Privacy Policy
Your library is yours. Full stop.
WhatAMovie has no accounts, no analytics, and no ads. By default nothing you do in the app is ever sent to us — your data lives on your device and in your own iCloud. This page explains exactly what happens, in plain language.
Last updated: July 4, 2026 · Leer en español →
The short version
- No account. No sign-up, no email, no password. We don't know who you are.
- Your data stays on your device and syncs across your Apple devices through your own iCloud. We can't read it.
- No analytics, no ad SDKs, no trackers — in the app or on this website.
- Two optional features can talk to a server, and both are off until you turn them on: third-party ratings, and cross-device backup.
- Delete everything in seconds by deleting the app — there's no account left behind.
Who this covers
This policy covers the WhatAMovie app for iPhone, iPad, Mac, Apple Watch, and Apple TV, and the website at whatamovie.app. WhatAMovie is made by Federico Miras. There is no company collecting your data behind the scenes — the app is built so that, by design, it barely can.
What we don't do
There is no login, so there is no name, email address, phone number, or password anywhere in WhatAMovie. The app contains no analytics kits, no advertising SDKs, and no third-party trackers. It never asks for permission to track you across apps or websites, and it does not use your advertising identifier. We do not build a profile of you, sell data, or share data with advertisers — there is simply no pipeline for any of that.
What lives on your device
Everything you create in WhatAMovie is stored locally on your device: your watchlist, your custom lists, which episodes you've watched, watched movies, timestamps, and title details the app has cached. Your settings — country, language, and which optional features are on — stay on the device too.
iCloud sync (your Apple ID, not our servers)
So your library follows you between your iPhone, iPad, Mac, and Apple Watch, WhatAMovie syncs it through Apple's iCloud using your own Apple ID. This uses Apple's private key-value storage — the data travels between Apple's servers and your devices, governed by Apple's Privacy Policy. WhatAMovie has no server in this loop and cannot read what iCloud syncs. If you're signed out of iCloud, your library simply stays on the one device.
What the app looks up to show you movies
To display titles, artwork, streaming availability, episodes, and trailers, the app fetches public catalog data from a few well-known services. These requests carry only what's needed to answer them — a title, an ID, or your selected country for “where to watch” — and never any identity, account, or history of yours. WhatAMovie attaches no user ID to them.
- JustWatch — where a title streams in your country, plus provider logos.
- TMDB — movie and show details, posters, and backdrops.
- TVMaze — episode lists and air dates.
- YouTube — only if you play a trailer, which loads from YouTube (Google) under their policy.
Each of these is an independent service with its own privacy policy, linked above. As with any internet request, they receive your device's IP address at the network level — that's how the internet works — but WhatAMovie sends them nothing that identifies you personally.
Optional feature 1 — Ratings (off by default)
If you turn on IMDb, Rotten Tomatoes, and Metacritic scores, the app asks our own lightweight proxy at altapeli.app for that title's ratings. The request contains only the title's IMDb ID (for example tt0111161) — nothing about you, and no user identifier. We run this proxy purely to keep an API key out of the app and to cache popular titles at the edge. We don't log it to a profile; there's no profile to log it to. Leave the feature off and the app never contacts it.
Optional feature 2 — Cross-device backup (off by default)
WhatAMovie can also sync your library to devices that aren't Apple devices — an Android phone, or the web app — where iCloud isn't available. This feature is off by default; while it's off, nothing here ever touches the network and a fresh install stays fully serverless.
When you turn it on, please understand exactly how it works, because we want to be straight with you:
- A copy of your library — watchlist, custom lists, watched episodes and movies, and cached title details — is uploaded to a file on our storage at altapeli.app so your other devices can read it back. It's the same data iCloud already syncs.
- That file is keyed by a random ID generated on your device (a UUID). The ID is the only thing that unlocks the backup — there is no password on it. For now, the file is public to anyone who knows the exact random ID, so treat your backup ID like a private share link, not like a public username. The ID is shared only between your own Apple devices, via your iCloud.
- The backup is stored as plain data (it is not end-to-end encrypted). It contains no name, email, or account — because WhatAMovie has none — but it does contain your list of titles.
- You can turn the feature off at any time in Settings. To remove the stored backup, clearing your library and letting it re-sync will overwrite it; if you'd like us to delete a specific backup file, email us the ID and we'll remove it.
If cross-device sync across non-Apple platforms doesn't matter to you, simply leave this off and rely on iCloud — your data never leaves Apple's ecosystem and never reaches us.
Optional feature 3 — Connecting your own media servers
If you run your own home media server — Jellyfin, Jellyseerr, Radarr, or Sonarr — you can connect it to WhatAMovie. This is entirely optional and only happens if you set it up.
- The server address and login you enter are used to talk directly to your own server (often right on your home network), and to nowhere else. Those credentials never come to us.
- They're stored in your device's iOS Keychain. Your server account login can sync to your other devices through your own iCloud Keychain so each device can sign itself in; the access tokens it mints stay on the device.
- Because your server may live on your local network, iOS asks for Local Network permission the first time — that's what lets the app reach a server at a home address.
Notifications
New-episode reminders are scheduled entirely on your device using the operating system's local notifications. There is no push server and no device token sent anywhere — WhatAMovie can't send you a notification remotely because there is nothing on the other end. Notifications are only used if you allow them, and you can revoke that in iOS Settings anytime.
Deleting your data
- On your device: deleting the WhatAMovie app removes its local data. There's no account to close afterward.
- In iCloud: data synced through iCloud is managed by your Apple ID. You can remove WhatAMovie's iCloud data in iOS Settings under your name → iCloud, or by turning iCloud off for the app.
- Your backup (if you enabled it): turn the feature off and email us your backup ID and we'll delete the stored file. Unused backups aren't kept indefinitely.
Children
WhatAMovie is a general-audience app for discovering movies and shows. It doesn't ask for any personal information from anyone, of any age, and it collects nothing that could identify a child.
This website
whatamovie.app uses no cookies, no analytics, and no tracking pixels. The interactive demo on the home page runs entirely in your browser; anything you tap there is stored only in your browser's local storage and is never sent to us. Standard server logs may briefly record requests (including IP addresses) for security and reliability, as with any website.
Third-party services
For reference, here are the outside services WhatAMovie relies on and their privacy policies: Apple / iCloud, JustWatch, TMDB, TVMaze, OMDb (the source behind ratings), and YouTube / Google (trailers). The proxy and optional backup run on Vercel, our hosting provider.
Changes to this policy
If this policy changes, we'll update the date at the top of this page. Because the app doesn't collect contact details, we can't email you — meaningful changes will be noted here and, where relevant, in the app.
Contact
Questions about your privacy, or want a backup deleted? Email miras.federico@gmail.com and a real person (the developer) will reply.