Legal
Last updated 2026-09-22. This policy explains what personal data SocialTV handles, why, for how long, and who else touches it. It applies to visitors, account holders, team members and the guests who appear in shows.
Account holders and team members sign up and manage workspaces; for their data we are the controller. Guests are invited by a workspace to appear in a show; for their video, audio and names, the workspace that invited them is the controller and we process on its behalf (see section 8). Where a guest contacts us directly, we are the controller for that correspondence.
Live camera, microphone and screen-share streams flow through our media servers (self-hosted Jitsi) so participants can see and hear each other and the director can compose the program. These live streams are not stored by the media servers.
When a director starts a recording, the composed program output (what the audience would see, including every visible participant, media and overlay) is captured and stored in the workspace’s Cloudflare R2 storage until deleted. When a director starts a stream, the same output is sent to the RTMP destination the workspace configured (for example YouTube). That platform’s privacy policy governs what happens next.
We do not run facial recognition, transcription or advertising profiling on media. The workspace that invites guests is responsible for telling them the session may be recorded or streamed and for getting the consent the law requires.
We do not sell personal data and we do not use it to train machine learning models.
We share personal data only with the providers below, each bound by a contract that limits them to acting on our instructions, and with authorities when the law requires it. We do not share data with advertisers.
| Provider | Purpose | Data | Location |
|---|---|---|---|
| Stripe | Payments, subscriptions, invoices and tax calculation. | Billing name, email, card details (entered on Stripe's pages, never stored by us), billing address, subscription events. | United States (Stripe Payments Europe for EEA customers). |
| Cloudflare R2 | Object storage for uploaded media, recordings and database backups. | Media files, recordings of the program output, encrypted backups. | Region chosen at bucket creation; noted in your workspace settings. |
| Optional 'Sign in with Google'. | Your Google account email, name and profile picture URL when you choose Google sign-in. | United States and worldwide. | |
| Resend | Transactional email: verification, password reset, invitations, billing notices, recording-ready notices. | Recipient email address, name, the content of those emails, delivery events. | United States. |
| Sentry | Error reporting so we can fix failures. | Error messages, stack traces, request id, browser and OS, the account id of the signed-in user. Session replay is switched off. | United States or EU, per our configuration. |
| Hosting provider | Runs the web app, realtime service, media servers and database. | All service data in transit and at rest on those servers. | [Provider name and region to be inserted before the effective date.] |
If we are involved in a merger, acquisition or asset sale, data may be transferred as part of it; we will notify you before your data becomes subject to a different policy.
When a workspace invites guests and records or streams them, the workspace is the controller of that personal data and SocialTV is its processor. Our Terms of Service incorporate a data processing agreement (DPA) covering: processing only on the workspace’s documented instructions; confidentiality of our staff; the security measures in section 10; use of the sub-processors listed in section 6 with notice of changes; assistance with data subject requests and breach notification without undue delay; deletion or return of data at the end of the service; and audit information on request. [For legal review: attach the full DPA, including EU Standard Contractual Clauses and the UK Addendum, before the effective date.] Customers who need a signed copy can request one at support@socialtv.cc.
TLS everywhere; passwords hashed with scrypt; room PINs hashed; RTMP stream keys encrypted at rest; signed, purpose-bound and short-lived tokens for realtime, guest and output access; rate limiting on login, signup and room joins; role-based access to rooms and workspaces; Content Security Policy and other browser hardening headers; nightly encrypted database backups with 30-day retention; error reports without session replay. No system is perfectly secure; if we learn of a breach affecting you we will notify you and any regulator without undue delay.
Some providers in section 6 are in the United States. Where data leaves the EEA, UK or Switzerland we rely on the EU Standard Contractual Clauses, the UK Addendum, or an adequacy decision (including the EU-US Data Privacy Framework where the provider is certified).
Depending on where you live, you may have the right to access, correct, delete, port or restrict the processing of your personal data, to object to processing based on legitimate interests, and to withdraw consent. Account holders can edit their profile and delete their workspace in account settings; for anything else email support@socialtv.cc. Guests should contact the workspace that invited them first; we will help the workspace respond. You may also complain to your data protection authority. California residents have the rights in the CCPA/CPRA; we do not sell or share personal data for cross-context advertising.
The service is for adults. We do not knowingly collect data from children under 16 as account holders. Workspaces that invite minors as guests are responsible for obtaining parental consent where required.
We will post changes here and, for material changes, email workspace owners at least 14 days before they take effect. The date at the top shows the current version.
Privacy questions and requests: support@socialtv.cc. Operator name, registered address and, where required, EU/UK representative: [to be inserted before the effective date]. See also our Terms of Service.