Gizlilik / Privacy
Gizlilik
Cihazınızda tutulan bilgiler
Ülke, yayın servisleri, süre, en çok 20 favori, beğeni/beğenmeme yanıtları, güçlü beğeni seçimi, İzlenecekler ve İzlediklerim kayıtları, son seçim, seans aşaması ve dil cihazda saklanır. Son açılan en fazla 30 yapımın kimliği, adı ve açılma zamanı da tutulur; bu kayıt oynatmanın veya izlemenin tamamlandığı anlamına gelmez. Başlangıç ülkesi cihazın bölge ayarından belirlenir ve hesap ayarlarından değiştirilebilir; GPS konumu ölçülmez. Arama metni kalıcı tercihlere yazılmaz. PacePick gerçek izleme süresini veya videonun oynatılmasını ölçmez.
Katalog araması ve öneriler
PacePick canlı katalog kullanır. Ülke, servisler, süre, kaynaklı favori kimlikleri ve geri bildirim HTTPS üzerinden PacePick katalog sunucusuna gönderilir; öneriler sunucuda hesaplanır. Dil, yerel seans ve son yapım adı öneri isteğine eklenmez. Arama metni, ülke/servisler, sayfalama imleci ve gerektiğinde seçili kimlikler arama sunucusuna gönderilir. Güncel önbellekte sonuç bulunmazsa arama metni ve ülke Movie of the Night’a başlık arama sorgusu olarak iletilir. Kullanıcı kimliği, e-posta veya hesap belirteci bu sağlayıcı sorgusuna eklenmez.
Katalog sağlayıcısı
Sunucu Movie of the Night’tan ülke/servis bazında film süresi, puan, tür ve abonelik bağlantısı alır. Sağlayıcıya gerektiğinde arama metni, ülke ve aday seçimi için tür/yapım türü filtreleri gönderilir; hesap kimliği ve kişisel geri bildirim kaydı eklenmez. Paylaşılan arama yanıtları Supabase önbelleğinde yedi gün geçerlidir; önbellek anahtarı arama metnini içerebilir ve hesap kimliğine bağlanmaz. Süresi dolan yanıtlar sonraki yazmalarda sınırlı gruplar halinde temizlenir; yedinci gün kesin fiziksel silme sözü verilmez. Yapım kimliği, adları ve sağlayıcı metadata’sı ayrı katalog tablosunda kalıcı tutulabilir; kullanıcı kimliği içermez. Güncel uygulama, kalıcı katalogdaki son bilinen yapım ve izleme bilgilerini kullanabilir. İzleme uygunluğunun kontrol tarihi korunur; 24 saatten eski bilgiler güncel olarak doğrulanmış gibi sunulmaz ve son bilinen durum olduğu açıklanır. Yenileme sınırlı bir ortak kuyruk ve sağlayıcı kotasıyla yapılır; her öneride yeni bir sağlayıcı sorgusu veya belirli sürede yenileme garanti edilmez. Eski istemcilerde 24 saatten eski uygunluğu kullanmama kuralı korunur. İstek kotası kaydı kalıcıdır. Afiş mevcutsa cihaz, sağlayıcının cdn.movieofthenight.com adresinden küçük görseli indirir. Bu istek sırasında sağlayıcının CDN hizmeti IP adresi gibi normal ağ bilgilerini işleyebilir. Her bölge ve yapım için erişim garanti edilmez.
Katalog erişimi
Üretimde katalog erişimi giriş yaptığınız Supabase hesabıyla doğrulanır. Hesaba bağlı kısa süreli katalog belirteci yalnız bellekte tutulur; en fazla beş dakika veya 30 istekte yenilenir. Arka plana geçiş tek başına oturumu silmez. Çıkış veya hesap değişikliği eski erişimi sonlandırır. Belirteç yerel tercih dosyasına yazılmaz.
Sunucudaki kayıtlar
Güncel Supabase katalog sunucusunda (eski istemcilerin Cloudflare uyumluluk yolu ayrı kalabilir) doğrulama ve oturum belirteçlerinin hashleri, hesaba bağlı erişim için kullanıcı kimliği, zamanlar ve kullanım sayaçları saklanır. Süresi geçen kayıtlar sonraki geçerli oturum oluşturulurken temizlenir; beş dakikada fiziksel silinme sözü verilmez. Yerel sıfırlama bu sunucu kayıtlarını silmez. Cloudflare ve Supabase ağ logları ve yedekleri ayrıca işleyebilir. Bu kayıtlara sağlayıcıların saklama ayarları uygulanır; hesap silmek tüm yedekleri veya ağ loglarını anında silmez.
