Last revised: August 18, 2026
WeaselPlex app privacy
WeaselPlex is a player for a media server you run. It connects only to the server address you enter and does not include a media catalog or send your media library to WeaselTV.
The app may access the server address and account details you provide, profile and library information returned by your server, playback state, app preferences, and media you choose to keep on your device for offline viewing. This information remains between WeaselPlex, your device, and the server you choose unless you decide to share details with support.
Information stored on your device
WeaselPlex stores account secrets in the Apple Keychain. Non-secret server details, app settings, playback state, and bounded diagnostic records may be stored locally so the app can work as expected.
Offline copies of your own media remain on your device. WeaselTV does not receive a copy. You can remove saved accounts and local app data using WeaselPlex and iOS controls.
Diagnostics, analytics, and tracking
WeaselPlex may keep bounded, redacted performance and reliability information on your device using Apple system diagnostics. It does not automatically transmit that diagnostic history to WeaselTV.
WeaselPlex does not track you across apps or websites, serve advertising, or use third-party advertising analytics. If you choose to email diagnostic details or screenshots to support, we use them only to investigate your request.
Website and support information
We collect only the account, contact, device, order, service, and support information required to operate the website, process orders, deliver service, and respond to customer requests.
Support attachments are limited to approved image types and are scanned before staff can access them. Attachments must never contain passwords, payment credentials, access tokens, private server addresses, or other sensitive login information.
How we use information
We use information we receive solely for:
- Account authentication and access
- Quotes, order processing, and service administration
- WeaselPlex and website customer support
- Security, abuse prevention, and auditing
- Required operational or legal notices
We do not store payment-card numbers, banking credentials, app passwords, private server access tokens, or media library contents in the WeaselTV portal.
WeaselCheck diagnostics
WeaselCheck is a separate Android TV diagnostics app used only for a support session that you choose to start. Before testing, it shows the selected measurements, the maximum data use, retention, who can see the report, and how to cancel. A standard check and a deep check have separate consent; a deep check will not start without a second confirmation.
The app collects only bounded measurements needed to distinguish device, home-network, internet-path, WeaselTV delivery, and selected-playback behavior. This can include app and Android versions, device model and playback capabilities, display mode, network transport and metered status, timing and throughput samples, playback events, safe error codes, and the time window needed to match sanitized WeaselTV service telemetry.
You can cancel a running check at any time. Canceling stops new measurements and revokes short-lived test authorization; data already received remains subject to the retention and deletion rules below.
What WeaselCheck does not collect
WeaselCheck does not inspect WeaselPlex or any other app's private data or general network traffic. It does not use a VPN, location permission, storage permission, accessibility service, or router access.
- Private server or content URLs
- Account usernames, passwords, or authorization headers
- Wi-Fi network names, router identifiers, or passwords
- MAC addresses or stable hardware serial numbers
- GPS or precise location
- Raw public or local IP addresses in diagnostic records
- Video payloads or traffic from other apps
Like any web service, the website and probe access logs necessarily observe a connection address while handling a request. Those logs remain credential-free, are access-restricted, and normally expire after seven days. Diagnostic records use a keyed, non-reversible network digest instead of storing the raw address.
WeaselCheck retention
Pairing-code records are removed within 24 hours after expiry or use. Short-lived run tokens and replay-prevention records expire automatically. Raw compressed measurement samples normally expire after 30 days. Sanitized reports and findings normally expire after 180 days when no support ticket is linked and no retention hold applies. An expired linked report becomes eligible on the next retention cycle after its ticket is deleted or unlinked. Probe access logs normally expire after seven days unless an approved security incident hold applies. We do not store raw media. Audit events follow the existing platform audit policy.
Storage limits and automatic purge jobs enforce these periods. A support agent can also perform an audited early purge of eligible raw diagnostic results when appropriate.
Who can see a WeaselCheck report
You can view only the customer-safe report for sessions authorized for your account. Authorized support or operations staff can view the staff report and bounded technical evidence needed to investigate the issue. Staff access is role-based and audited. Reports never expose account credentials, private URLs, raw IP addresses, internal error stacks, or another customer's information.
Retention, access, and deletion requests
We retain website and support records only as long as needed for customer service, security, legal, or legitimate business purposes. Staff access to customer data is role-based and audited.
You may ask support to review, correct, or remove information WeaselTV controls, explain a WeaselCheck report, revoke an active session, or delete eligible diagnostic data early. We will honor those requests except where specific records must be retained for legal, security, or legitimate business reasons. Information held by the media server you choose is controlled by that server and its operator.
An authorized owner must confirm a current authenticator code before deleting a terminal, unlinked, unheld WeaselCheck report. Active runs and records under an applicable audit, security, legal, fraud-prevention, or linked-ticket retention requirement are not eligible. The allowlisted deletion audit remains under the platform audit policy.
Questions about this policy can be sent through the secure support desk.
Contact support