BingeBrowse

Privacy Policy

Effective 10 October 2026

BingeBrowse offers optional accounts and gem purchases, and the website shows ads from Google. In the European Economic Area, the UK and Switzerland, a consent message from InMobi, a Google-certified consent manager, asks for your choices first. An optional Ad-free purchase turns display ads off. We do not sell personal information. Apart from Google’s ads on the website, described below, BingeBrowse does not use advertising identifiers or track people across other companies’ apps and websites. When you sign in, your store layout, theme, carpet, shelves, door, case style, film lists, selected streaming services, gem balance and unlocked looks are associated with your account; personal-library connection details stay on your device.

Who we are

BingeBrowse is a virtual video store operated by Oliver and Patrick Evans. Questions or privacy requests can be sent to oliievanss@gmail.com.

Optional BingeBrowse accounts

Customization notifications remember which theme, carpet, shelf, door and case options you have seen. For guests, this history stays in browser storage. When you sign in, those option identifiers are synced to your account, with a first-sync timestamp, so other devices do not repeatedly flag them as new. This is not film viewing history. The customization history is removed when you delete your account.

You can sign in with Apple, Google or an email sign-in link. Supabase provides authentication for BingeBrowse and processes your email address, provider identity, authentication events and session credentials so it can create and secure your account. Apple or Google also processes the information involved when you choose that provider. Their privacy policies apply to their part of the sign-in process.

If you buy something on the website without signing in, Stripe asks for your email address at checkout. Once the payment succeeds, we add the purchase to the BingeBrowse account for that email address, creating one with only that address if none exists, so you can sign in with it (by an emailed link, or with Apple or Google using the same address) to use the purchase on any device. Nothing about the purchase is kept only in your browser. If you mistype the address, email us from your payment receipt and we can move the purchase. Anonymous guest accounts made by earlier versions of the website keep what they bought and can be kept by continuing with Apple or Google. Anonymous accounts cannot claim welcome, daily or free-spin gems.

Your browser stores an authentication session so you can remain signed in. BingeBrowse stores your store layout, theme, carpet, shelves, door, case style, film lists, selected streaming services and "Picked for you" recommendation history in your Supabase account so those preferences can follow you to another device. Its server-side commerce records hold your gem balance and unlocked looks. Signing in does not upload your Plex, Jellyfin or Emby server addresses, playback URLs, access tokens, credentials or full local catalogues to Supabase; only films you explicitly save to a synced list contribute the limited display metadata described below.

Gems and purchases

BingeBrowse awards 25 welcome gems once per eligible account on the website and offers optional gem packs there for purchase. Gem balances, welcome claims, spending and unlocked looks are kept in server-side account records. The website receives the current balance and unlock list, but cannot grant gems or alter those records by itself.

You can try a free capsule-machine spin on the website before signing in. A secure, strictly functional browser cookie lets us remember the pending prize and enforce the guest daily limit. Our database stores a hash of its random identifier, the draw date and reserved prize, without an email address, IP address or device fingerprint. A guest prize is not credited to an account until you choose “Sign in to keep”. Its server reservation has no expiry and must be claimed before another guest draw. The cookie lasts one year: clearing it, changing browser or letting it expire removes guest access to the pending prize. A prize already claimed by a signed-in account remains attached to that account.

Eligible signed-in accounts can use one free capsule-machine spin per UTC calendar day on the website. Claiming a guest prize uses that account's free spin for the claim day. We record the account identifier, claim date, capsule outcome and prize to enforce the daily limit and credit the prize. Free spins do not accumulate, and an unavailable free spin never automatically spends gems.

On the web, purchases use Stripe-hosted Checkout. Stripe receives the payment and contact information you enter there, together with transaction, device and network information used to process the payment, prevent fraud and provide its services. BingeBrowse records the account identifier, selected pack, gem amount, purchase amount and currency, transaction or event identifiers, status and timestamps needed to credit the purchase and handle a later refund or dispute. Card details entered in Stripe Checkout are provided to Stripe; BingeBrowse does not receive your full card number. See Stripe’s Privacy Policy.

In the apps, purchases go through the app store instead: Google Play in the Android app and the App Store in the iOS app. The store takes the payment under its own terms and never gives BingeBrowse your card or bank details. To credit the purchase to your BingeBrowse account, the app passes us the store’s record of it: the product, the store’s order or transaction identifier, the purchase time and the country or storefront, and from the App Store the price and currency. Each purchase also carries an opaque token, derived from your account or from the look you chose, that links it to your BingeBrowse account without giving the store your account details. If the store refunds or revokes a purchase, we take back the gems or items it added. See Google’s Privacy Policy and Apple’s Privacy Policy.

