Privacy Policy
Last updated: 28 September 2026
This policy explains what TVOC Creator Network Limited (“TVOC”, “we”) collects and why, across the tvoc.live website and the TVOC LIVE applications for Android, iPhone and Windows. We are a company registered in New Zealand; more about us is on the about page.
The short version
- On the Free plan, nothing is backed up. Your rules, settings, sounds and viewer history stay on your own device, and we cannot see them.
- On Pro, the app backs up almost everything to your tvoc.live account, so it comes back on a new or second device: your settings profiles and actions, your ranks, your imported sounds, your TikTok connection keys, and your viewer history — the viewers the app has seen, their gift totals and up to 90 days of their chat. The full list is below.
- If you connect Twitch, YouTube or Kick, we hold the access token for that connection so the app can read your chat and act on your channel. We never see your password for any of them, and you can revoke any connection from that platform at any time. TikTok needs only your username.
- Whatever your plan, a signed-in app tells the website what your public page needs: the ranks and actions you offer, whether and where you are live, and, while song requests are on, what is playing.
- The website collects only what an account needs: an email address, and whatever you choose to put on your public profile.
- We do not sell personal information, and we do not run ads.
Connecting your streaming platforms
TVOC reads your chat and, where you ask it to, acts on your channel. Both need permission from the platform. You grant it on that platform's own sign-in page — we never see your password — and what comes back is a token stored against your tvoc.live account.
For each connection we store: which platform it is, your username and the platform's own id for your account, the access token, the refresh token, when the access token expires, and the list of permissions you granted. Nothing else. The app is lent a short-lived access token when it needs one; refresh tokens never leave our servers.
Twitch
Connecting Twitch is optional and grants twelve permissions, in two groups. Reading: your chat messages, cheers, subscriptions, new followers, and channel point redemptions and the list of your rewards — this is what alerts and the viewer list are made of — and your stream key, which is covered on its own below. Acting, each only when you press something in TVOC: posting a chat message as the chatbot, setting your stream title and category, creating or changing a channel point reward, banning or timing somebody out, deleting a single message, and giving or removing moderator.
On rewards specifically: TVOC can read every reward on your channel so a rule can name one, and can create rewards of its own. Twitch only allows an application to change or delete the rewards it created itself, so anything you made in Twitch's dashboard stays read-only to us.
Revoke it at any time under Twitch → Settings → Connections, or press Disconnect on your TVOC dashboard.
YouTube
YouTube works two ways in TVOC and they are deliberately separate.
Reading your live chat needs no sign-in at all. The app either reads the public chat page or uses a YouTube Data API key that you create and that stays on your own device. Nothing about your Google account reaches us.
Creating a live from inside TVOC needs a Google sign-in. It is optional, asked for on its own, and needed for nothing else. It grants three permissions: manage your YouTube account (to create the broadcast and its stream), see, edit and permanently delete your YouTube videos, ratings, comments and captions (the permission YouTube requires to write in your live chat), and manage your YouTube videos (to set the thumbnail).
We use those permissions for exactly four things, all of which happen when you press a button: create a broadcast, create its ingest stream, bind them together, and set the thumbnail and category you chose. We do not read your videos, your subscribers, your analytics or your comments, and we never delete anything.
TVOC's use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not transfer this data to anyone, do not use it for advertising, and do not allow humans to read it except where you ask us to, where it is necessary for security, or where the law requires it.
TVOC LIVE uses YouTube API Services. By connecting YouTube you also agree to the YouTube Terms of Service, and Google's handling of your data is governed by the Google Privacy Policy. You can revoke TVOC's access at any time at myaccount.google.com/permissions.
Kick
Almost everything TVOC does on Kick works from your channel name alone and needs no account access. Connecting Kick is optional and exists for one thing: Kick's public chat feed says the follower count changed and never says who, so naming a new follower in your alerts requires their official API. It grants two permissions — read your user profile, and subscribe to events on your channel. Nothing can post, ban or change your stream with it.
TikTok
You connect TikTok by typing your TikTok username — nothing else. No password, no sign-in and no key is needed to read your LIVE chat, gifts and follows; they are public in your LIVE room, and the username is all TVOC uses to find it.