Önerilerin kişiselleştirilmesi
Seçtiğiniz yapımlar ve açık beğeni/beğenmeme yanıtları tür benzerliğini etkiler; çift beğeni tek beğeniden daha güçlü bir sinyaldir. İzlenecekler listeniz önerilerden çıkarılır. Kaydetmek veya izleme bağlantısını açmak beğenme ya da izlemeyi tamamlama kanıtı değildir. “Şimdi değil” mevcut seçimlerde geçici dışlamadır; kalıcı beğenmeme kaydı oluşturmaz. Başka kullanıcılarla ortak beğeni yüzdesi hesaplanmaz. Kayıtlarınız hesap eşitlemesine ve sıfırlama/silme işlemlerine dahildir.
Hesap eşitlemesi
Hesap eşitlemesi etkin olan sürümlerde giriş yaptığınız hesabın tercihleri, favorileri, geri bildirimleri, son açılan en fazla 30 yapımın kimliği/adı/açılma zamanı, dil, son seçim ve seans durumu Supabase’te hesabınıza bağlı saklanır. Pro tür tercihi, izlenenler ve kayıtlı profiller bu kapsama dahildir; satın alma hakkı bu kayıttan verilmez, mağaza/RevenueCat üzerinden kontrol edilir. Misafir tercihleri izniniz olmadan hesabınıza aktarılmaz. Her hesabın cihazda ayrı bir önbelleği vardır. Çıkış yapmak veya başka hesaba geçmek önceki hesabın bilgilerini ekrandan kaldırır; cihazdaki önbelleği ya da bulut kaydını kendiliğinden silmez. Çevrimdışı değişiklikler bağlantı sağlanana kadar yalnız cihazda bekleyebilir. İki cihazdaki sürümler çakışırsa hangi sürümün korunacağı sorulur. Hesabın silinmesi hesabınıza bağlı bulut tercih/geçmiş kaydını da kaldırır; barındırma yedekleri ve ayrı sağlayıcı kayıtları için aşağıdaki saklama sınırları geçerlidir.
Silme ve harici servisler
Yerel kayıtlarda otomatik süreli silme yoktur. Misafir kullanımında “Yerel verileri sıfırla” ve silme onayı tercih, favori, geri bildirim, son açılanlar ve seansı bu cihazda varsayılanlara döndürür; eski sürüm kaydını kaldırır, dili korur. Hesap eşitlemesi açıkken “Hesap tercihlerini ve geçmişini sıfırla” işlemi, açık onayınızla hesabın bulut tercih/geçmiş kaydını da sıfırlar ve bağlı cihazlara eşitlenir. Bu işlem Pro satın alma hakkını kaldırmaz. Başarısız işlem hata gösterir. Hesap eşitlemesinin etkin olduğu sürümlerde eşitlenen veri kapsamı ve silme davranışı aşağıda açıklanır. Yayın servisi açıldığında o servisin gizlilik koşulları geçerlidir; yerel tercihler URL’ye eklenmez. Sıfırlama yayın servisi hesabını veya geçmişini silmez.
Ücretsiz öneri hakkı
Güncel sürümde her aramada en çok üç kişisel öneri ücretsizdir; Pro en çok altı öneri ve yenileme açar. Eski istemcilerin ilk ücretsiz öneri hakkını korumak için hesap kimliği, istek kimliği ve ilk başarılı öneri sonucu sunucuda ayrıca saklanabilir; hesap silindiğinde bu kayıt da silinir. Katalogda arama ve gezinme ücretsizdir. Canlı reklamlar şu anda kapalıdır.
PacePick Pro
Yapılandırıldığında satın alma, geri yükleme ve erişim kontrolü mağaza ve RevenueCat SDK üzerinden yürür; Hesabınıza bağlı müşteri kimliği, satın alma/makbuz ve hak bilgileri işlenir. Kart bilgileri PacePick tarafından işlenmez. Tür seçimi, izlenenler ve en çok üç profil cihazda tutulur ve hesap eşitlemesi etkinse hesabınıza da kaydedilebilir; tür ve hariç tutulan yapım kimlikleri öneri için katalog sunucusuna gönderilir. Süre bitince Pro verisi korunur ve ücretli işlemler kapanır. Hesap silme mağaza aboneliğini iptal etmez.
