TunnelTV / Privacy Policy

Effective date: September 2, 2026

Overview

TunnelTV is a WireGuard VPN client for Apple TV. It does not operate a VPN service, does not provide VPN servers, and does not have a user account system. This privacy policy explains what data the app accesses, stores, and transmits.

Data stored on device

WireGuard configurations

Your imported WireGuard configurations — including the private key — are stored in the system VPN preferences (per-tunnel NETunnelProviderManager providerConfiguration). This is the same storage model used by the official WireGuard iOS/macOS app and other third-party WireGuard integrations. The private key is part of the configuration text and is not stored separately in the Keychain in the current version.

Trial start date

A timestamp of your first app launch is stored in local device storage (UserDefaults) to track the 3-day trial period. This is not synced to iCloud and does not leave your device.

Purchase state

Your in-app purchase status is managed by Apple's StoreKit 2 and is stored on-device and in Apple's systems. TunnelTV does not receive or store your payment information.

Tunnel log

The app maintains a recent-history log of tunnel events (connection, disconnection, errors) in a shared app-group container. This log is visible within the app and can be cleared by the user. It is not transmitted off-device except in crash reports if Sentry is enabled (see below).

Network access

Browser Import (local HTTP server)

When you choose Import from Browser, the app starts a temporary HTTP server on your local network. This server is available only while the Import screen is visible. It serves a page that accepts a WireGuard configuration via POST request. The configuration (including private key) is transmitted over unencrypted HTTP on your local network. The server is protected by a one-time PIN shown on the TV and a Host-header check. Do not use this feature on untrusted networks.

No analytics or telemetry

TunnelTV does not use advertising, behavioral analytics, or third-party tracking services. The app does not collect usage statistics, browsing activity, or VPN traffic data.

Crash reporting

TunnelTV may use Sentry for crash and error diagnostics. When enabled, Sentry may collect:

VPN private keys, full configuration files, and browsing activity are not sent. IP addresses are not intentionally collected.

Third-party services

Data deletion

To delete all data stored by TunnelTV:

  1. Delete all tunnels within the app (each tunnel is removed from system VPN preferences).
  2. Delete the app from your Apple TV.

In-app purchases are managed by Apple and can be requested through Apple's support channels.

Changes to this policy

If this policy is updated, the effective date at the top will change. Continued use of the app after changes constitutes acceptance of the updated policy.

Contact

Keith
Email: support@tunneltv.app
Website: tunneltv.app