Privacy Policy for ZHD Gateway
Zebis Inc. (“Zebis,” “we,” “us,” or “our”) provides the ZHD Gateway Android TV application (“ZHD Gateway” or the “App”). This Privacy Policy explains the information the App accesses, collects, uses, stores, and shares.
1. What the App Does
ZHD Gateway is an authentication gateway and Home launcher for supported Android TV
devices. The App verifies an eligible Zebis ZHD subscription and then opens the Android
application with package name com.spocky.projengmenu. If that application is
not installed, ZHD Gateway opens its Google Play listing.
On fully managed Zebis devices, ZHD Gateway may operate as the device policy controller and persistently assign itself as the device’s Home launcher. This device-management function is used to keep the managed TV box in its intended configuration.
Before enabling ZHD Gateway Home Override, the user is shown a separate in-app Accessibility Service disclosure and must affirmatively select Agree and Continue. The user is then taken to Android Accessibility settings, where the service must also be enabled. The service detects the remote Home key or the stock system launcher becoming visible and reopens ZHD Gateway. It also maps selected remote keys to Android's Back action and system power menu, Android Settings, Disney+, YouTube, Prime Video, and JustWatchTV. If the user selects Not Now, ZHD Gateway exits.
2. Information We Collect and Process
Authentication information
When you sign in, the App and Firebase Authentication may process:
- Your subscriber email address;
- Your password when you use email/password authentication or link a Google account to an existing subscriber account;
- If you choose Google Sign-In, the selected Google account’s email address, account-provider identifier, and an authentication token;
- A Firebase user identifier, linked authentication providers, and authentication or account status;
- Authentication tokens used to keep you signed in; and
- IP address, user-agent information, and device or App-verification signals used by Firebase and Google for authentication security and abuse prevention.
Passwords are handled by Firebase Authentication. Zebis does not receive or store your password on Zebis servers in readable form. After a successful email-and-password login, including an email/password login used to link Google Sign-In, the App stores an encrypted copy of that email login only on the Android TV device. This allows the App to restore the Firebase sign-in after a disabled subscription account is re-enabled. When retrying, the App decrypts the saved login only on the device and submits it directly to Firebase Authentication over an encrypted connection. The saved login is not transmitted to Zebis or any service other than Firebase Authentication.
If you choose Google Sign-In, Google provides an authentication token and the selected account email to the App and Firebase. ZHD Gateway does not receive your Google password. A Google identity that is not already linked cannot by itself establish an eligible ZHD subscription. The user must authenticate an existing Zebis subscriber email/password account before the Google identity is linked. Firebase may briefly create an authentication record while eligibility is evaluated; the App attempts to delete a newly created record for an unregistered Google identity before starting the subscriber-linking flow. This version of the App does not initiate Phone/SMS authentication.
Remote configuration information
The App uses Firebase Remote Config to retrieve application configuration. Firebase Remote Config may process a Firebase installation identifier and basic App or device request information to provide the correct configuration. Remote Config is not used by ZHD Gateway to deliver advertisements, notifications, or in-app messages.
Device and launcher information
The App locally checks:
- Whether ZHD Gateway is currently selected as the device’s default Home launcher;
- Whether the user has enabled the ZHD Gateway Home Override accessibility service;
- Whether Firebase has reported the account disabled, used locally to restrict optional remote shortcuts;
- Whether ZHD Gateway is provisioned as the device owner on a Zebis-managed TV box;
- Whether
com.spocky.projengmenuis installed and can be opened; - When a configured remote shortcut is used, whether JustWatchTV, Disney+, YouTube, or Prime Video is installed and can be opened; and
- Whether the device has an active network connection.
These checks are performed on the device to provide the App’s launcher and setup functions. ZHD Gateway does not upload a list of installed applications, device-owner status, or Home-launcher selections to Zebis or third parties.
Home Button Override accessibility service
When explicitly enabled by the user, this service detects remote-control button presses and receives window-state events, including the package and activity name of the app currently displayed. This occurs while the service is enabled, including when ZHD Gateway is not visible. The information is used only to recognize the stock system Home launcher, return the device to ZHD Gateway, and perform the remote-button mappings described above. The service is configured not to retrieve window content and does not read or capture screen contents, text entered by the user, passwords, messages, photographs, video, or audio. Accessibility information is processed only on the device and is not transmitted, sold, or shared with Zebis or third parties.
3. How We Use Information
We use information described in this policy to:
- Authenticate Zebis ZHD subscribers and maintain signed-in sessions;
- Provide email/password and optional Google account authentication;
- Link a Google identity only after an existing subscriber account is authenticated;
- Prevent fraud, abuse, and unauthorized access;
- Retrieve operational configuration for the App;
- Return the device to ZHD Gateway when the remote Home button is pressed;
- Open Android's system power menu from the Bookmark button;
- Open JustWatchTV from Button 14 or Guide;
- Open Android Settings from Button 13 and perform Android's Back action from Back;
- Open Disney+, YouTube, and Prime Video from their configured remote buttons;
- Open the intended Android TV application or its Google Play listing;
- Maintain the reliability and security of the App and related services; and
- Comply with legal, regulatory, accounting, or contractual obligations.
Zebis does not sell personal or sensitive user information. ZHD Gateway does not contain third-party advertising and does not use personal information for advertising.
