Privacy policy

Last updated: 13 August 2026

FlicksForge is designed to do its job on your Mac without sending your data anywhere it doesn't have to. This page explains exactly what the app and this website do with network connections, what information gets collected along the way, and what your rights are.

Short version

Who we are

FlicksForge is a free macOS application developed by Paul Edward Goossens, based in the United Kingdom. The data controller under UK GDPR and EU GDPR is Paul Edward Goossens. Contact: support@flicksforge.com.

What the app does on the network

TMDb (The Movie Database)

When you drag a file into FlicksForge and click Auto-Match, the app sends the cleaned filename (e.g. "The Matrix") and, once you pick a match, the TMDb ID of the movie or TV show to TMDb's public API. TMDb returns metadata (title, overview, year, cast, director, genre, artwork). TMDb may log the request IP and query as part of their normal service operation. See TMDb's privacy policy.

OpenSubtitles

Only when you explicitly click Search OpenSubtitles in the Metadata Editor, FlicksForge sends the title, year, and (optionally) the video file's hash to OpenSubtitles to find matching subtitles. Downloaded subtitle files are saved to your local subtitle cache. Your video files themselves are never uploaded. See OpenSubtitles' privacy policy.

Our update server (flicksforge.com)

On launch and every six hours thereafter, FlicksForge fetches two small files from our own server at flicksforge.com:

These are plain HTTPS GET requests. If a new version is available, the update zip is downloaded the same way. The only information our server sees from these requests is what every webserver sees: your IP address, the requested URL, the timestamp, and the user-agent string (standard nginx access-log fields). We do not set any cookies, tokens, or unique identifiers on these requests.

Why we send the version number. It is the one piece of information about your installation that we deliberately include, and we want to be straightforward about it. It tells us how many people are on each release — which is how we know whether a security or data-loss fix has actually reached everyone, and when it is safe to stop supporting an old version. Nothing else in the update process reveals this: the version manifest is fetched by a generic library that does not identify itself.

It is a version string such as 0.3.4 and nothing more. It is not tied to an account, a licence, a device identifier, or anything that persists between launches, and it says nothing about your files, your library, or how you use the app. We use it only in aggregate — counting how many installations report each version — and we do not build per-user histories from it.

These access logs are retained for up to 30 days for operational and security purposes (troubleshooting, detecting abuse). They are stored on the same server that hosts the website; they are never shared with third parties except where legally required.

What the app does not do

What this website does

flicksforge.com is a static site served by nginx. It loads a small amount of CSS and a little inline JavaScript: one line that fills in the copyright year, and a handler that submits the founders'-list form without navigating you away from the page. It does not:

Standard nginx access logs record your IP, URL, timestamp, and user-agent when you visit. These are retained for up to 30 days.

The founders' list

The download page has an optional form where you can give us your email address to join the "founders' list". It is the only place on this site that collects personal data, and it is entirely optional — nothing about downloading or using FlicksForge requires it.

What we send, and when

We have changed what the founders' list can be used for, so it matters which side of the change you joined on. We are not applying the new option retrospectively to people who signed up under the old wording.

If you joined before 13 August 2026 and would like the release notes after all, email us and we will add you. We will not add you otherwise.

Legal basis and your rights (UK GDPR / EU GDPR)

We process personal data on two bases, and only these two:

We do not process special-category data, and we do not sell, rent or share personal data with anyone for marketing purposes.

Under the UK GDPR, you have the right to:

In practice, because we don't have user accounts and the only personal data we hold is short-lived server log entries, there's usually very little to request. Email support@flicksforge.com with any rights requests.

Third-party services summary

The table below lists every external service FlicksForge ever talks to, when, and why:

ServiceWhenWhat's sent
TMDb On Auto-Match, when fetching metadata, when loading poster variants. Cleaned filename, TMDb IDs, image-request URLs.
OpenSubtitles Only when you click Search OpenSubtitles. Title, year, optional file hash.
flicksforge.com (our server) On launch and every 6 h thereafter; during updates. HTTPS GET requests — the FlicksForge version number, no custom identifiers.
Apple notary service Automatically by macOS on first launch of a signed app. Handled entirely by macOS, not by FlicksForge.

Changes to this policy

If we change this policy, we'll update the "Last updated" date at the top and, for substantive changes, show an in-app notice via the status banner.

Contact

Questions, concerns, or rights requests: support@flicksforge.com.