Hesap e-postaları ve destek
Supabase hesap doğrulama ve parola kurtarma e-postalarını GoDaddy üzerinden sağlanan Titan e-posta hizmeti üzerinden gönderir. Alıcı e-posta adresi ve ileti içeriği bu hizmetlerde işlenir. Destek e-postanızda paylaştığınız iletişim bilgileri ve içerik talebinizi yanıtlamak için kullanılır. Parola, doğrulama kodu veya ödeme kartı bilgisi göndermeyin.
Bu site ve diğer özellikler
Bu statik site form, çerez, izleyici, dış font veya analiz betiği kullanmaz. Barındırma sağlayıcısı normal HTTP ağ bilgilerini işleyebilir. Reklam ve ayrı davranış analitiği/hata raporu SDK’ları etkin değildir. RevenueCat satın alma ve hesap kimliği verilerini abonelik raporları için de işler.
Üretim uygulamasında giriş zorunludur. Hesap erişimi; kayıt, doğrulama, giriş ve parola kurtarma için e-posta, şifre ve doğrulama kodunu Supabase’e iletir. Kullanılabilir Apple veya Google girişini seçerseniz ilgili sağlayıcının kimlik doğrulama ekranı açılır; sağladığı kimlik belirteci ve izin verilen hesap bilgileri Supabase ile paylaşılır. PacePick Apple veya Google şifrenizi almaz. Şifre ve doğrulama kodu yerelde kaydedilmez. Mobil uygulama oturum belirteçlerini iOS Anahtar Zinciri veya Android güvenli depolamasında saklar; böylece uygulamayı yeniden açtığınızda oturum devam edebilir. Belirteçler gerektiğinde yenilenir ve çıkışta kaldırılır. Bu bilgiler normal tercih dosyasına yazılmaz. Web önizlemesinde hesap oturumu yalnız bellekte tutulur. Yerel verileri sıfırlamak bulut hesabını silmez. Yapılandırılmış hesaplar Hesap panelinden açık onayla kalıcı silme isteyebilir. Bu PacePick kimlik hesabını ve bağlı bulut tercih/geçmiş kaydını siler; cihazdaki önbellekler ve izleme abonelikleri ayrıdır. Barındırma yedekleri ve logları ayrı saklama ayarlarına tabidir.
Privacy
Information on your device
Country, streaming services, duration, up to 20 favorites, like/strong-like/dislike feedback, watchlist, watched titles, last selection, session stage and language are stored on your device. The IDs, names and opening times of up to 30 recently opened titles are also kept; an opening does not prove playback or completed viewing. The initial country is based on the device region and can be changed in account settings; GPS location is not measured. Search text is not saved in preferences. PacePick does not measure actual viewing time or whether a video plays.
Catalog search and recommendations
PacePick uses a live catalog. Country, services, duration, source-qualified favorite IDs and feedback are sent over HTTPS to the PacePick catalog server for ranking. Language, local session state and last title name are not included in recommendation requests. Search text, country/services, pagination cursor and selected IDs when needed are sent to the catalog search server. When the current cache cannot answer a search, its text and country are forwarded to Movie of the Night as a title search query. Your user ID, email and account token are not attached to that provider query.
Catalog provider
The server obtains movie runtime, rating, genre and subscription links from Movie of the Night by country/service. When needed, the provider receives search text, country and genre/show-type filters for candidate selection, without your account identifier or personal feedback record. Shared search responses in Supabase remain valid for seven days; cache keys can contain search text but are not linked to account IDs. Expired responses are removed in bounded batches on later writes, not necessarily physically deleted on day seven. Title IDs, names and provider metadata may remain in a separate persistent catalog table without user identifiers. The current app may use last-known title and streaming information from the persistent catalog. The availability check date is retained; information older than 24 hours is identified as last known and is not represented as freshly verified. Refreshes use a bounded shared queue and the provider quota; a new provider query for every recommendation or a fixed refresh deadline is not guaranteed. Older clients retain their rule against using availability older than 24 hours. The request quota ledger persists. When artwork is available, your device loads a small poster from the provider’s cdn.movieofthenight.com host. Its CDN may process ordinary network information such as your IP address for that request. Availability is not guaranteed for every region or title.
