Flicklish Privacy Policy

Effective Date: September 26, 2026

This policy explains how EasyMeta Pty Ltd (ABN 83 664 794 781) handles information in the Flicklish app. Flicklish turns videos you choose into short English lessons. Flicklish is free. We do not include a native advertising or analytics SDK. Embedded video services have their own data practices and may show ads, as described below.

1. Information we collect

2. How we use it

We use this information to provide the app: sign-in, storage, subtitle generation, clip creation, AI explanations, learning stats computed from your activity (streak, clips finished, minutes, week check-ins), and handling reports about published content. We use your learning preferences to select suitable content, and service usage records to understand activity, retention and operating costs and plan service limits. We do not sell your learning data or use it to build advertising profiles. These statements describe EasyMeta’s use of your data; embedded video services operate under their own policies.

3. Processing and service providers

Account and learning records are stored in an EasyMeta-operated Supabase database. Uploaded media and retained platform audio are stored in private Cloudflare R2 storage; profile photos use Supabase Storage. Access is controlled by the Flicklish API.

With your permission, audio is sent to our self-hosted EasyMeta WhisperX service for speech recognition. Helm API routes subtitle text and learning settings to OpenAI or DeepSeek for clip creation. Clip creation processes the transcript in batches; the 3,000-word limit is not a limit on the total transcript used for clip creation. For AI Coach, we send your question, selected sentence, recent conversation, language and level, and plain subtitle text: the full transcript when it is no more than 3,000 English words; otherwise the current clip and its immediate neighbours.

The app asks for AI data-sharing permission before a new AI operation. You can decline and continue watching existing videos, or withdraw permission in Settings > AI data sharing. Withdrawal stops future transfers; a request already sent may finish. AI providers apply their own privacy policies, including retention and use of requests: OpenAI and DeepSeek.

Content report notifications sent to our operators through Feishu/Lark include the source ID, title, selected reason and optional report details. Reporter email addresses and report screenshots are not included in the notification; report records remain in our controlled storage.

Sign-in providers (Apple, Google, GitHub, and our email-delivery provider) process your sign-in under their own privacy policies.

4. YouTube and Bilibili

Videos play inside the official embedded YouTube or Bilibili player, which may receive your IP address, device/browser information, cookies and playback activity, and may show advertising under Google’s or Bilibili’s own policies. Flicklish uses YouTube API Services; by using this feature you also agree to the YouTube Terms of Service and the Google Privacy Policy. Flicklish stores the link and metadata for a YouTube or Bilibili video, not the video file itself.

All third-party metadata, subtitle, and import-audio downloads happen on your iPhone. The Flicklish backend does not fetch YouTube or Bilibili content. When the service enables YouTube audio fallback and captions are unavailable, the iPhone may download audio only and upload it for speech recognition; Bilibili imports also use on-device audio download. Completed client uploads and server audio checkpoints are cleaned up after their respective processing stages; interrupted work may retain temporary audio for retry.

5. Public content, reports, and blocking

An import can be public, visible to other learners in the shared library, or kept private. You choose this when you import. Public imports become visible when preparation is complete. Reports you submit are reviewed within 24 hours. Blocking an author hides their content from your library.

6. Retention and deletion

You can delete an import at any time, which removes its files, subtitles, clips, and related records, or make it private instead. These controls delete the source data held by Flicklish. The speech-recognition service also retains transcription results and processed-audio caches without a fixed automatic deletion period; deleting a source does not currently remove those service caches. For deletion assistance, contact us below. You can remove your profile photo. Choosing “Delete account” in the app signs you out and prevents that account from signing in to Flicklish on this device.

To have all your Flicklish server data deleted, email [email protected] from the email address associated with your account, and we will delete it within 30 days. Your sign-in identity may be shared with other EasyMeta apps; deleting your Flicklish data does not affect those other apps. Uninstalling the app does not delete your server data — use the steps above.

7. Security, children, international transfers, and changes

We use HTTPS and access controls to protect your data, but no method of storage or transmission is completely secure. Flicklish is not directed to children under 13 and is not designed for users under 13. Your data may be processed on servers outside your country. We will update the effective date above when this policy changes materially.

8. This web page

The EasyMeta website uses cookie-free, self-hosted aggregate analytics. This does not change how the Flicklish app handles data. See the EasyMeta website privacy policy.

9. Contact

For privacy questions, email [email protected] or visit Flicklish Support.