Privacy Policy

This page outlines the Privacy Policy for Omniphile

Privacy Policy

Effective Date: March 15, 2026

Last Updated: October 2, 2026

This privacy policy applies to the Omniphile app, formerly named Cinephile ("Application"), and its website, created by Mario Luis Gutierrez Abed ("Service Provider") as a freemium service. The service is provided "AS IS".

Overview

Omniphile works without an account. Your library of movies, TV shows, books, audiobooks and games, together with your ratings, notes, collections, readthroughs, playthroughs and history, is stored on your device. Omniphile does not display third-party advertising, does not collect an advertising identifier, and contains no third-party analytics or crash-reporting tools.

To show information about the titles you search for and track, the Application contacts the third-party services described below. Like any internet service, they receive your IP address and basic technical information such as your device's language and region. Where a request goes through a server we operate, that is stated in the relevant section.

iCloud Sync

If you enable iCloud sync, your library is stored in your private iCloud account so it can sync across your Apple devices, and some settings are kept in iCloud so they survive a reinstall. The Service Provider cannot read your private iCloud data. Apple processes it under its Privacy Policy and iCloud Terms and Conditions. You can turn sync off in the app's settings and manage iCloud in your device settings.

Our Servers

Some requests go through server functions we operate on Supabase, which keep the keys of the services they call off your device. Apart from the Trakt and Steam requests described below, they carry no account or device identifier. They are: game searches and details (IGDB), game artwork (SteamGridDB), book lookups by ISBN or by title and author (ISBNdb), ratings from other services shown on a title's page, streaming release dates for your country, and all Trakt requests. In some countries, movie and TV requests to TMDB also go through our servers; those responses, which can include what you searched for, are cached for up to six hours and are not linked to you. Read the Supabase Privacy Policy.

Movie and TV Data

The Application uses The Movie Database (TMDB) for movie and TV metadata, artwork, search results and where-to-watch information (supplied to TMDB by JustWatch). Search text, title identifiers and your language and region are sent to TMDB. Ratings from other services are fetched by title identifier through our servers from MDBList and Trakt, and streaming release dates are fetched by country from Movie of the Night. Trailers play in an embedded YouTube player, which receives the video being played. Read the TMDB Privacy Policy and Google Privacy Policy (for YouTube).

Book and Audiobook Data

The Application looks up books and audiobooks with Apple's iTunes Search and charts, ISBNdb (through our servers), Audible, Audnexus, Open Library, Wikidata and Wikipedia. These services receive what you search for, such as a title, author, ISBN or series name, along with your country and language where relevant. They do not receive your library, ratings or reading history.

Game Data

The Application uses IGDB (through our servers) for game metadata, artwork, platforms, search results and time-to-beat estimates; read the Twitch Privacy Notice for IGDB-related processing. To show store information such as prices, reviews and Steam Deck compatibility, the Application sends the Steam store identifiers of games in your library and wishlist, with your store country, to Steam's public store service, and looks up store information from the PlayStation Store. If you turn on PS Plus or Game Pass tracking, their public catalogs are downloaded for your region. When you look up a time on HowLongToBeat, its website opens inside the app with the game's title as the search.

Game Store Connections (Optional)

You can connect a Steam, PlayStation, Xbox, GOG or Epic Games account to import your games, playtime, achievements or trophies, and (for Steam) your wishlist. You sign in on the store's own login page. The Application stores the resulting sign-in tokens in your device's Keychain; they are not synced through iCloud Keychain and are not sent to our servers, except that your Steam ID is used through our servers to fetch your Steam data, which is cached there for about five minutes. Each connected store receives your requests under its own privacy policy.

The store identifiers linked to your games, your store wishlist and your achievement totals are part of your library and sync through your private iCloud account when iCloud sync is on. Purchase history and payment details are never fetched. You can disconnect a store at any time, which removes its tokens from your device.

Trakt (Optional)

If you connect a Trakt account, the Application syncs the movies and TV shows in your library, with their watch history, ratings and watchlist, with Trakt. Your Trakt sign-in token is stored in your device's Keychain and is passed through our servers with each Trakt request; our servers do not store it or your Trakt data. You can also import a public Trakt profile by username. Read the Trakt Privacy Policy.

On-Device Intelligence, Siri and Translation

Smart Search, personalized recommendations and Stats insights use Apple's on-device language model; your library is not sent to any AI service. When you ask Siri to add titles from your screen, Apple interprets the request and passes the Application only text, which is then looked up with the services above. Optional translation of community content uses Apple's translation features.

Photos and Notifications

If you add photos to a readthrough, a playthrough or your community profile, the Application receives only the images you choose in Apple's photo picker. Photos added to readthroughs and playthroughs are part of your library and sync through iCloud when sync is on; photos added to community content are uploaded as described below. Release reminders and timer Live Activities are created on your device; no push token is sent to us.

Accounts and Community Features

The Application includes optional social and community features (public profiles, following other members, comments, likes, and shared ratings and collections). These features are entirely opt-in. If you never sign in, no account is created and no social data is collected. You can also completely hide all community features at any time in Settings, which removes the profile tab and all social entry points from the app.

