LA Player: IPTV & Home Media — Privacy Policy
Last updated: 9 October 2026 (encrypted phone-to-TV transfer) · Türkçe
1. Data controller
| Company | YCT Sağlık Hizmetleri Ltd. Şti. |
| MERSIS No | 0946056894600001 |
| Tax ID | 9460568946 |
| Address | Alacaatlı Mah. Park Cad. No: 15/15, Çankaya/Ankara, Türkiye |
| Phone | +90 546 233 77 87 |
| [email protected] |
2. In short
- No sign-up: the app does not ask for your email, phone number or name.
- With Pro's home media feature, the address, username and password of the servers you add (DLNA, WebDAV, SMB, FTP) are stored only on your device, encrypted; files are played directly from the server in your network and never reach us. If you choose to include these servers when sending your setup from your phone to a TV, they pass through our server only as a package encrypted on your phone with the TV's one-time key, which we cannot decrypt (see 3.12).
- Your IPTV provider's server URL, username and password are stored only on your device, encrypted, and are sent only to the server you entered. They never reach our servers in readable form; when you send your setup from your phone to a TV, they pass through our server only as a package encrypted on your phone with the TV's one-time key, which we cannot decrypt (see 3.12).
- Settings and program reminders stay on your device.
- Movies and episodes downloaded with Pro's flight mode are stored only on your device, inside the app; they are never sent to us and are deleted automatically when the retention period ends (it starts when the download finishes; the default is 7 days, and our server tells the app the period that applies, see 7). Like streaming, downloads come directly from the server you entered.
- With Pro's cross-device sync on, resume positions, the last episode of each series, recently watched, favorites, My List folders and followed series are stored on our server under an anonymous account code so your other devices signed in with the same account can pick up where you left off (see 3.9). Your username and password cannot be derived from this code and never reach us.
- The 1–5 star ratings you give movies and series (free and Pro) are stored on our server under a pseudonymous rating code, separate from the sync code, so they also appear on your other devices (see 3.10). Delete my ratings under Settings › Privacy & history deletes them all from our server.
- For Pro's My devices list and new-device alert, we keep the model and platform (for example iPhone, Android TV) of the devices that add an IPTV account, free or Pro; no IP address, location or device name is collected for this feature (see 3.11). From these records and the irreversible hash of your subscription we derive only aggregate usage counts, to spot misuse of Pro (see 3.6, 3.11).
- The app provides no content, and we don't store the titles or descriptions of what you watch. The only exception is the title, year and IMDb ID of content outside adult categories that you rate, kept only for aggregate statistics (see 3.10).
3. Data we process
3.1 Data that stays on your device (never sent to us in readable form)
| IPTV account details | Server URL, username, password: encrypted in the iOS Keychain / Android Keystore. |
| Home media servers | DLNA / WebDAV / SMB / FTP server address, username and password: encrypted on the device; browsing and playback happen directly with the server in your network. |
| Channel / movie / series lists | Downloaded from your provider and cached on the device for a fast start. |
| Usage data | Favorites, My List, recently watched, playback positions, quality and language preferences, follows and reminders. (With sync on, positions, series progress and recently watched also go to our server as described in 3.9.) |
We cannot access this data. When you send your setup from your phone to a TV, your IPTV account details and, if you choose to include them, your home media servers pass through our server only as a package encrypted on the phone with the TV's one-time key, which we cannot decrypt (see 3.12). Deleting the app removes it from the device; removing an IPTV account under Settings › IPTV accounts removes that account and its favorites, folders and watch history from the device.
3.2 Direct connection to your provider
List, stream, program guide and poster requests go directly from your device to the IPTV server you entered. That server is not ours; your IP address and viewing requests are subject to that provider's own privacy terms.
3.3 Anonymous device ID and Pro status
On first launch the app generates a random 12-character device ID (shown as
Device ID under Settings › Pro & about). When the app starts, it sends this ID together with the platform (iOS/Android), app
version, language/region setting whether a store subscription is active and, if you added an IPTV account, the anonymous account code from 3.9 to our server at
api.lafish.com.tr. The account code lets our support team grant Pro, or set a different download retention period, for all devices of the same account at once; the response tells the app its Pro status and the retention period for flight mode downloads. Purpose: so our support team can grant Pro to this device (for example as a gift
or to make up for a problem) and count active devices. The ID is random. It is not an advertising or hardware
identifier and is not linked to your name or IPTV details. Newer versions also send, with this check-in, the device
model from 3.11 (only while an IPTV account is added) and the device secret. The IP address of the request is used
only in a short-lived counter (at most 1 hour) for rate limiting and security and is not written to this record. Our
web server's standard access logs, as for any request, contain the IP address, time and requested path.