TVOC only reads your TikTok LIVE. It does not post in your chat, ban or mute anyone, or change anything on your TikTok account.
Optionally, you may paste in a key of your own from a third-party TikTok LIVE service instead; if you do, that service's own terms and privacy policy apply to it.
Disconnecting
Revoking on the platform stops TVOC immediately. Deleting your tvoc.live account deletes every stored token with it. Tokens are also deleted when you reconnect, because the new one replaces the old.
The TVOC LIVE app
Stored on your device
The app records the viewers it sees while you stream — usernames, display names, the comments they send, gift totals, points and per-day counts — so it can show you a history of your regulars. It also stores your rules, your imported sounds, your downloaded voices, your stream scenes and your settings, in the app's private storage on your own device.
On the Free plan, none of that leaves your device. On Pro, the parts listed under “Backed up on Pro” below are copied to your tvoc.live account. These are never uploaded on any plan: points balances, your downloaded voices (they are fetched again from the public repository instead), overlay pictures and stream backgrounds, your Spotify sign-in, your tvoc.live sign-in on that device, and the stream keys you go live with.
Deleting the app deletes this data. There is an export feature so you can keep a copy yourself before you do.
Stream keys — the keys you go live with — are a special case. A key you paste in is encrypted against your Windows account or your phone's keystore and stored on that device only. It is never uploaded, never logged, and never shown on screen again after you paste it — TVOC will tell you a key is saved and will not tell you what it is.
For Twitch you do not have to paste one. Because you connected Twitch, TVOC can ask Twitch for your stream key at the moment you press Go live, which means the key is never revealed on a dashboard, never copied through a clipboard and never typed anywhere. That key is used to open the broadcast and then discarded: it is not written to your device, not sent to our servers, and not logged. Every other platform still needs a pasted key, because none of them will hand one to an application.
Your viewer history on Pro, and your moderators
On Pro, the app backs up your viewer history to your account so every device you use sees the same regulars. This is the part of TVOC LIVE that holds information about your viewers, so it is worth setting out exactly what it is. The copy contains the usernames and display names of viewers, their gift totals, points balances, how many times they have commented, when they were first and last seen, whether you banned them and who did, and the text of their chat messages. On the Free plan none of it is sent.
A separate setting on the Viewers screen, “Let my mods see this on the website”, decides whether the people you have made moderators can read that copy on tvoc.live. It is off unless you turn it on. The app also tells us the usernames of your moderators, so the website knows who they are.
It is deliberately limited, in the app itself and not only here:
- Nothing older than 90 days is sent, and anything that reaches 90 days old is deleted from our servers.
- At most 1,000 viewers, the most recently seen. Your full history stays on your device.
- A viewer you delete in the app is deleted from our servers, along with everything they ever said, and stays deleted on your other devices.
- Besides you, only people your app reports as your moderators can read it, only for your channel, and only while the setting is on. They must be signed in with the same account that carries the moderator badge in your chat.
- Turning the setting off stops your moderators reading it at once. The backup itself stays, for your own devices, until it ages out or you delete it.
If you stream to an audience, you are responsible for what you share about them. We are not able to tell your viewers that you have switched this on; if the law where you are requires you to, that is yours to do.
Sent to your tvoc.live account, on any plan, if you sign in
Signing in from the app is optional. When you do, the app sends what your public page and your account need: the names, prices and descriptions of ranks and actions you offer, whether you are live right now and on which platforms and usernames (for the Watch buttons), what is playing and queued while song requests are on (including the display name of whoever asked for each song), your page's pictures and words if you edit them in the app, and the name of the device so you can tell your devices apart. This is not a backup and is the same on every plan.
Backed up on Pro
On Pro, and only on Pro, the app also keeps a backup on your account and brings it back when you sign in on another device:
- every settings profile and its name: your actions and rules, who gets read out, points earning rates, song request settings, sound volumes, which pages are in the bar, and your other settings;
- the ranks you have made;
- your Spotify app's client id (not your Spotify sign-in, which stays on the device);
- the Euler Stream or TikTool key you pasted in for TikTok, so you do not have to paste it again on another device;
- your imported alert sounds, up to 50 MB in total;
- your viewer history, as described above.
