Privacy policy
Last updated October 2, 2026
This policy explains what data the Streamivo apps process, why, and what your rights are. It applies to all our apps — Android phone, Android TV, Samsung (Tizen), LG (webOS) and Roku —, to the account portal (ativar.streamivo.app) and to this website.
Streamivo is only a player: we do not sell, include or provide any channels, movies, series or lists. The content comes from your provider or from the list you add yourself, straight to your device — video never goes through our servers.
Who is responsible
Streamivo is operated by NNetwork. There are two ways to use the apps, and the roles differ:
- Customer of a provider (you sign in with the provider code and the details your provider gave you): the provider decides about your data and is the controller; NNetwork processes that data on the provider's behalf, as a processor, to run the app.
- Plan to use your own list (portal account): NNetwork is the controller of your account data.
Contact us about privacy at the e-mail under "Contact" at the end of this page.
What data we process
To sign in and keep you signed in:
- Provider code and the user name of your subscription. The password is checked on the provider's server when you sign in and is not stored by us.
- A device identifier generated by the app, device type and model, language, app version and the IP address of connections.
- Dates you used the app (for the provider's statistics, such as "how many customers used the app this month").
For app features, synced across your devices:
- Favorites, "continue watching" (the position in each movie or episode), display preferences, category order and visibility.
- Parental control: the PIN is stored only as a hash (we cannot read it), and the blocked categories.
- Messages and notices your provider sends through the app.
Only in the plan to use your own list:
- Account e-mail, country and language.
- The linked device's identifier. So the free trial does not restart after reinstalling, we use the device identifier provided by the TV's system, but we keep only a code derived from it (keyed hash), never the original identifier.
- The lists you add: server address, user name and password. The password is stored encrypted (AES-256) and is delivered only to your linked devices.
- Payment history (amount, currency, date, status). Card or Pix details are handled by Stripe and never reach us.
We do not collect location, contacts, photos, device files, or what you watch beyond what "continue watching" and favorites need.
Phone app permissions
- Camera: used only to read the QR code shown on the TV ("Connect TV"). The image is processed on the device and sent to no one.
- Microphone: used only for voice search, when you tap the microphone. Recognition is done by the device system's speech service; we neither receive nor store the audio.
- Internet: to talk to the provider's server and to our API.
What we use it for
- Signing in, keeping the session and connecting the app to your provider's or your list's server.
- Syncing favorites, progress and preferences across your devices.
- TV sign-in with your phone: the sign-in details are sent encrypted and kept for at most 10 minutes, until the TV receives them once.
- Yearly plan: enabling the trial and access, linking devices, processing the payment, and e-mailing the sign-in code and expiry notices.
- Showing your provider, in their panel, the customers and devices using their app, and calculating what they pay us for that use.
- Security: preventing abuse, limiting attempts and investigating failures.
We do not use your data for advertising, we show no ads, and we use no third-party tracking tools.
How long we keep it
- Session and app-feature data: while your access exists at the provider or in your account. When the provider removes your user, it is deleted.
- Temporary codes (e-mail sign-in, TV linking, TV sign-in with your phone): 10 to 30 minutes.
- Yearly-plan account: until you ask for deletion. Payment records are kept for the period required by tax law.
- Access logs (IP address and date): for the period required by Brazilian law (6 months).
Security
All communication with our API uses HTTPS. List passwords are encrypted, the parental PIN is stored as a hash, access to data is restricted and sign-in attempts are limited. No system is infallible; if a relevant incident happens we will notify those affected and the authorities as required by law.
Your rights
Under the Brazilian General Data Protection Law (LGPD) — and, if you are in the European Union, the GDPR — you may ask for: confirmation and access to your data, correction, deletion, portability, information about sharing, and withdrawal of consent. You may also complain to your data protection authority.
If you are a provider's customer, requests are handled through the provider; we can help you forward them.
How to delete your account and data
- Plan to use your own list: e-mail the contact address below, from your account's e-mail, asking for deletion. We delete the account, linked devices and added lists within 15 days (keeping only the payment records required by law). You can also remove devices and lists at any time on the portal.
- Provider's customer: ask your provider to remove your user — that deletes favorites, progress and preferences. Or write to us with the provider and user name.
- To delete only the data on a device, uninstall the app or clear its data in the system settings.
Children
The apps are not directed to children and we do not knowingly collect data from children under 13. Parental control exists so guardians can block categories on the family's devices.
Changes to this policy
We may update this policy. The date at the top shows the version in force; important changes will be announced in the app or by e-mail.
Contact
NNetwork — Streamivo · suporte@streamivo.app