3.4 Crash reports
If Send error reports (Sentry) is on under Settings › Privacy & history, a crash sends the error type, message, stack trace, device model, OS and app version to Sentry. Sending personal data is disabled; addresses and URL parts that might carry credentials are removed before sending. You can turn this off at any time.
3.5 Advertising (free version)
The free version shows interstitial ads via Google AdMob only at natural breaks (opening a channel, switching channels, when you pause, the end of a film or episode, leaving the player): at most one every 15 minutes and none in the first 10 minutes after the app starts; nothing interrupts playback. On iOS the advertising identifier (IDFA) is not collected and App Tracking Transparency permission is not requested. On Android, AdMob may process the device's advertising ID; in the EEA, UK and Switzerland Google's consent screen is shown first, and without consent ads are not personalised. Pro has no ads.
3.6 Purchases
Pro is sold through the App Store or Google Play (including Android TV). Your payment and card details stay with the store and never reach us. Subscription validity is checked on the device with the store's own verification and, using the purchase proof the app sends, also by our server with Apple / Google; our server keeps whether the subscription is active and its end date. It also keeps only an irreversible hash (keyed SHA-256) of the store's subscription ID (the original transaction ID on iOS, the purchase token on Android), together with the device IDs it was seen on, for at most 30 days: to see how many phones use the same subscription and to prevent misuse of Pro. The subscription ID itself, your Apple ID and your Google account are not stored.
Pro from phone to TV: if you share Pro from your phone with a TV or computer, or a TV or computer using the same IPTV account takes Pro from your phone automatically, the anonymous IDs of both devices and the end date of the Pro are stored (to enforce the limit of 3 devices). The My TVs list on your phone shows these devices' model, platform and when they were last seen; you can remove a device there.
3.7 Notifications
Series follow alerts and program reminders are local notifications on your device. No push token is collected and no notifications are sent from our servers. New-episode checks go from your device to your provider. Pro's new-device alert is also a local notification; the phone checks our server in the background (see 3.11).
3.8 IMDb rating (optional)
If you enter your own OMDb API key under IMDb rating (OMDb API key) in Settings › Appearance, only the movie title and year are sent to OMDb (omdbapi.com) to fetch the IMDb rating. Without a key, no such request is made.
3.9 Cross-device sync (Pro; can be turned off in Settings)
So you can continue where you left off on any phone, tablet, TV or computer signed in with the same IPTV account
(server + username + password), the following is sent to and stored on our server at api.lafish.com.tr:
- Anonymous account code: derived on your device from the server URL, username and password with a slow one-way hash (PBKDF2), then hashed again with a secret key on our server. It cannot be turned back into your username or password; your IPTV details never reach us.
- Watch state: the movie/episode number at your provider, playback position and duration, the last episode of each series, the recently watched list (channel name for live channels) and when each changed. No titles, posters or descriptions are stored.
- Your lists: favorites and My List folders (folder names and the item numbers in them, in order), the numbers of the series you follow and the quality you picked per channel. Program reminders and display settings stay on the device.
Anyone using the same IPTV account sees this data (including people you share the account with). When you turn off Sync across devices under Settings › Privacy & history, this device sends no sync data; the check-in in 3.3, ratings in 3.10 and the device list in 3.11 do not depend on this setting. Delete all watch history in Settings and Delete watch history on a movie or series also delete the matching records on our server.
3.10 Your ratings
You can give a movie or series 1 to 5 stars in the Your rating row on its detail screen; this is available
in the free version and in Pro. So your ratings also appear on your other devices signed in with the same IPTV
account, they are sent to and stored on our server at api.lafish.com.tr:
- Pseudonymous rating code: a digest generated one-way on your device from your IPTV login (server + username + password), hashed again on our server with a secret key in a way specific to ratings. Your username and password never reach us. This code differs from the sync account code in 3.9 and the device ID in 3.3 and cannot be matched to them in our database. Because anyone with the same login can regenerate the code, this data is pseudonymous personal data, not anonymous.
- Rating: the movie/series number at your provider, the number of stars and when you rated. Record dates on the server are kept to the day.
- Content identity (except adult categories): the content's simplified title, year and, if available, IMDb ID. These are kept only for future aggregate statistics that cannot be tied to a person (for example a movie's average rating) and are never sent back to the app. For content in adult categories (for example categories named 18+ or XXX) no title, year or IMDb ID is sent; only the number, stars and time.
