Privacy Policy
Figimi IPTV Player · Last updated: September 15, 2026
This policy explains how Figimi IPTV Player (“Figimi”, “we”, “us”) handles information when you use the application on macOS, iOS and iPadOS.
Figimi is a media player. It does not provide, host, sell or distribute television channels, films, series or streaming subscriptions. You add your own IPTV playlists and provider accounts, and you are responsible for ensuring you are authorised to access that content.
There are no user accounts. The app has no registration and no sign-in, and we operate no server that receives your playlists, credentials or viewing activity.
Contents
- Data controller and contact
- Information stored on your device
- Information sent to your IPTV provider
- Demo catalogue
- Subscription and purchase information
- What we do not collect
- How information is used
- Sharing of information
- Data retention
- Security
- International transfers
- EEA and UK rights
- United States rights
- Children’s privacy
- Third-party services
- Changes
- Contact
1. Data controller and contact
The controller responsible for this application is:
Aymen Lasfar / Figimi
Rua Irmãs Missionárias do Espírito Santo, n.º 35
4715-340 Braga, Portugal
Privacy questions and requests: support@figimi.com or figimi.com.
2. Information stored on your device
Figimi keeps your configuration on your own device so the app can remember it between launches. Nothing in this section is transmitted to us.
Stored in the system Keychain
Values that can authenticate you to a provider are held in the operating system Keychain, protected after first unlock and marked device-only, so they are never synchronised to iCloud or to any other device:
- Playlist and portal URLs
- Xtream Codes usernames and passwords
- Stalker / MAG portal addresses and MAC addresses
- Custom program guide URLs
- Watch history and playback positions, because stream addresses can themselves contain credentials
Stored in ordinary app storage
- Playlist display names and provider host names
- Optional User-Agent values
- Favourite channels
- Theme, subtitle, audio, volume and mute preferences
- Parental-control settings and PIN
- A locally generated portal installation identifier
- Cached catalogue and program guide data, to avoid repeat downloads
You can delete individual playlists, clear watch history, and remove all saved data from within the app. Deleting the application removes this information, subject to how your operating system and any backups you have configured behave.
3. Information sent to your IPTV provider
When you add a playlist, sign in to a portal, load a catalogue, open a program guide or play a stream, the app sends what that request requires directly from your device to the provider you chose. Depending on the source type this can include:
- The playlist or portal URL
- Your Xtream username and password
- Your portal MAC address
- The channel, film, series or episode you requested
- The application or custom User-Agent
- Standard network information such as your IP address
That traffic does not pass through any server of ours. Your provider may log, retain, process or disclose it under its own policies. We do not control any provider’s privacy, security, logging or retention practices. Do not enter credentials for a provider you do not trust or are not authorised to use.
Unencrypted connections. Many IPTV providers serve plain HTTP rather than HTTPS. Where that is the case, credentials and requests are not encrypted in transit and may be visible to network operators. This is a property of the provider’s own protocol; Figimi cannot make an insecure provider connection secure, and the app discloses this in the Playlist Manager.
4. Demo catalogue
Before you add a source, the app shows a small demo catalogue so you can try the player. It streams from public test endpoints operated by Apple, Mux and Unified Streaming. Opening those streams sends ordinary network request information, such as your IP address, to those providers.
5. Subscription and purchase information
Figimi offers optional auto-renewable subscriptions through Apple’s in-app purchase system. Apple processes all payments. We never receive your card number, bank details or any other payment instrument.
Subscription state is managed with RevenueCat, which may process:
- Purchase history and receipts
- Subscription product and entitlement status
- Renewal and expiration information
- An anonymous application user identifier
- Technical information needed to validate purchases
This is used to validate purchases, grant entitlements, prevent fraud, keep subscription records and give us aggregate subscription reporting. Neither we nor RevenueCat use purchase history for cross-app advertising or for tracking you across other companies’ apps and websites.
See RevenueCat’s privacy policy and Apple’s privacy policy.
6. What we do not collect
The application does not collect your:
- Name, email address, telephone number or postal address
- Payment card or bank account details
- Precise or approximate location
- Contacts, photos, videos or messages
- Health, fitness or biometric information
- Advertising identifier
- Browsing or search history outside the app
Figimi contains no advertising network, no third-party analytics SDK and no crash-reporting SDK, and performs no tracking as defined by Apple’s App Tracking Transparency framework.
