XFrame Live

Legal

Privacy Policy

This Privacy Policy explains how XFrame Live (“the App,” “we,” “us”) handles information when you use the Android application and the website xframelive.com (together, the “Service”).

We designed XFrame Live so that most streaming work happens on your device and with the platforms you choose. We do not operate a separate XFrame Live user-account database for your streams, and we do not sell personal information.

1. Who is responsible

XFrame Live is operated for the XFrame Live project. For privacy questions or requests:

2. What this App does

XFrame Live captures camera and microphone on your phone and can broadcast live to destinations you configure (Twitch, Kick, YouTube, or a custom RTMP/RTMPS server). Optional features include dual camera / picture-in-picture, live chat overlays, stream overlays you compose (text, scrolling text, and browser sources), local recording, background capture while streaming, on-device AI denoise (Pro), and Google Play purchases.

3. Information we process

3.1 Device permissions & capture

3.2 Credentials you connect (stored on device)

If you connect Twitch, Kick, YouTube (Google), or enter a custom RTMP URL and stream key, related tokens, keys, and settings are stored locally on your device so you can go live. Protect your device; never share stream keys. Disconnecting a platform in Settings removes that connection from the App’s local storage.

3.3 Google / YouTube access

When you connect YouTube, XFrame Live uses Google Sign-In / OAuth to obtain access needed to help you create and manage a YouTube live broadcast (for example ingest URL / stream key, binding a broadcast, and transitioning it live). That access is used only to provide the YouTube streaming features you request.

XFrame Live’s use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not sell Google user data, and we do not use it for advertising or unrelated AI/ML training. You can disconnect YouTube in the App and revoke access in your Google Account permissions.

3.4 Purchases & Pro entitlement

Pro features (such as multistream, Custom RTMP, dual camera PiP, higher resolutions, and AI Denoise) may require a Google Play subscription (monthly, half-year, or yearly). Payments are processed by Google Play Billing. We receive purchase/entitlement status needed to unlock features; payment card details are handled by Google, not by us.

3.5 Overlays & browser sources

Overlay text, positions, sizes, colors, and any browser-source web address you add are stored locally on your device with your other settings. They are not uploaded to us.

A browser source loads the web address you enter inside the App so it can be drawn over your video. That page is fetched directly from the site you chose, so — exactly as in a normal browser — that site can see your IP address, approximate location derived from it, and anything its own scripts or cookies collect. Its content is rendered on your device and composited into your outgoing stream. We do not proxy, log, or inspect that traffic. Only add sources you trust, and review that site’s privacy policy.

3.6 On-device AI Denoise

If you enable AI Denoise (Pro), microphone audio is processed on your device in real time to reduce background noise before encoding. This processing is for the live stream / recording path you control. We do not upload your mic audio to an XFrame Live cloud for model training. Denoised (or raw) audio still leaves your device only as part of the stream or file you send to destinations you choose.

3.7 Website

Our marketing website may receive standard server or hosting logs (for example IP address, browser type, and pages requested) as operated by our hosting provider. We do not run third-party advertising trackers on the App itself.

4. Why we process information (purposes)

5. Legal bases (EEA / UK and similar)

Where applicable privacy laws require a legal basis, we rely on:

6. Where data goes (third parties)

We do not host your live video on XFrame Live servers. When you go live or use chat/audience features, video, audio, chat, and related session data are processed by:

under those parties’ own terms and privacy policies. Google also processes OAuth and Play Billing under Google’s policies.

7. Retention

8. Security

We use reasonable technical measures appropriate for a mobile client (including on-device credential storage practices and HTTPS for API calls). No method of transmission or storage is 100% secure. You are responsible for securing your phone and stream keys.

9. Children

The Service is intended for users 13+ (or the higher digital-consent age required in your country). We do not knowingly collect personal information from children under that age. If you believe a child provided information, contact us and we will take appropriate steps.

10. Your choices & rights

You can:

Depending on where you live (for example EEA, UK, California), you may also have rights to access, correct, delete, or restrict certain processing, and to lodge a complaint with a supervisory authority. To exercise rights regarding information we hold (such as support email content), contact support@xframelive.com. We may need to verify your request. Because most App data stays on your device, many requests are fulfilled by using in-App controls or clearing App data.

California: We do not “sell” or “share” personal information as those terms are commonly defined under the CCPA/CPRA for cross-context behavioral advertising.

11. International users

The App is used globally. Third-party platforms you connect may process data in other countries. Use of those platforms is subject to their rules and transfer mechanisms.

12. Changes

We may update this Policy from time to time. The “Last updated” date will change when we do. Material changes may also be noted on xframelive.com. Continued use after an update means you accept the revised Policy.

13. Contact

Privacy questions: support@xframelive.com