Legal

Privacy Policy

Last updated: August 10, 2026

This Privacy Policy explains how the free version of Marlin IPTV (“Marlin”, “the app”, “we”, “us”, or “our”) handles information when you use the app. Marlin is a media player. It does not provide, sell, host, or operate an IPTV service, subscription, playlist, channel, or media library.

1. Information Marlin handles

Marlin handles information that you enter or generate while using the app, including:

  • the server address, port, username, and password for an IPTV service selected by you;
  • an SMB server address, share name, username, and password entered by you;
  • app preferences, playlist and EPG refresh settings, category and stream filters, favorites, recently viewed items, and playback progress;
  • playlist, channel, movie, series, artwork, and electronic program guide data returned by the IPTV service selected by you; and
  • limited technical error and diagnostic information generated on your device.

Marlin does not require or create a Marlin online account. The IPTV and SMB accounts configured in the app belong to you or to the applicable third-party provider, not to Marlin.

2. How information is used

Marlin uses this information only to provide app functionality, including:

  • authenticating with the IPTV or SMB endpoint selected by you;
  • retrieving and displaying playlists, media information, and EPG data;
  • requesting playback of media from the endpoint selected by you;
  • remembering your preferences, favorites, filters, and playback progress;
  • importing or exporting a settings backup when you request it; and
  • diagnosing errors and maintaining app stability.

The free version of Marlin does not contain advertising or in-app purchases. Marlin does not use information for behavioral advertising, marketing profiles, or sale to data brokers.

3. Connections to user-selected IPTV and SMB endpoints

Marlin connects directly from your device to the IPTV and SMB servers that you configure. Information needed to complete your request, including credentials, your device’s network address, and requested playlist, EPG, file, or media paths, is transmitted to those endpoints.

Those endpoint operators may receive and process information under their own terms and privacy policies. Marlin does not control an independent IPTV or SMB operator’s collection, security, retention, or use of information. You should use only services and servers that you are authorized to access and whose privacy and security practices you trust.

Marlin does not transmit your IPTV or SMB credentials to a Marlin-operated server. A user-initiated connection to a configured provider is necessary to perform the service requested by the user.

4. Credential storage and security

On Android and Fire TV, saved IPTV and SMB credentials are stored in the app’s private storage as AES-GCM encrypted values. The encryption key is generated and retained by Android Keystore. Credentials are not intentionally written to the normal Marlin settings file after secure storage succeeds.

Access to locally stored app data is controlled by the operating system. No method of storage or transmission is completely secure, and we cannot guarantee absolute security. You are responsible for securing your Fire TV, Amazon account, local network, IPTV account, and SMB server.

5. HTTPS and cleartext HTTP

Marlin supports HTTPS when the service selected by you supports it. Marlin also permits connections to HTTP endpoints because some user-selected IPTV services and local-network systems do not offer HTTPS.

HTTP traffic is not encrypted in transit. A network operator or another party able to observe the connection may be able to read or modify credentials, playlist requests, EPG requests, media URLs, or returned data. Use HTTPS whenever it is available. By configuring an HTTP endpoint, you direct Marlin to communicate with that endpoint using cleartext HTTP and accept the security risk associated with that endpoint.

SMB connection security depends on the SMB server, protocol negotiation, local network, and server configuration selected by you.

6. Settings backup and restore

If you select Export Settings, Marlin writes a file named “marlin_settings.json” to the SMB share configured by you. The backup may contain app preferences, refresh settings, filters, favorites, playback-related preferences, and non-secret SMB configuration such as the host and share name.

Current Marlin exports remove IPTV usernames, IPTV passwords, SMB usernames, SMB passwords, and related credential fields. A backup is intended to be a settings backup, not a credential container.

An exported backup is stored on the SMB server selected by you. The SMB server operator and anyone with access to that share may be able to access it. Marlin does not control the SMB server’s backups, replication, access rules, or retention. You must delete remote backup files from the SMB share yourself when they are no longer wanted.

7. Diagnostics and logging

Normal Android and Fire TV release builds disable verbose playback diagnostics and do not create a persistent Marlin diagnostic log file. The app may write limited technical warnings, errors, playback state, and crash-related information to Android’s system-managed log while it is running. Android’s log storage is bounded and managed by the operating system.

Marlin is designed not to intentionally include passwords, usernames, provider credentials, or complete stream URLs in normal release diagnostics. A temporary diagnostic build used during troubleshooting may produce additional playback performance information, but it is not the normal public release configuration.

The device operating system, Amazon, an app store, or a device manufacturer may independently collect crash reports or device diagnostics according to their own settings and privacy policies. Marlin does not currently operate an analytics, advertising, telemetry, or remote crash-reporting service.

8. Retention

Local credentials, preferences, favorites, filters, and playback progress are retained on your device until you overwrite them, clear Marlin’s app data, or uninstall the app. Some information may remain in device-level backups or system records controlled by the operating system or device owner.

Settings backup files remain on the SMB share until you or the SMB server administrator deletes them. IPTV and SMB providers determine retention for information processed by their own systems.

Because Marlin does not operate a user-account backend, Marlin does not retain a server-side copy of your credentials, preferences, favorites, or viewing history.

9. Deletion and user choices

You can delete Marlin’s local data through the Fire TV application settings by selecting Marlin IPTV and clearing its app data. Uninstalling Marlin also removes the app’s locally stored data, subject to operating-system behavior.

Clearing app data or uninstalling Marlin does not:

  • delete your account with an IPTV or SMB provider;
  • delete information retained by an IPTV or SMB provider;
  • delete “marlin_settings.json” from a remote SMB share; or
  • delete device or cloud backups controlled by Amazon, the operating system, the device owner, or the SMB administrator.

To delete those items, contact the applicable provider or administrator and delete remote backup files directly from the SMB share.

Marlin does not create a Marlin online account, so there is no separate Marlin account-deletion request to submit.

10. Children

Marlin is a general-purpose media player and is not directed to children. It does not knowingly operate a service that collects personal information from children. Parents and guardians are responsible for the services and content configured on their devices.

11. Changes to this policy

We may update this Privacy Policy when Marlin’s features, data practices, legal requirements, or distribution arrangements change. The revised policy will show a new “Last updated” date. Material changes should be reflected in the app and Amazon Appstore privacy disclosures before the applicable app update is released.

12. Publisher and contact

Publisher/legal entity: StormCrowd Factory
Privacy contact email: support@stormcrowdfactory.com
Website: https://marlin.stormcrowdfactory.com

For privacy questions about Marlin, contact the address above. Questions about an IPTV service, SMB server, subscription, provider account, provider-held information, or provider account deletion must be directed to that provider.