When you choose “Pay & unlock” for a look or store size, we also record that specific look or store size and the gem cost you confirmed so the purchase can complete even if you close your browser. Your account email is passed to Stripe to prefill Checkout. You can review your payment details there before paying. On a phone where Apple Pay or Google Pay is ready, the payment can instead be confirmed with that wallet on our own page: only when you buy something does the page load Stripe’s script from js.stripe.com, which receives the device and payment information Stripe needs to process and protect the payment, as its Checkout page does. The wallet shares your payment details with Stripe, never with us, and your account email is passed to Stripe for the receipt.

Ad-free is a one-time website purchase that removes display ads wherever you are signed in to that account; ads you choose to watch for gems stay optional. Every account that has made a paid purchase is ad-free too. While your account is ad-free we keep a strictly functional cookie, __Host-bb-adfree, on this browser so the website does not load ad code at all, even after you sign out; it lasts up to 400 days and only records that this browser belongs to an ad-free account.

Gem purchases, balances, spending and paid looks are currently unavailable in the iOS app. The app does not direct you to make an external purchase.

Gems are virtual items for use on the BingeBrowse website. They have no cash value, cannot be transferred between people or accounts and do not expire while the account remains active. A purchased look remains unlocked on that account for website use, but deleting the account removes its remaining gem balance and unlocked looks. Account deletion does not by itself request a payment refund; refund requests and any resulting gem adjustment are handled according to the payment provider’s process and the circumstances of the transaction.

Information kept on your device

BingeBrowse uses WebKit or browser storage, including local storage, IndexedDB and caches, so the store can remember your choices. This may include:

Recently inspected remembers up to 12 public film or series identifiers, titles, years and age guides on this device. It excludes items from linked personal libraries and is not synced to your account. Clear search list in Search empties it, and nothing else. Forget browsing history on the accessible browse page empties it too, along with the histories below. The store also keeps the TMDB recommendations that arrived with up to 60 titles you inspected, so its "Picked for you" posters and up to one quarter of each media type on the streaming shelves can reflect your interests. Choosing a public streaming link records a deduplicated choice timestamp for that title, which has more influence than an inspection. This records intent to watch, not confirmed playback or enjoyment. Repeated choices within a day do not add weight, and older interests fade. The accessible browse page also keeps up to 64 public picks from your last store visit on this device, shown for at most seven days.

Default sections can follow sustained interests using a separate daily history of public title identifiers and inspection or streaming-choice times. This uses a 90-day window, with one strongest signal per title per day and at most 60 titles on each day. Earlier days remain available when you reopen a title. Old records are removed when the history next syncs or is updated. We do not infer missing browsing dates from your account age or save private-library identifiers in this history.

For guests both recommendation and daily activity history stay on the device. When you sign in, they sync to your account so your interests can follow you to another device; each device's saved account history belongs to that account alone. Recommendation records contain the public title identifier, its title, related title identifiers and its latest inspection and streaming-choice times. Daily records contain the public identifier and dated inspection or streaming intent. Forget browsing history clears both histories on every device once they sync, and deleting your account removes them. Search also remembers your last query for the current browser tab. On a later visit, Returns may ask once or twice whether you watched the last title you handed off; you can ignore it, and forgetting browsing history clears Returns too.

Film lists are also synced to your Supabase account when you sign in. This includes each list’s name, its saved film identifiers and limited display metadata needed to recognise and show those films on another device, such as title, year, genres, a public artwork reference and public catalogue or provider identifiers. Personal-library server addresses, playback URLs, credentials, access tokens and the remainder of your local catalogue stay on your device. Connections are made directly from your device to Plex, Jellyfin, Emby or the server address you provide; BingeBrowse does not receive or store those connection details on its own servers. A password entered for Jellyfin or direct Emby sign-in is sent to that server and is not retained by BingeBrowse.

Information processed when you use BingeBrowse

Catalogue credits and third-party services

TMDB

BingeBrowse uses TMDB under a commercial API licence for film metadata, imagery and regional streaming availability. This website uses TMDB and the TMDB APIs but is not endorsed, certified or otherwise approved by TMDB. Streaming availability supplied through TMDB is powered by JustWatch.

Streaming availability information, including direct links to streaming services and leaving dates, is also provided by the Streaming Availability API by Movie of the Night.