Catalog access
Production catalog access is verified with your signed-in Supabase account. An account-linked catalog token is held only in memory and renewed after at most five minutes or 30 requests. Backgrounding alone does not clear it. Signing out or switching accounts ends the old access. The token is not saved in preferences.
Server records
The current Supabase catalog service (with a separate Cloudflare compatibility path for older clients) stores verification and session token hashes, the user ID for account-linked access, timestamps and usage counters. Expired entries are removed during subsequent valid session creation; physical deletion within five minutes is not promised. Local reset does not delete these server records. Cloudflare and Supabase may separately process network logs and backups. Provider retention settings apply; deleting an account does not immediately erase every backup or network log.
Recommendation personalization
Your selected titles and explicit ratings influence genre similarity; a double like is a stronger signal than a single like. Watchlist titles are excluded from recommendations. Saving a title or opening its streaming link is not proof of liking it or completing playback. “Not now” temporarily excludes a title for the current choices without creating a lasting dislike. We do not calculate shared-like percentages across users. These records are included in account synchronization and reset/deletion.
Account synchronization
In builds with account synchronization enabled, your signed-in account’s preferences, favorites, feedback, IDs/names/opening times of up to 30 recent titles, language, last selection and session state are stored against your account in Supabase. Pro genre preferences, watched titles and saved profiles are included; this data does not grant a purchase entitlement, which is checked through the store/RevenueCat. Guest preferences are not imported into your account without your choice. Each account has a separate device cache. Signing out or switching accounts removes the previous account’s information from the screen but does not automatically erase its device cache or cloud record. Offline changes may remain on the device until a connection is available. Conflicting versions from two devices require a choice about which version to keep. Deleting the account also removes its cloud preferences/history record; hosting backups and separate provider records remain subject to the retention limitations below.
Deletion and streaming services
Local records do not expire automatically. For guest use, “Reset local data” followed by confirmation resets preferences, favorites, feedback, recent openings and session state on this device and removes the older-version record; language is retained. With account synchronization enabled, “Reset account preferences and history” also resets the account’s cloud preferences/history with your explicit confirmation and synchronizes that reset to connected devices. It does not remove a Pro purchase entitlement. Failures show an error. For builds with account synchronization enabled, the synchronized data and deletion behavior are described below. When a streaming service opens, its own privacy terms apply; local preferences are not appended to the URL. Reset does not delete a streaming account or its history.
Free recommendation allowance
In the current version, up to three personal recommendations per search are free; Pro unlocks up to six and refresh. For compatibility with older clients, the server may also retain the account identifier, request identifier and first successful recommendation result for their first-free allowance. This record is removed when you delete your account. Catalog search and browsing remain free. Live ads are currently disabled.
Account emails and support
Supabase sends account verification and password recovery emails through the Titan email service provided through GoDaddy. Recipient addresses and message contents are processed by these services. Contact details and contents you send to support are used to respond to your request. Do not send passwords, verification codes or payment card details.
This site and other features
This static site has no forms, cookies, trackers, external fonts or analytics scripts. Its host may process normal HTTP network information. Sign-in is required in the production app. Account access sends your email, password and verification code to Supabase for registration, verification, sign-in and password recovery. Choosing an available Apple or Google sign-in opens that provider’s authentication flow; its identity token and permitted account information are shared with Supabase. PacePick does not receive your Apple or Google password. Passwords and verification codes are not saved locally. The native app stores session tokens in iOS Keychain or Android secure storage so sign-in can survive an app restart. Tokens are refreshed when needed and removed on sign-out; they are not written to the ordinary preferences file. The web preview keeps account sessions in memory only. Local data reset does not delete your cloud account. Configured accounts can request permanent deletion in the Account panel, with explicit confirmation. This deletes the PacePick authentication account and its linked cloud preferences/history record; device caches and streaming subscriptions are separate. Hosting backups and logs are subject to separate retention settings. When configured, optional Pro purchases use the store and RevenueCat SDK: an account-linked customer identifier, purchase/receipt and entitlement information are processed to purchase, restore and check access. Card details are not handled by PacePick. Genre selection, watched titles and up to three profiles are kept on this device and may also be saved to your account when account synchronization is enabled; genre and excluded title IDs are sent to the catalog server for recommendations. Expiry keeps local Pro data but disables paid operations. Deleting your PacePick account does not cancel store subscriptions. Ads and separate behavioral analytics/error-reporting SDKs are not enabled. RevenueCat also processes purchase and account identifier data for subscription analytics.
