Privacy Policy

Learn how Hills handles and protects information relating to you.

Applies to: Hills applications and account services
Last updated:

1. Scope

This Privacy Policy applies to Hills applications, including the Android and Windows clients, Hills account services, related online features provided by Hills, and this website.

You can use certain local features without creating a Hills account. Different features process different data; we process information needed for a feature only when you use that feature.

When you connect Emby, Jellyfin, Trakt, or another third-party service of your choice, that service also processes data under its own terms and privacy policy.

2. Information We Process

2.1 Hills Account Information

When you choose to create or sign in to a Hills account, we authenticate you using an email verification code and may process:

  • Your email address, Hills user ID, and language or region setting submitted during registration;
  • The sending and verification status of email verification codes;
  • Authentication identity, access tokens, refresh sessions, and sign-in session IDs;
  • Account creation, sign-in, sign-out, and recent activity times.

Hills accounts use Supabase Auth. Verification emails are processed by Supabase and its email delivery service.

2.2 Account Device and Network Information

When an application calls Hills online services, especially to sign in, refresh account status, verify a purchase, or redeem an entitlement, we may process:

  • A device or app-installation identifier;
  • An account sign-in session ID, its related expiry time, and necessary security records;
  • Device platform, app version, and client time;
  • Network request metadata and User-Agent;
  • First sign-in, recent activity, device revocation, and security verification times.

We use this information to validate requests, limit unusual device sign-ins, prevent credential replay, identify abuse, and troubleshoot issues.

2.3 Purchases, Subscriptions, and Cross-Platform Entitlements

Depending on the client platform you use, when you verify, restore, or link a store purchase, or use cross-platform entitlements and offers, Hills may process Google Play (Android) or Microsoft Store (Windows) purchase and subscription verification credentials, product and transaction information, purchase status and validity period, related entitlements and offers, and necessary security records. We use this information to verify purchases, provide and synchronize entitlements, prevent fraud or duplicate claims, and handle refunds, revocations, and disputes.

2.4 Hills Redemption Codes

When you use a redemption code provided by Hills, we may process:

  • The redemption code you submit to complete the redemption;
  • Redemption status, redemption time, and related entitlements;
  • Your Hills user ID, device identifier, network request metadata, and necessary security records.

We use this information to complete redemptions, prevent duplicate use or abuse, and address support and security issues.

2.5 Media Servers, Trakt, and Local Data

When you connect a media server or third-party service of your choice, Hills may process the following on your device:

  • Server address, username, password, or access token;
  • Media library, title, image, and playback metadata;
  • Playback progress, favorites, search history, and download records;
  • Authorization tokens and synchronization information for services such as Trakt;
  • App settings, caches, account-entitlement caches, and other local preferences.

This data is primarily stored on your device and, based on your actions, sent directly to the server or third-party service you choose rather than uploaded as Hills account profile data. Depending on your operating system backup settings, some local data may also be included in device backups provided by the operating system.

2.6 Analytics and Crash Diagnostics

Hills uses Firebase Analytics and Firebase Crashlytics to analyze app usage and diagnose issues. These SDKs may process:

  • A Firebase installation or app-instance identifier and, when permitted by device and SDK settings, an advertising identifier;
  • App version, device model, operating system version, and language or region;
  • Screen views, feature interactions, app launches, sessions, and purchase- or subscription-related events;
  • Approximate region information;
  • Crash stacks, error information, app state at the time of a crash, and performance diagnostics.

2.7 Website Access Data

This website is hosted and delivered by Cloudflare. When you access it, Cloudflare may process ordinary network request metadata and security diagnostic information. The website itself does not use analytics scripts, advertising scripts, or application cookies.

3. How We Use Information

We use relevant information as necessary to provide and maintain Hills, including to:

  • Create, authenticate, protect, and manage Hills accounts;
  • Send and verify email verification codes;
  • Provide app features, account entitlements, and device-count management;
  • Verify, link, and synchronize store purchases and cross-platform entitlements;
  • Fulfill redemption codes and cross-platform offers;
  • Prevent fraud, duplicate linking, duplicate redemption, credential replay, and other abuse;
  • Provide customer support, reconcile transactions, and handle disputes;
  • Analyze app usage, improve stability, and diagnose crashes or technical issues;
  • Protect the legitimate interests of Hills, users, and third parties and comply with applicable legal obligations.