7. How information is used
- Saving and managing the playlists you add
- Authenticating with the provider you selected
- Retrieving channels, films, series and program guide data
- Playing the media you request
- Remembering your preferences, favourites and playback positions
- Providing, validating and restoring subscriptions
- Preventing fraud and protecting subscription services
- Responding to support and privacy requests
- Complying with legal obligations
8. Sharing of information
We do not sell personal information and we do not share it for cross-context behavioural advertising. Information reaches only these parties:
- The IPTV provider you configure — receives your credentials and media requests, sent directly from your device.
- Apple — processes App Store transactions, subscriptions and receipts under its own policies.
- RevenueCat — processes purchase and entitlement information.
- Legal authorities — where disclosure is required by law or legal process, or to protect the rights and safety of users or others.
9. Data retention
Information stored on your device remains there until you delete it, remove the app, or your operating system removes it. Watch history is capped and older entries are discarded automatically.
Apple and RevenueCat retain purchase records under their own policies and legal obligations. Your IPTV provider controls retention of its own logs; contact that provider directly about data it holds.
10. Security
Credentials and watch history are stored in the system Keychain rather than in plain application storage, restricted to the device and unavailable before first unlock. We apply measures appropriate to an application of this design.
However, you should be aware that:
- We cannot guarantee that any given IPTV provider stores or transmits your data securely.
- Plain HTTP provider connections are not encrypted.
- No method of storage or transmission is completely secure.
Use strong provider passwords, avoid providers you do not trust, and remove credentials from the app when you no longer need them.
11. International data transfers
Apple, RevenueCat and your IPTV provider may process information in countries other than where you live, which may have different data-protection laws. Where required, those service providers are responsible for applying legally recognised transfer safeguards.
12. European Economic Area and United Kingdom rights
If you are in the EEA or the UK you may have the right to request access to, correction of, deletion of, or restriction of processing of personal information, to object to certain processing, to request portability, to withdraw consent where processing relies on it, and to lodge a complaint with a supervisory authority.
Where processing occurs, the legal bases may include:
- Performing a service you requested
- Providing subscription functionality
- Complying with legal obligations
- Protecting security and preventing fraud
- Legitimate interests in operating and improving the application
- Consent, where consent is legally required
Because the app has no accounts and we hold no profile about you, there is usually nothing for us to retrieve or erase. Contact support@figimi.com and we may need to verify your request before responding.
You may also contact the Portuguese supervisory authority, the Comissão Nacional de Proteção de Dados, at cnpd.pt.
13. United States privacy rights
Depending on your state, you may have rights to know what personal information is collected and used, to request deletion or correction, to opt out of the sale or sharing of personal information, and not to be treated differently for exercising those rights.
Figimi does not sell personal information and does not share personal information for cross-context behavioural advertising.
14. Children’s privacy
Figimi is a general-purpose media player intended for adults. It is not directed to children and does not knowingly collect personal information from them. What can be viewed depends entirely on the provider configured on the device, so parents and guardians should supervise that configuration. A PIN-protected parental lock is available in Settings. If you believe a child has provided personal information to us, contact support@figimi.com.
15. Third-party services
- Apple App Store and StoreKit — subscriptions and payments
- RevenueCat — subscription and entitlement management
- VLCKit (libVLC) — a bundled open-source decoder that runs locally on your device and sends nothing to its authors
- playlist — selected and configured by you using m3u, xtream, mag portal
- Apple, Mux and Unified Streaming — public test streams used by the demo catalogue
These services have their own policies, which this document does not govern. The Figimi website is operated separately from the application and may use its own hosting, cookies or analytics.
16. Changes to this policy
We may update this policy when the application or applicable legal requirements change. The current version is always published at this URL with a new “last updated” date. Continuing to use Figimi after an update means you acknowledge the revised policy.
17. Contact
Aymen Lasfar / Figimi
Rua Irmãs Missionárias do Espírito Santo, n.º 35, 4715-340 Braga, Portugal
support@figimi.com ·
figimi.com