If you choose to participate, we collect and store only the information needed to provide these features: the display name and username (handle) you choose, an optional bio, an optional self-entered location label, optional links you add to your profile, any profile or banner photos you upload, and the content you create such as comments, likes, follows, shared ratings and reviews, curated collections, and any reports you submit. If you choose to share a profile showcase, parts of your library such as favorites, recent activity, reviews and statistics are published with the audience you pick. Community posts and comments may also contain a photo or a Klipy GIF attachment. For a GIF, we store its Klipy ID, title, delivery URLs, and display dimensions, not the GIF bytes. Content you make public is visible to other users and can appear on public web profiles and link previews. Omniphile does not request your device's precise location, contacts, or browsing history.

Omniphile shares sign-in infrastructure with other apps operated by the Service Provider, including Nook. The same Apple or Google identity may resolve to the same underlying sign-in account, but each app's profile, content and sharing settings remain separate.

You can delete your community account at any time from within the app (Settings → Community), which removes your profile and associated community content from our servers. Deleting it does not delete your library, your iCloud data or your subscription.

Apple and Google Sign-In

Community accounts can be created with Sign in with Apple or Google Sign-In. Apple may provide your name, email address (including an Apple relay address if you choose Hide My Email), and an account identifier. Google provides your name, primary email address, and a stable Google account identifier to Supabase Auth. A provider-supplied name is used only to prefill your editable display name.

Your provider email address is used for authentication and account matching, including Supabase's automatic matching of verified Apple and Google identities that use the same email address. It is not displayed publicly and is not used for marketing. We request only the OpenID, email, and profile scopes from Google, and no access to your contacts, other Google services, advertising data, or tracking. Read the Google Privacy Policy.

Community Backend (Supabase)

Community accounts, content, and uploaded images are hosted on our behalf by Supabase, which provides authentication, database, and storage infrastructure. Moderators can review reported content and the account information needed to investigate abuse, and report details may be emailed to our moderation inbox through our email provider, Resend. Read the Supabase Privacy Policy.

Klipy GIF Search

Signed-in community members can search for and attach GIFs supplied by Klipy. When you open or use the picker, Klipy may process a GIF search term, trending or pagination request, GIF view event, and a share event after a post or comment is successfully published. Requests go through our servers and can also include the app locale and a random, temporary session identifier. Omniphile does not send Klipy your age, gender, carrier, community account ID, advertising identifier, or unrelated hardware identifiers, and does not maintain an in-app GIF search-history or recent-GIF list. The temporary identifier is not persisted.

GIF images are delivered directly to your device from Klipy's content-delivery network. Like other internet services, Klipy receives an IP address and may derive an approximate location from it. Read the Klipy Privacy Policy.

Purchases (RevenueCat)

We use RevenueCat to present offers, verify Premium access, restore purchases and manage subscription status. RevenueCat may process an app user identifier, purchase history, receipt information, and device or operating system information. If you sign in to the community, your RevenueCat identifier is linked to your community account so your Premium status follows you and can appear on your profile. To check eligibility for special offers, the Application may send your App Store transaction record to our servers. Apple processes all App Store payments. Read the RevenueCat Privacy Policy.

Premium from Nook or ReadTracker (Optional)

If you hold Premium in Nook or Pro in ReadTracker, you can bring it to Omniphile by signing in with the same Apple or Google account you used in that app. When you do, we look up that account's entitlements and purchase records in those apps through RevenueCat, and store a record of what we found and the Premium access it grants in Omniphile. We check again when those purchases renew, expire or are refunded. If you have a community profile, the same record decides whether it shows the Stakeholder badge. Signing in for this purpose alone does not create a community profile.

Feedback Board

If you send feedback from the Application, we store the text and any images you attach, your app and system version, and a device identifier used to manage voting, editing and abuse prevention. If you are signed in to the community and choose to, your handle can appear beside your request. Feedback is stored using Supabase and new requests may be emailed to us through Resend.

Website

The Omniphile website uses Vercel Analytics to understand aggregate website usage. Public community profiles are shown on the website only as far as their owners' sharing settings allow. Read the Vercel Privacy Policy.

Email

If you contact us by email, we keep your address and correspondence only as needed to respond, maintain support records, or meet legal obligations. We do not use support email for marketing.

Data Retention and Your Rights

Data on your device stays there until you delete it or remove the Application. Data synced through iCloud follows your iCloud settings and Apple's practices. Community accounts and content are kept until you delete them; reserved handles and limited moderation records may remain to prevent impersonation and enforce restrictions. Purchase records are kept as Apple, RevenueCat and applicable law require.

You can ask for access to, correction of, or deletion of personal data the Service Provider controls by contacting support@omniphile.app. Requests about data held by Apple, RevenueCat, a game store or another independent service may need to go to that provider.

Children

Omniphile is not directed to children below the age at which they can consent to data processing in their region, and we do not knowingly collect their personal information. If you believe a child has provided personal information through the community, feedback or support, contact us so we can review and remove it.

Security

We use reasonable technical and organizational safeguards to protect the information under our control. No storage or transmission method can be guaranteed completely secure.

Changes to This Policy

We may update this Privacy Policy as Omniphile develops. Changes will be posted on this page with a revised date.

Contact Us

If you have any questions regarding this privacy policy, please contact us at support@omniphile.app.