4. Service Providers and Data Sharing

To provide relevant features, we may allow the following services to process data as necessary:

Supabase
For account authentication, databases, Edge Functions, logs, and cloud infrastructure.
Google Play
For distribution, purchases, and subscription verification for the Android client.
Microsoft Store
For distribution, purchase verification, and cross-platform entitlement processing for the Windows client.
Firebase Analytics and Firebase Crashlytics
For app usage analytics and crash and fault diagnostics.
Cloudflare
For website hosting, HTTPS, content delivery, and network security.
Email delivery services
For sending Hills account sign-in codes and processing support emails you choose to send.
Servers and third-party services you choose
Including Emby, Jellyfin, Trakt, and other services you configure, to perform the playback, synchronization, and account functions you request.

We may also disclose relevant information when required by law or when necessary to protect users, Hills services, or third parties, investigate fraud, or preserve legitimate rights.

5. Data Storage and Security

Online services operated by Hills use HTTPS to transmit data and employ authentication, database access controls, restricted server-side privileges, and request validation to reduce the risk of unauthorized access. Purchase credentials, redemption records, and account data are accessible only to controlled server-side functions or authorized administrators when carrying out relevant duties and are not exposed to ordinary users.

Data on your device is protected by the operating system's app sandbox, and certain account-entitlement caches use platform secure storage. Whether a media server connection is encrypted depends on the address you configure. If you use an HTTP address, data transmitted between you and that server may not be encrypted; use HTTPS whenever possible.

No method of network transmission or storage can guarantee absolute security, but we take reasonable measures appropriate to the nature and function of the data to reduce the risk of unauthorized access, disclosure, alteration, or loss.

6. Data Retention

  • Hills account identity and sign-in sessions are generally retained until you sign out, the session expires, or you delete the account.
  • Account device records are deleted from active databases when the Hills account is deleted.
  • Local settings, caches, and media-server information are generally retained until you clear data in the application or operating system, or uninstall the application. Operating-system backups may retain copies according to the backup service's own schedule.
  • Purchase, subscription, redemption, and offer records may be retained for as long as necessary to verify transactions, prevent duplicate claims, combat fraud, conduct security audits, handle disputes, and comply with legal obligations.
  • Temporary security records are cleared according to short validity windows. Some security, purchase-verification, and operation logs may be retained for as long as necessary to prevent abuse and troubleshoot issues.
  • Data already included in system backups may not be fully removed until the normal backup rotation period ends.

When data is no longer needed, we delete it, anonymize it, or restrict its use. Third-party services process data according to their own retention policies.

7. Deleting Your Hills Account

You can select “Delete Account” on the Hills account page, or visit our external account deletion instructions to submit a request if you cannot use the application.

Data We Delete

After your Hills account is deleted, the account authentication identity, email association, authentication information and sign-in sessions, and the account's device sign-in records are permanently deleted from active systems.

Data We May Continue to Retain

To verify transactions, prevent fraud or duplicate claims, handle disputes, and comply with legal obligations, we may restrict access to and retain limited records relating to purchases, subscriptions, redemptions, entitlements, offers, and security events for as long as necessary, including a necessary historical Hills user ID. These records are not used to restore a deleted Hills account. Registering again with the same email address creates a new user ID and does not restore or relink the previous account's entitlements.

External Store Items Are Not Deleted with Your Hills Account

Deleting your Hills account does not automatically cancel, refund, or change purchases or subscriptions in Google Play (Android) or Microsoft Store (Windows). Manage cancellations, refunds, or other purchase matters through the applicable store.

Deleting your Hills account also does not automatically delete media-server configurations, downloads, or other local data on your device that is unrelated to the account. You can clear this data in the application or operating system settings, or uninstall the application.

8. Your Choices

You can:

  • Choose not to create a Hills account;
  • Manage app permissions and system backups in your device settings;
  • Sign out or delete your Hills account in Hills;
  • Clear local app data or uninstall the application;
  • Manage authorization, purchases, subscriptions, and related data through third-party services;
  • Contact us to inquire about or request action concerning data relating to you.

Certain information is necessary to provide account authentication, purchase verification, security protection, or entitlement synchronization. If you do not provide it, the relevant features may not be available.

9. Updates to This Policy

We may update this Privacy Policy to reflect changes to Hills features, third-party services, or applicable requirements. Updates will be posted on this page, and the “Last updated” date at the top will be revised. Where reasonably practicable, we will notify you of material changes through the application or another appropriate method.

10. Contact Us

If you have questions about this Privacy Policy, personal data processing, or account deletion, email:

Hills.app@outlook.com