Pippin
CustomiseFeaturesIntegrationsCommunity
Download
CustomiseFeaturesIntegrationsCommunity Download

Legal

Privacy Policy

Last updated: 29 July 2026

Pippin is designed to keep your data yours. The app collects no personal information, contains no analytics or advertising, and does not track you across apps or websites. It connects directly to the media servers and services you choose to configure. This policy explains what that means in practice.

Who this applies to

This policy covers the Pippin apps for iPhone, iPad, Mac and Apple TV (“Pippin”, “the app”, “we”) and this website. Pippin is a client for media servers such as Plex and Jellyfin. It is not affiliated with, endorsed by, or operated by Plex, Jellyfin, or any other third-party service.

Data we collect

None. Pippin does not collect, transmit to us, or store on our servers any personal data. We do not operate accounts, we do not run analytics, and we have no advertising or tracking SDKs. We never receive your media library, viewing history, or server credentials.

Data stored on your device

Everything Pippin needs to work is kept locally on your device (and, where you enable it, in Apple’s iCloud/keychain sync under your own Apple Account). This includes:

  • The servers and services you add, and their connection details.
  • Sign-in credentials and access tokens, stored in the device keychain.
  • Your app settings, layout customisations, and downloaded media for offline playback.

This data stays on your device. Deleting the app removes it. Your server credentials are sent only to the servers you configure, never to us.

Connections the app makes

Your media servers. Pippin connects directly to the Plex, Jellyfin, and companion services (such as Overseerr/Jellyseerr, Radarr, and Sonarr) that you set up. Your credentials and requests go straight to those servers over your own network or the addresses you provide. We are not in the middle of these connections.

Sign-in. If you sign in with Plex, authentication is handled directly with Plex’s own sign-in service under Plex’s privacy policy.

Artwork & subtitles. To enrich metadata and find subtitles, Pippin may contact providers including TMDB, fanart.tv, and subtitle services (Subdl / OpenSubtitles). To keep API keys out of the app, these requests are relayed through Pippin’s Cloudflare Worker, which injects the relevant key and forwards the request. The Worker does not require or store any personal information about you; it passes along only the metadata query needed to fulfil the request (for example, a title or content identifier).

You can also supply your own API key for some of these providers in Pippin’s settings. When you do, Pippin contacts that provider directly using your key, without going through the Worker. (Subdl subtitle search always requires your own key and is contacted directly.) Requests made this way are governed by that provider’s own privacy policy.

Casting. If you cast to a Chromecast or Google TV device, Pippin uses Google’s Cast SDK to discover and control that device. The Cast SDK collects device identifiers, product interaction, and diagnostic data for its own operation, governed by Google’s privacy policy. This happens only when you use casting. Pippin does not use this data and does not use it to track you.

Face ID / Touch ID

If you enable Pippin’s profile lock, Face ID or Touch ID may be used to unlock a protected profile. This authentication is performed entirely by Apple on your device. Pippin never receives or stores your biometric data.

Tracking

Pippin does not track you. We do not collect data to link your activity to you across other companies’ apps or websites, and we show no advertising. Pippin’s App Tracking Transparency status is “not used for tracking.”

Children’s privacy

Pippin is not directed at children and does not knowingly collect any information from anyone, including children under 13.

Your rights

Because we do not collect or hold any personal data about you, there is nothing for us to access, correct, or delete on our side. You remain in full control of the data stored on your device and on the servers you connect to. Questions about the data held by a connected service (Plex, Jellyfin, TMDB, Google, etc.) should be directed to that service under its own privacy policy.

Changes to this policy

If this policy changes, we will update the date at the top of this page. Material changes will be reflected here before they take effect.

Contact

Questions about this policy? Email mail@pippinplayer.com.

Pippin

A beautifully customisable Plex & Jellyfin client for Apple devices, with a player that goes toe-to-toe with the best.

Project

  • GitHub
  • Discussions

Support

  • Report a bug
  • Request a feature

Explore

  • Customise
  • Features
  • Privacy

© 2026 Pippin

Sample artwork from the Blender Open Movie projects, licensed CC-BY.