Rating records hold no IP address, device ID, name or email (for web server access logs see 3.3). Anyone using the same IPTV account sees these ratings. When you remove a rating, the content's title, year and IMDb ID are deleted too. Delete my ratings under Settings › Privacy & history permanently deletes all your ratings from our server; only the rating code and a dated deletion marker remain, so your other devices can delete their copies as well. Our admin panel shows only totals, never ratings per person or device. If the rating code is unused for 2 years, the account link and the rating records are deleted; ratings with a content identity move to an anonymous archive as aggregate counts holding only the content, stars and month.
3.11 My devices and new-device alert (Pro)
In Pro, Settings › IPTV accounts › My devices lists the devices using the same IPTV account and alerts you when a new device opens your account. For this, every device that adds an IPTV account (free or Pro, with sync on or off) sends the following with the check-in in 3.3, and it is stored on our server:
- Device model and platform: a sanitized model name of at most 40 characters (for example "iPhone 15", "SHIELD Android TV") and the platform (iPhone/iPad, Android, Android TV, Samsung TV, Computer). The model is sent only while an IPTV account is added on the device and is also kept in the device record in 3.3.
- Account membership: when the device first joined the account and was last seen, when alerts were dismissed on it and, if applicable, when it was removed from the list. Membership is kept under the account code from 3.9; your IPTV details never reach us.
- "Joined" events: when a new device joins an account that already has another active device, an event with the device's platform, model and time is recorded; events are kept for 30 days.
- Device secret hash: the app creates a random device secret on each install and keeps it on the device (this secret is sent with the check-in even if no IPTV account is added); our server keeps only its one-way hash (SHA-256), in the device record in 3.3. The hash is never returned in any response, not even to administrators; it stops someone who knows your device ID from impersonating that device.
The list and alerts are shown only to devices that are signed in with the same IPTV account, are active in the list, prove their device secret and are Pro in our server's view; other devices' full IDs are never sent, only their last 4 characters. Events are also recorded for free accounts; they are kept for at most 30 days and shown only if the account becomes Pro within that time. On phones the alert is a local notification the app shows after checking our server in the background (no push token is collected), and it can be turned off with Notify me when a new device opens my account under Settings › IPTV accounts. Our support team can see the model and account memberships together with the device record in the admin panel.
Preventing misuse: In the admin panel our support team also sees aggregate usage counts derived from these records: how many devices are active on an IPTV account (phones and TVs separately), how many different IPTV accounts a device has joined, and on how many phones a store subscription has been seen (see 3.6). The purpose is to spot misuse such as sharing Pro with many people. No extra data is collected for this; no IP address, location or device fingerprint is used, and no automated decision is made based on these counts.
No IP address, location or device name you assigned (for example "Jane's iPhone") is collected for this feature; these records hold no IP address, and no IP is written to the audit record of a removal either (for web server access logs see 3.3). You can take another device off the list with Remove from list, but this does not cut off its access: if it opens the app with the same account again, it shows up again as a new device. The real remedy is to change your password with your IPTV provider: the account code changes with it, and devices using the old password no longer match your account.
3.12 Sending your setup from your phone to a TV
When you start setting up a TV, computer or tablet with your phone, that device creates a one-time key for this transfer only and shows it in a QR code (or as an 8-character code). Your phone encrypts what you choose to send with this key on the phone: your IPTV accounts (server URL, username and password) and settings and, if you wish, a hash of your adult-content PIN (not the PIN itself) and your home media servers (address, username and password). Only that TV can decrypt them. Our server only relays the package, which it cannot read: it holds it for the TV to pick up for 10 minutes at most and deletes it as soon as the TV picks it up. Meanwhile it holds only a random session ID, the code, the TV's device ID, platform and public key, and the state of the transfer (including the number of accounts received); all of it is deleted automatically within 10 minutes. These records live in the server's short-lived in-memory cache; a copy that lands in the cache's regular disk snapshot during those 10 minutes, with the package still unreadable, can stay on the server until the next snapshot (usually 1 hour at most). No IP address is written to these records (for rate limiting and access logs see 3.3); the sending and the TV's confirmation go to an audit record without IP or package content (see 7). The camera is used only on your phone, to read the QR code on the TV; the image never leaves your phone. If you choose to give your Pro to the TV while sending, this is the phone-to-TV Pro pairing described in 3.6.
