SecretShorts privacy
SecretShorts is operated by Secret Labs Inc. This page describes the data used for public previews, membership checkout, and account setup. The shared account and Secrets platform are also covered by the Secrets privacy policy.
Previews
We use the requested series and episode to provide playback. Video and image delivery providers receive the network information needed to deliver those files. Only approved public artwork, descriptions, and preview videos appear in the public catalog.
Checkout
We collect the email address, billing address, selected plan, consent to the purchase terms, and the payment result needed to process your order and provide support. NMI-hosted payment fields collect card details and return a payment token. Our application does not store your full card number or security code. NMI and Avalara process payment and tax information as needed to complete your purchase.
A purchase-session cookie lets you resume checkout and prove that you control the browser where the purchase was made. We store a hash of that session credential. The purchase reference and email address alone do not authorize someone to claim your subscription.
Account setup and email correction
Firebase authenticates your account. After payment, you can correct the intended account email and verify the correct address. We preserve the original billing record and record the correction so we can reconcile payments and resolve support requests. Your subscription and Moments are associated with your verified account ID.
Short-lived authentication cookies and single-use codes connect your sessions when you continue from SecretShorts to Secrets. Firebase authentication tokens are not placed in redirect links. Payment and account information are not included in public catalog responses.
Transactional emails provide receipts and account verification. Signing up does not itself select marketing-email consent. The shared account's notification preferences can be managed on Secrets.
Retention, security, and requests
Payment, account, and support records are retained under the shared privacy policy and the obligations applicable to those records. An expired checkout cookie does not erase a completed payment. Contact us through the help page for access, correction, deletion, or purchase-recovery requests.