Vupl · Privacy

Privacy policy.

This privacy policy explains how Vupl's native Apple apps, this website and support correspondence handle information. Vupl is published by Amitoj Singh Lotey.

Effective September 14, 2026

About Vupl

Vupl is an independent native client for your Plex movie and television libraries. It connects to your Plex account, the Plex services needed for the features you choose, and a Plex Media Server you can access. Vupl does not include or host a movie or television catalog, and is not affiliated with or endorsed by Plex, Inc.

Plex, media-server owners and Apple operate their services independently. Their policies and your settings with those services also apply. This policy describes Vupl's Apple apps; it does not replace Plex's privacy policy or Apple's TestFlight privacy information.

Plex sign-in

You authorize Vupl through Plex's browser sign-in flow. Vupl receives authorization tokens rather than your Plex account password. It saves account and profile credentials in Apple's Keychain using device-only accessibility. Your account and profile identity, selected server and an app-specific client identifier let Vupl reconnect and keep different viewers' data separate.

Vupl sends the applicable Plex credentials and client identifier directly to Plex or your selected Plex Media Server for authenticated requests. It does not send them to a Vupl account server.

Library & playback

Vupl reads library metadata, artwork, available tracks and media from your selected server. It sends playback progress, watched status, ratings, track selections and other actions you choose back to Plex. Server owners may see playback activity available to them through Plex.

Vupl reads Plex-provided recommendations and organizes your available library for display. It can fetch artwork from Plex-provided HTTPS image addresses. Those image hosts receive ordinary network requests; your Plex authentication token is not attached to these separate artwork requests.

Lists & subtitle settings

My List and named lists use the active eligible Plex account's cloud Lists service. List titles, descriptions, selected movies or series, and their order are sent to Plex when you create or edit lists. Existing device lists remain on your device and are imported only when you choose to import them. Managed and guest profiles may not have Plex cloud Lists available.

Vupl stores subtitle appearance preferences locally and synchronizes appearance settings through the active Plex profile when that service is available. Supported subtitle timing and language choices are saved through Plex. Secondary subtitle selection stays within the current playback session.

Subtitle searches use your Plex Media Server's subtitle service. When you choose to import a subtitle file, Vupl reads the selected file and sends its contents to that server. Your server and subtitle provider may apply their own retention and privacy practices.

People, library sharing & Watch Together

When you use People or library invitations, Vupl reads your Plex social and sharing information and sends the specific search, invitation or friendship action you choose to Plex.

Watch Together sends the selected media identity, room title and invited Plex account identities to Plex's room service. While a room is connected, participants' client identifiers, readiness and playback state are exchanged with the Plex synchronization service to coordinate playback. Plex account and server authorization tokens are not sent to that synchronization connection.

Device storage, retention & deletion

Vupl keeps preferences, bounded artwork and list caches, and existing device lists on your device. These records are separated by the relevant account, profile and server identity. Keychain protects authorization tokens; ordinary preferences and caches are not all stored in Keychain. Operating-system protections and backup settings apply to other app data.

Signing out stops this installation from restoring its saved Plex sign-in. Vupl attempts to remove its current Keychain credential. On Mac, inaccessible credentials from older development installations can remain unused in Keychain.

Signing out does not delete your Plex account, cloud lists, watched history, saved preferences or existing device lists. Remove list content with the list controls. Manage or delete Plex-held account data through Plex. To erase local data, remove the app's data through your operating system. Keychain records can survive uninstalling, so sign out first to remove the saved sign-in.

Disposable caches are limited and replaced or pruned by the app. Device lists and preferences remain until you remove the relevant data. Plex and server-side information follows those services' retention rules.

Diagnostics & TestFlight feedback

The native Apple apps do not integrate an advertising SDK, an advertising identifier, or a Vupl-hosted analytics or crash-upload service. Playback diagnostics shown in the app describe the current playback session.

If you use a TestFlight build, Apple processes beta usage, crash information and feedback under its TestFlight terms and may make information available to the developer. See TestFlight & Privacy for Apple's explanation. Avoid including passwords, Plex tokens or private library details in feedback.

Vupl uses local elapsed-time measurements for animation, playback recovery and room synchronization. Room timing messages contain time elapsed since the current connection began, not the device's boot time.

This website

This product website loads its images, fonts and feature guide from the same site. It does not ask for your Plex login or connect to your media server. Searches, filters and tour selections stay in page memory and reset on reload. The site does not use advertising scripts.

Cloudflare hosts and protects the website and may process request and page-performance information through its hosting, security and website analytics services. This can include network information such as your IP address, browser information and the pages requested. Cloudflare's handling of this information is described in its privacy policy.

Email links open your chosen email application. The website does not submit a support form or subscribe you to a mailing list.

Support & privacy requests

If you email Vupl, Amitoj Singh Lotey receives your email address, message and any attachments or device information you choose to include. This information is used to respond, investigate the issue and manage your request. Email providers process the delivery and storage of that correspondence.

Support correspondence is retained as needed to resolve requests, provide relevant follow-up and meet applicable recordkeeping or security needs. You can ask about, correct or request deletion of information you have sent to Vupl by contacting the publisher. Enough information to identify the correspondence may be needed to handle your request. For information held by Plex or a media-server owner, use their privacy controls or contact them directly.

Publisher and privacy contact: Amitoj Singh Lotey
amitojsingh.lotey@icloud.com

For help with the app or a beta build, visit Vupl Support.

Policy changes

This page will be updated when Vupl's information handling changes. The effective date above identifies the current policy. Material changes will also be reflected in the app's relevant privacy disclosures.