← VR Player

Privacy Policy

Effective date: August 22, 2026

This policy covers the Android app VR Player (package app.ellipse.vrplayer), published by Ellipse. It explains what stays on your device, what the app's advertising provider collects, and the choices you have. Questions: ellipseapps@gmail.com.

The short version

Data that stays on your device

The following is processed and stored only on your phone, in the app's private storage. None of it is transmitted to Ellipse:

Advertising data (Google AdMob)

The free version shows one banner ad in the launcher and an optional rewarded ad that unlocks full VR playback for a video. Ads are provided by Google AdMob (the Google Mobile Ads SDK). When ads are shown or requested, Google automatically collects and shares with its partners:

Google uses this data for advertising, analytics, and fraud prevention. This transfer is protected with TLS encryption. See Google's Privacy Policy and how Google uses data in AdMob.

Your choices: in the European Economic Area, the UK, and certain US states, the app shows a consent form before ads and you can reopen it any time from the app's privacy options to change your choice. You can reset or delete your advertising ID in Android settings. Purchasing Premium removes ads entirely, which stops AdMob requests from this app.

Analytics (Google Analytics for Firebase)

The Google Play version reports a small, fixed set of usage events, so we can see which features are used and where people get stuck. Each event records what kind of thing happened — never what you watched:

No file names, media titles, folder paths, or web addresses are included in any event. Events are grouped by a Firebase installation identifier for this app on this device, and may be associated with the Android advertising ID. Google processes this data under the Google Privacy Policy; see also Firebase privacy and security.

Analytics is present only in the Google Play build. Builds distributed outside Google Play contain no analytics SDK at all.

Purchases

The Premium unlock is a one-time purchase processed entirely by Google Play Billing. Google handles payment; Ellipse never receives your payment card or billing details. The app stores a signed proof of purchase locally so Premium keeps working offline.

Websites and streams you choose

If you enter a stream URL, browse a website in the in-app browser, or connect to a network share, your device communicates directly with that server. The operator receives ordinary connection data (such as your IP address) and controls any information you submit to it, under its own privacy policy. Connections you make over HTTPS are encrypted in transit. The player can also, only after showing you an explicit confirmation, play a plain HTTP stream you approve — such traffic is not encrypted. Playback credentials are not silently forwarded to unrelated hosts.

If the app offers View page in VR, it displays the website you chose on a flat virtual screen. The page still communicates directly with its operator; it is not copied to an Ellipse server. Protected or DRM-controlled pages may not render.

Jellyfin servers you choose

Jellyfin is an optional connection to a media server selected by you; it is not an Ellipse service. During sign-in, the app sends the server address, username, and password directly to that server. After a successful sign-in, the password is discarded. The returned access token, username, server details, and a stable random device identifier created separately for that server are stored encrypted on your device.

Jellyfin requests identify the app and device with the device model (used as the client device name), the per-server device identifier, and the app version, and authenticated requests include the access token. Searches send the terms you enter to that server. When playback stops, the app can send the media item identifier and playback position so the server can save your resume point. Ellipse does not receive any of this data.

HTTPS connections are encrypted in transit. Because VR Player also supports media servers on a private or local network, you can choose a plain HTTP server; credentials, tokens, searches, and playback updates sent over HTTP are not encrypted in transit. The server operator controls any server-side logs, retention, access, and deletion. Signing out removes that server's saved token and connection from VR Player, but does not delete data held by the server.

YouTube playback

Recognized YouTube video links can open in YouTube's official embedded player. The app does not download or extract the YouTube media stream. When the player loads, YouTube receives connection and player-use data directly to display the video, determine playability and restrictions, and prevent fraud or abuse.

For YouTube embeds, when supported by the installed Android WebView, Media Integrity sends YouTube attested app metadata (the package name, version number, and signing certificate) and a device-attestation token generated by Google Play services. Google states that this integrity data is encrypted, is not shared with third parties, and is deleted after a fixed retention period. Ellipse does not receive this data.

YouTube playback is governed by YouTube's Terms and Google's Privacy Policy.

Watch parties

A watch party is off unless you start or join one. While one is running, your phone exchanges the current play position — and, with devices that have entered the six-digit code the host displays, the title of what is playing — directly with the other devices in the party over your own local network.

No video is transmitted: every device plays its own copy of the file. There is no account, no relay server, no connection outside your network, and nothing reaches Ellipse. The exchange is encrypted with keys agreed for that party alone, the code authenticates both ends of every join, and everything stops when the party ends or the app closes.

Crash reports

If the app stops unexpectedly, it can keep one local report containing the app version, device model, Android version, and the error. File names, web addresses, network addresses, email addresses, and sign-in tokens are redacted before the report is stored in the app's private files. Nothing is uploaded automatically.

The app offers the report on a later launch so you can read it first. It reaches Ellipse only if you deliberately send it with another app; copying or sending can also expose it to the app you choose. You can turn recording off and delete the stored report from Settings.

Retention and deletion

Local app data remains until you clear the relevant history or browser data, sign out of a media server, delete a crash report, clear VR Player's Android app data, or uninstall the app. Ellipse does not receive or retain this app data, so there is no Ellipse-held account or app-server record to request that we delete.

Analytics events are retained by Google for 14 months, after which Google deletes them automatically. Uninstalling VR Player resets the Firebase installation identifier used to group them. Google and the operators of websites, streams, or media servers you choose control their own retention and deletion. Use their account controls or contact them for data held by those services. Premium users can stop future AdMob requests from VR Player; Android also provides controls to reset or delete the advertising ID.

Children

VR Player is a general-audience app and is not directed at children. It is not intended for users under the age required for ad-supported apps in their region.

Security

Sensitive local data (history, browser session state, media-server access tokens, pairing records, and rewarded unlocks) is stored in app-private storage encrypted with keys held in the Android Keystore, and is excluded from device backups. No developer server exists that could be breached to expose your data.

Changes to this policy

If a future version of the app changes what data is handled — for example a new SDK — this page will be updated before that version ships, with a new effective date. Significant changes will be noted in the app's update notes.

Contact

Ellipse — ellipseapps@gmail.com