4. When Information Is Shared
Google and Firebase
We use Google Sign-In, Firebase Authentication, and Firebase Remote Config. If you choose Google Sign-In, Google provides the App and Firebase with an authentication token and the selected account email. Google otherwise processes information on our behalf to provide authentication, configuration, security, and fraud-prevention services. For more information, review Privacy and Security in Firebase and the Google Privacy Policy.
Google Play and external applications
If the intended Home application is not installed, ZHD Gateway opens its Google Play
listing. Google Play may process information under Google’s own privacy policy. When ZHD
Gateway opens com.spocky.projengmenu, JustWatchTV, Disney+, YouTube, or Prime
Video, the opened application operates independently under its developer’s terms and
privacy practices. Zebis does not control those applications’ data practices.
Service providers, legal requirements, and business transfers
We may share information with service providers that process it for the purposes described in this policy and subject to appropriate contractual protections. We may also disclose information when reasonably necessary to comply with law or legal process, enforce agreements, investigate fraud or abuse, protect users or systems, or complete a merger, acquisition, reorganization, or sale of business assets.
5. Information We Do Not Collect Through ZHD Gateway
ZHD Gateway does not:
- Request or collect precise or approximate location;
- Access contacts, call logs, photographs, video, microphone, or camera;
- Initiate Phone/SMS authentication, read SMS messages, or request SMS-reading permission;
- Send push notifications or out-of-app notifications;
- Display Firebase In-App Messaging;
- Collect device-diagnostic reports or support-request content;
- Use Google Analytics for Firebase; or
- Display third-party advertising.
6. Data Storage, Security, and International Processing
We use reasonable administrative, technical, and organizational safeguards intended to protect personal information. Firebase services use encryption in transit, and Firebase Authentication encrypts data at rest. Authentication information is restricted to authorized personnel and service providers who require access for authorized purposes.
Authentication state may be stored in the App’s private storage so the device can remain signed in. For email-and-password logins, the App also stores the email address and password in encrypted form in private App storage using a key held by Android Keystore. The saved login is excluded from Android cloud backup and device-to-device transfer and is used only to retry Firebase Authentication after the account is re-enabled. ZHD Gateway also stores a local account-status setting used to disable optional remote shortcuts when Firebase reports that the subscriber account is disabled.
Firebase Authentication is operated from data centers in the United States. Firebase Remote Config and other service-provider operations may use global infrastructure, so information may be processed outside your state, province, or country.
No storage or transmission method is completely secure, and we cannot guarantee absolute security.
7. Retention and Deletion
- Authentication information, including linked Google-provider information when applicable, is retained while the Firebase account remains active or as needed to provide authentication, security, fraud prevention, and legal compliance.
- Firebase Authentication generally retains authentication information until Zebis initiates deletion of the user account. Firebase may retain logged IP addresses for several weeks and may take additional time to remove information from backup systems.
- Firebase Remote Config installation identifiers are retained according to Google’s Firebase retention practices.
- Local authentication state remains until the user is signed out, App data is cleared, the account is deleted, or the App is uninstalled, subject to Android backup behavior.
- The encrypted email login remains until the user selects Use Different Login, the saved login is rejected for a reason other than the account remaining disabled, App data is cleared, or the App is uninstalled.
- The local account-status setting remains until it is updated after successful authentication, App data is cleared, or the App is uninstalled, subject to Android backup behavior.
To request deletion of your ZHD Gateway authentication account and associated personal information controlled by Zebis, email support@zebis.com with the subject “ZHD Gateway Privacy Request.” We may need to verify your identity before completing the request. We may retain limited information where required for security, fraud prevention, legal compliance, accounting, or the establishment or defense of legal claims.
8. Your Choices and Rights
You may:
- Choose whether to use email/password authentication or Google Sign-In;
- Request removal of a linked Google identity or deletion of the associated authentication account by contacting Zebis;
- On a device that is not fully managed, decline to select ZHD Gateway as the default Home launcher, although the App cannot perform its intended launcher function without that selection;
- Decline Accessibility Service consent by selecting Not Now, which exits the App;
- Enable or disable ZHD Gateway Home Override at any time in Android Accessibility settings, although the App cannot perform its intended Home-launcher and remote-control functions while the service is disabled;
- Clear a saved email login by selecting Use Different Login on the subscription assistance screen;
- On a fully managed Zebis device, ask Zebis to deprovision the device if the persistent Home assignment needs to be removed;
- Clear the App’s local data or uninstall the App;
- Request access to, correction of, or deletion of personal information controlled by Zebis; and
- Request deletion of your authentication account.
Depending on where you live, applicable law may provide additional privacy rights. Contact us using the information below to submit a request or ask a privacy question.
9. Children’s Privacy
ZHD Gateway is intended for authorized Zebis ZHD subscribers and is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you believe a child provided personal information through the App, contact us so we can investigate and delete it where appropriate.
10. Changes to This Policy
We may update this Privacy Policy to reflect changes to the App, our practices, legal requirements, or service providers. We will update the “Last updated” date and provide additional notice when legally required.
11. Contact Us
For privacy questions, requests, or complaints, contact:
Zebis Inc.Email: support@zebis.com
Telephone: +1 239-437-9324
Website: https://www.zebis.com