Privacy policy

Plain language.
Precise promises.

Shrimphony connects your device to your Jellyfin server. We do not run an account service, sell personal data, or track your listening across apps.

01

What Shrimphony connects to

Shrimphony connects directly to the Jellyfin server address you provide. Your username, sign-in request, session token, and an app-generated device identifier are sent to that server. The server receives library searches, favorites, playlist changes, downloads, and playback progress. It returns library metadata, artwork, and audio. Your server administrator controls its logs and retention.

02

What stays on your device

Your access token and saved server session are kept in secure device storage. Library caches, playback state, preferences, and music you choose to download are stored locally so the app can resume quickly and work offline. Shrimphony does not store your Jellyfin password after sign-in.

03

What we collect

Shrimphony does not require a Shrimphony account and does not include third-party advertising, analytics, or cross-app tracking. We do not sell personal information. If you email support, Thomas Kleckner receives your email address, message, and any diagnostics or attachments you choose to send. These are used to answer and follow up on your request, and retained while needed for that purpose. You can request deletion at support@shrimphony.app.

04

This website

The marketing and privacy pages are hosted on Amazon Web Services (AWS). Serving a page involves processing your IP address, requested URL, browser information, and request time. AWS Amplify keeps website access logs until this hosted website is deleted. We use these logs only to operate the site and investigate reliability or security problems. The site does not use advertising cookies or analytics trackers. These website requests do not include your Jellyfin login or music library.

05

Your controls

Removing a server or signing out deletes that account’s local audio, artwork, cached library, preferences, and pending download jobs. Settings also lets you clear all downloads. Offline playback reports are not replayed later. Your Jellyfin administrator controls information retained by your server. Revoking the app session in Jellyfin ends its access.

06

Children and family use

Shrimphony is intended for listeners of all ages, including children using a Jellyfin account set up by a parent or guardian. A parent or guardian should choose a trusted server and restrict the child’s account to a library containing age-appropriate music and artwork. Shrimphony plays the library that server makes available; it does not supply a public music catalog or independently filter lyrics and artwork. The sign-in, device identifier, library requests, and playback data described above also apply to child users. We do not use advertising, profiling, or cross-app tracking. Parents can remove local app data using the controls above, contact their Jellyfin administrator about server data, and request deletion of information sent to our support address at support@shrimphony.app.

07

Security and changes

Use HTTPS for any server reached outside a trusted local network. We may update this policy as the app changes; the effective date above will show the latest revision.