have the right to request access to information relating to them, correction, deletion, withdrawal of consent for optional processing such as a diagnostic report, and to contact us about privacy questions at [email protected].
12. Third-party providers and links
The application may connect to a server or provider chosen by the user and may show links or QR codes to external pages in notifications. We are not responsible for those parties’ privacy practices. Their terms and policies should be reviewed separately.
13. Policy changes
We may update this policy when application features or legal requirements change. The last updated date appears at the top of this page.
14. Contact information
For privacy questions, email [email protected].