Sounds and backups are private to your account and are never shown publicly. If Pro ends, nothing new is backed up and nothing is deleted — the backup waits on your account until Pro comes back or you delete it. Deleting your account deletes all of it; to delete a backup without closing your account, write to us.
Other services the app talks to on your behalf
- Spotify — only if you connect it. The app uses your own Spotify account, through Spotify's official authorisation flow, to search for tracks and add them to your queue. Your Spotify tokens are stored on your device. We never see your Spotify password.
- Voice downloads — the optional neural voices are downloaded from a public repository. Nothing about you is sent with that request.
- Stream Mode parts — ffmpeg, the virtual camera driver and the browser engine are downloaded from our releases only when you press Download. The request carries nothing about you.
Those services have their own privacy policies, which govern what they do with data once it reaches them.
Permissions
On Android the app runs a foreground service and holds a wake lock so alerts keep working while your screen is off, and can optionally be given notification access so it can see what is playing on your own phone for song requests. It asks for the camera and microphone only when you use Stream Mode or use the phone as a camera or microphone for your PC: the picture and sound go to the platform you go live to, or straight to your own PC over your network — never to TVOC. It uses your Wi-Fi to find that PC, and asks to install packages only to install an app update you chose to download. It does not request your contacts or your location. On Windows, Stream Mode captures the screens, windows, cameras and audio devices you add as sources, and only those — nothing is captured until you add it, and nothing is sent anywhere except to the destination you go live to.
The tvoc.live website
Accounts
Creating an account stores your email address, a password if you set one (kept as a hash, never readable), and a username. If you sign in with Google or Apple, we receive your name, your email address (with Apple, possibly a private relay address) and that service's id for you, and nothing else. If you make a passkey, we store its public key; the private half never leaves your device or password manager. Your username forms your public profile address at tvoc.live/your-name. Anything you add to your profile — display name, description, pictures, links — is published deliberately and is visible to anyone.
Payments
Tips, plans and wishlist purchases are handled by Stripe. Card details go straight to Stripe and never reach TVOC's servers — we receive the amount, the currency, whether it succeeded, and the name or message a supporter chose to attach. If you take payments, you connect your own Stripe account and Stripe holds the identity and bank details that arrangement requires; we see only whether your account is able to accept charges and receive payouts.
If you buy Pro through Apple on iPhone, Apple handles the payment, the billing and any refund. We never receive your card or Apple account details.
Processors
- Vercel — hosting. Receives standard server request information, including IP addresses.
- Supabase — the account database, authentication, and the storage that holds profile pictures and backed-up sounds.
- Resend — sends the sign-in code emails, and the emails telling account holders about changes to these documents. Receives your email address for those purposes only.
- Stripe — payments and payouts, as above.
- Euler Stream — reads the public TikTok LIVE chat for the username you give.
- Apple and Google — only if you sign in with them, or buy Pro through Apple.
- GitHub — hosts the app downloads and updates. Receives standard request information when you download.
We do not use advertising or cross-site tracking cookies.
How long we keep things
- Platform tokens — until you revoke the connection, reconnect, or delete your account.
- Backed-up viewer history — each viewer and their chat for 90 days after they were last seen, then deleted; a viewer you delete in the app is deleted straight away.
- Your account, profile and Pro backups — until you delete them or your account. Nothing is deleted when Pro ends.
- Payment records — kept as long as tax and accounting law requires, which is longer than the rest and is not ours to shorten.
Children
Our services are not directed at children under 13, and we do not knowingly collect their personal information. If you believe a child has created an account, contact us and we will remove it.
Your rights
You can ask for a copy of the personal information we hold about you, ask us to correct it, or ask us to delete your account and its data. You can delete your account yourself from your account page, or write to support@tvoc.live and we will respond within 30 days. Data held only on your own device is yours to delete directly.
Changes
If this policy changes in a way that affects what we collect, we will update the date at the top of this page and, where the change is significant, email account holders before it takes effect.
Contact
TVOC Creator Network Limited, a company registered in New Zealand. Write to support@tvoc.live and we will give you our registered postal address if you need it for a formal request.