4. What the app doesn't collect
- Email, phone number, name, date of birth
- IPTV username, password and server URL (when sent to a TV, they pass only as an encrypted package we cannot decrypt, see 3.12)
- Titles, posters or descriptions of what you watch (watch history and sync keep only your provider's item numbers; the only exception is the title, year and IMDb ID of content outside adult categories that you rate, see 3.10)
- The name you gave your device (the My devices list shows only model and platform)
- Location, contacts, photos, files, microphone, camera (to send your setup to a TV, the camera reads the QR code on your phone only; the image never reaches us, see 3.12)
- Cross-app tracking
- Card or payment details
5. Purposes and legal bases
| Granting Pro and counting devices (3.3) | Performance of contract / legitimate interest |
| Cross-device sync (3.9) | Performance of contract (can be turned off) |
| Syncing your ratings across your devices (3.10) | Performance of contract |
| Title, year and IMDb ID of rated content for future aggregate statistics (3.10) | Legitimate interest |
| Devices list and new-device alert (3.11) | Legitimate interest (account security feature) |
| Preventing misuse of Pro: aggregate usage counts and subscription hash (3.6, 3.11) | Legitimate interest (protecting the service and subscriptions) |
| Crash diagnostics (3.4) | Legitimate interest (can be turned off) |
| Showing ads (3.5) | Legitimate interest; consent for personalised ads |
| Reminder notifications (3.7) | Consent (device permission) |
| Phone-to-TV transfer (3.12) | Performance of contract (a transfer you start) |
6. International transfers
- Sentry (crash reports): Functional Software, Inc.; data hosted in the EU (Germany).
- Google AdMob (ads, free version only): Google Ireland Ltd. and Google LLC (USA); requests go directly from the device.
- OMDb: only if you entered your own key; movie title and year.
The device ID record (3.3), sync data (3.9), ratings (3.10), device list records (3.11), the subscription hash (3.6) and phone-to-TV transfer sessions (3.12) are stored on our server in Türkiye.
7. Retention
| Device ID record (including model and device secret hash) | Up to 2 years after the device was last seen; deleted immediately on request |
| Sync data | Deleted automatically if the account code is unused for 2 years; cleared history is deleted right away |
| Ratings | If the rating code is unused for 2 years (730 days), the account link and rating records are deleted; ratings with a content identity stay in an anonymous archive only as aggregate counts holding the content, stars and month. Deleted right away with Delete my ratings |
| New-device ("joined") events | 30 days |
| Subscription ID hash and the devices it was seen on | 30 days after last seen; then deleted automatically |
| Device list memberships | Deleted automatically if the device is not seen for 2 years (730 days) or its device record is deleted; a device removed from the list is deleted 30 days after removal |
| Audit record of a removal from the list (no IP) | 1 year |
| Crash reports | Up to 90 days at Sentry |
| Flight mode downloads (on your device only) | Deleted automatically when the retention period after the download finishes ends. The default period is 7 days; this default may be changed, and our support team may set a different period for particular IPTV accounts. Our server tells the app the period that applies, and it applies to all downloads on the device. You can delete a download earlier at any time |
| Phone-to-TV transfer session and encrypted package (3.12) | 10 minutes at most; the package is deleted as soon as the TV picks it up. An unreadable copy in the cache's disk snapshot can remain until the next snapshot (usually 1 hour at most) |
| Audit record of a phone-to-TV transfer (no IP or package content) | 1 year |
| Other data on your device | Until you delete it or uninstall the app |
8. Your rights
Depending on where you live (for example under Turkish KVKK art. 11 or the GDPR), you have the right to access, rectify, erase and restrict processing of your personal data, to object, and to lodge a complaint with a supervisory authority. Send requests to [email protected]; we respond within 30 days. To delete your device record, include the device ID shown under Settings › Pro & about.
Deleting your data
LA Player has no user accounts and no sign-up, so there is no LA Player account to delete; an IPTV account is your login to your own IPTV provider, stored only on your device and removed under Settings › IPTV accounts.
Uninstalling the app removes all on-device data; to remove a single IPTV account, tap the Remove (bin) icon next to it under Settings › IPTV accounts. Watch history can be deleted under Settings › Privacy & history with Delete all watch history, or for a single movie or series with Delete watch history. You can ask us by email to delete the device ID record on our server. With sync on, Delete all watch history also deletes your resume records on our server. Delete my ratings under Settings › Privacy & history deletes all your ratings from our server; removing an IPTV account in the app removes only on-device data, not the ratings on our server. Because your ratings are not linked to your device ID, this in-app option is the way to delete them. In Pro, you can take another device off the list under Settings › IPTV accounts › My devices with Remove from list; to cut off that device's access, change your password with your IPTV provider. Deleting data does not cancel a store subscription; cancel it in your store account.
9. Children
LA Player is not directed at children under 13 and does not knowingly collect data from them.
10. Changes
When this policy changes, the date above is updated. Significant changes are announced in the app.