Effective date: 19 September 2026
This policy explains what information the Chanovo app ("the app", "we") handles, and what it does not. We wrote it to be read, not to be scrolled past. The short version: the app has no accounts, no advertising, and no third-party analytics. The app can measure how it is used and can learn which channels you watch, but only if you turn that on yourself. Both switches are off when you install the app, and if you leave them off, nothing about what you watch ever leaves your device.
The app keeps your settings locally, on your device only:
This data stays on your device, and deleting the app deletes it. The only exception is described below: if you turn on personalized recommendations, the app also tells our servers when you add or remove a favorite, so that the recommendations can use it.
When the app first starts, it creates a random identifier for that installation and registers it with our servers. This is how the server can tell one installation from another without knowing who you are.
Together with that identifier, our servers store only what is needed to serve the right catalog and to understand the numbers later: the kind of device (for example, Android TV), the app version, your app language, your time zone, your country (see below), and the date the installation last contacted us.
The app asks for two things, separately. You can accept one, both, or neither, and you can change your mind at any time in the app's settings. Both start off. Until you turn the first one on, the app sends us no information about what you watch at all.
With usage measurement on and personalized recommendations off, we count what is watched and we keep those records for a short time (see the table below), but no lasting profile of your installation is built.
Your choice is recorded against the version of this policy you were shown. When we change this policy in a way that matters, the app shows you the new text and asks again.
The app sends small batches of events. Each event says what happened and when:
Each of these carries your installation's random identifier, the app version, the kind of device, and the country. Nothing in them names you.
If you open a channel and leave it before sixty seconds, the app sends nothing at all — no start, no stop, no record that you opened it. Browsing through twenty channels to find something to watch reaches our servers as nothing. Every viewing record we hold therefore describes at least one minute of watching.
There is one exception, and it is deliberate: a channel that fails to play is reported even though it failed in the first seconds. Failures happen immediately, and finding broken channels is one of the reasons this measurement exists.
| What | Kept for |
|---|---|
| The raw events your app sent, exactly as sent | 30 days, then deleted |
| The summary of one viewing (which channel, how long), when personalized recommendations are off | 45 days, then deleted |
| The same viewing summaries, when personalized recommendations are on — this is the history the recommendations are built from | 180 days, then deleted |
| Counted totals (how many people watched a channel in a country on a day), and your installation's recommendation profile | No fixed period. The totals are counts and hold nothing about you. The profile is deleted the moment you withdraw consent or delete your installation. |
The totals are what remains in the long run, and they are anonymous: they say that a channel was watched, in a country, on a day, by a number of installations. They cannot be traced back to an installation, and they are not affected when you delete yours.
Deleting the app from your device also deletes everything the app kept locally.
To show you the channel list, the app downloads a catalog from our servers. Like every web server, ours receive standard technical data with each request: your IP address, the request time, and the app version. We use this data only to operate and protect the service, and we do not use it to identify or profile you.
Your IP address is used for one further thing: our edge infrastructure derives a country from it — two letters, such as PT — so that the app can show a channel list that makes sense where you are, and so that we can count how popular a channel is in a country. The country is what gets stored; the IP address is not. No viewing record, no event, and no profile holds an IP address. If you choose a country yourself in the app, your choice is used instead of the derived one.
The channels themselves are streamed from the servers of their broadcasters or providers, not from us. When you play a channel, your device connects to that provider directly, and the provider can see your IP address — the same as when you open a website. We do not control those providers and their own policies apply to those connections.
The app is a general-audience TV player. It does not knowingly collect personal information from children.
When this policy changes, we update the effective date at the top of this page. Meaningful changes will also be mentioned in the app's release notes. Because your consent is recorded against the version of this policy you were shown, a change that affects what we process means the app will show you the new text and ask you again.
Questions about privacy: privacy@chanovo.com