Film metadata and artwork are processed and normally delivered from BingeBrowse’s own hosting under its commercial TMDB API licence. Browsing the shelves therefore does not normally connect your browser directly to TMDB. When you open a title's details, its cast portraits and still images load directly from TMDB's image service (image.tmdb.org), which receives your IP address and browser information as with any web request. If you follow a TMDB fallback or another external link, your browser connects to that third party and its privacy policy applies.

BingeBrowse can also open or connect to streaming providers, YouTube's privacy-enhanced trailer player, Plex, Jellyfin and Emby. The app also links to Discord and Buy Me a Coffee.

Loading third-party media, playing a trailer, connecting a library or following an external link may send those services your IP address, device information and the information needed for the feature you requested. The YouTube player loads only after you ask to watch a trailer; the YouTube Terms of Service and Google Privacy Policy then apply. Their own privacy policies govern their processing. BingeBrowse does not control external websites or apps.

Some Amazon links are affiliate links. They may identify BingeBrowse as the referrer and may earn us a commission without changing your price. As an Amazon Associate I earn from qualifying purchases. Sharing uses your operating system's share sheet; BingeBrowse does not receive the recipient you choose.

Why we process information

We process the limited information described above to provide the store, remember requested settings, administer gem balances and unlocks, complete and reconcile purchases or refunds, select an appropriate regional catalogue, connect optional libraries, understand aggregate performance, prevent abuse and answer messages. Where applicable, we rely on providing the service you requested, complying with applicable obligations and our legitimate interests in operating, securing and improving it. Optional Google Analytics uses your consent. Ads on the website pay for the service; we rely on our legitimate interest in funding it, and Google relies on the bases described in its own policies.

Sharing, retention and your choices

We do not sell personal information. Information is shared only with service providers and third parties as described above, or where required by law.

Your choice to allow or reject Google Analytics is remembered on this device for 180 days (in the European Economic Area, the UK and Switzerland it follows your answer to the consent message, for as long as InMobi keeps it). Analytics cookies expire no later than that consent period and are not renewed just because you revisit. We also turn off Google Analytics when your browser sends Do Not Track or Global Privacy Control. You can browse and use your account without allowing it. Open Privacy choices to change your decision or withdraw consent at any time. Withdrawal stops future Google Analytics measurement and removes its cookies from this website; it does not delete information already received by Google. Google Analytics does not run in the native apps, the embedded store room, local development or deployment previews. This privacy page does not load Google Analytics.

You can turn off personalised ads from Google in My Ad Center, or buy Ad-free to remove display ads from your account. Google Analytics choices do not change ads, and ads do not depend on them.

You can remove locally stored BingeBrowse information by disconnecting a personal library, clearing the app or website data, or deleting the app. Disconnecting removes the local connection and catalogue but may not revoke a token at the provider; access can also be revoked in Plex, Emby or your server settings. You can sign out from the Account panel.

To permanently delete your BingeBrowse account in the app or on the website, open Account, choose Delete account, and confirm Permanently delete account. No email or customer-service request is required. Account deletion removes the authentication account, synced store preferences and film lists, active gem wallet and unlocked-look ownership. It does not cancel your streaming subscriptions or delete media held on your Plex, Jellyfin or Emby server. If you used Sign in with Apple and its authorization could not be revoked automatically, the completion screen explains how to remove that connection in your Apple Account settings; see Apple’s instructions.

Limited commerce records may be retained after account deletion where reasonably needed for payment confirmation, refunds, chargebacks, fraud prevention, security, accounting, audit or legal obligations. These records may include a pseudonymous internal account identifier, provider event and transaction identifiers, the pack and gem ledger entries, capsule claim dates and outcomes, amount, currency, status and timestamps. They are pseudonymous rather than guaranteed anonymous: a provider transaction may allow the record to be connected back to a payment where necessary to handle a dispute, refund, fraud or lawful request. BingeBrowse does not use retained records to recreate a deleted wallet or restore its balance.

Payment, authentication, hosting and analytics providers retain operational or transaction information according to their own policies and applicable requirements. Email correspondence is kept only as long as reasonably needed to respond, maintain records or meet legal obligations.

Depending on where you live, you may have rights to access, correct, delete or object to processing of personal information. Contact us to exercise those rights. You may also complain to your local data-protection authority.

Children and Family view

BingeBrowse is rated for users aged 13 and over and is not directed to children under 13. We do not knowingly collect personal information from children under 13. Family view filters the visible catalogue on that device; it is not an age-verification system or a locked parental control.

Changes to this policy

We may update this policy as BingeBrowse changes. The effective date above will be revised when a material update is published.