01 / Scope
One account, clearly separated product data.
This policy applies to the fKeyLabs website, the shared fKey Account service at auth.fkeylabs.com, and account features used by fStream, fRelay, fClip, and fChat.
Signing in is optional unless you use an account-only feature such as an entitlement, cloud resource, provider connection, synced setting, or approved app session. Local recordings, fClip projects, exports, and fChat channel choices remain on your device unless a product names and asks you to enable a specific sync or backup feature.
02 / Data we handle
The account stores only what its features need.
Name, email address, internal account ID, provider account identifiers, and connected-provider names.
Provider access and refresh credentials stay in the identity service. Product apps receive opaque, product-scoped sessions instead of Google, Twitch, or Kick tokens.
Global preferences, provider connections, subscription entitlement, billing-verification metadata, usage totals, approved devices, and revocable web, mobile, or product sessions.
fStream settings snapshots, relay usage, chat source records, privacy choices, and recording-backup metadata only when the related account feature is used.
Sign-ins, sign-outs, connection changes, app approvals, preference updates, and session revocations. Activity excludes passwords, tokens, IP addresses, and full browser identifiers.
03 / How data is used
Data supports identity, product operation, and security.
- Authenticate you and attach Google, Twitch, or Kick sign-in methods to one fKey Account.
- Approve app sessions and return the correct product entitlement, limits, preferences, and connection status.
- Configure provider features you request, such as stream destinations, chat access, or a recording backup.
- Verify Stripe or grandfathered Google Play fStream subscriptions, process shared fKey Credit purchases, complimentary adjustments, usage, and reversals, and report account-wide usage against effective product levels.
- Protect the service, rate-limit abusive traffic, investigate failures, and show privacy-safe account activity.
fKeyLabs does not sell personal information. The website does not currently use behavioral advertising or third-party analytics. Advertising inside a product, where present, follows that product’s consent controls.
04 / Connected providers
You choose every external connection.
Initial Google, Twitch, or Kick sign-in requests basic identity only. Additional YouTube, Drive, streaming, chat, or moderation scopes are requested later only when you choose Enable product access in Account Connections. Provider credentials are used only for the connection and product features you authorize. You can disconnect a provider from Account Connections or revoke access in that provider’s own security settings.
Google Drive recording backup uses file-specific Drive access to create and manage fStream backup files you choose; it does not read unrelated Drive files. Stripe is the billing provider for new web purchases, while Google Play remains the provider for grandfathered store subscriptions. Provider services process data under their own privacy terms.
05 / Storage and retention
Account data lives with the service that operates it.
The identity service uses Cloudflare infrastructure for account records and, when selected, fStream Cloud recording objects. Google Drive backups remain in your Google Drive. Direct-download apps keep local media and product data on your device by default.
- Account activity is retained for up to 180 days.
- Provider connections remain until you disconnect them, delete the account, or the provider invalidates them.
- Approved app sessions expire or remain until revoked, depending on their issued lifetime.
- Account, subscription, usage, settings, and backup records remain while the account or related feature is active, then are deleted or retained only where required for security, billing integrity, or law.
06 / Your choices
Export, disconnect, revoke, or delete.
The account dashboard lets you download a protected JSON export, disconnect providers, revoke individual sessions, revoke every other session, change global preferences, and permanently delete the account.
Deletion removes the shared identity and account-owned cloud records. A Stripe subscription that can still renew must be cancelled in the billing portal first; deletion does not cancel Google Play billing or erase files stored locally or in your Google Drive. Review the exact process on the Account deletion page.
07 / Changes
Material changes will be dated and surfaced.
This page shows its effective date. If a change materially affects how account data is used, fKeyLabs will update the policy version and surface the new terms through an appropriate account or product notice before relying on new optional processing.
Privacy or legal requests should use the self-service account controls first. If you cannot sign in, use the support channel shown in the official store or download listing for the fKey product you use.