Privacy

Your library
stays your library.

Last updated: July 9, 2026

Zuno is built around a simple idea: the app should talk to your server, and nothing should sit in between. This page is the long form of that promise.

What we never collect

What stays on your device

App preferences, server connection details, subtitle styles, and other settings are stored locally on your device. If you enable iCloud sync, these settings are synced through your private Apple iCloud account — we never see them.

Optional accounts

Zuno works fully without an account. You can optionally sign in with Apple — for example, to join the TestFlight beta, or, in future, to share your subscription with people you choose. Only then do we create an account for you.

Sign-in uses Sign in with Apple, so we never receive your Apple password, and you can hide your email address (Apple relays it). We use a third-party authentication service to manage sign-in and store a stable identifier for your account, and a subscription-management service to link your App Store purchase to that identifier so your access follows you across your devices. We never see your payment details or your library.

You can delete your account at any time from within the app. Deleting it removes your account identifier and revokes Sign in with Apple. Deleting your account does not cancel an active subscription — manage that in your Apple ID settings.

Direct connection

When you play a video, browse your library, or fetch artwork, your device communicates directly with your Plex or Jellyfin server. None of that traffic is routed through Zuno's servers, because Zuno doesn't run any.

Third parties

Authentication redirects use Plex's or Jellyfin's own OAuth flows. Once you finish signing in, the access token lives on your device. We don't see it, and we don't store it.

The App Store handles purchases and subscriptions through Apple. We receive only the receipt information Apple shares to validate your purchase — never your payment details.

Analytics & diagnostics

Zuno collects a small amount of anonymised product analytics — such as when the app is opened and which features are used — tied only to a random, anonymous identifier. It is never linked to your name or your viewing activity, and we never see what's in your library or what you watch.

If the app crashes or hits an error, anonymised diagnostics (stack traces and device model) are sent through Sentry so we can fix it. These contain no personal data, no library content, and no viewing history.

Changes to this policy

If this policy ever changes meaningfully, we'll update the date at the top and note what changed. Material changes will be announced in the app itself before they take effect.

Contact

Questions? Reach out at [email protected].