Privacy Policy

Last updated: December 20, 2025

Overview

What2Watch is an MCP (Model Context Protocol) server that provides movie, TV show, and streaming recommendations to AI assistants like ChatGPT and Claude. We are committed to protecting your privacy and being transparent about our data practices.

Privacy by Design

We do NOT store your email address. We only store a cryptographic hash of your email, making it impossible for us to know or recover your actual email. This is a deliberate design choice to protect your privacy.

This means we cannot link your search history or preferences to you as a person. All data is tied only to an anonymous hash - we have no way of knowing who you are, contacting you, or identifying you in any way.

Data We Collect

Data Type What We Store Purpose
Email Hash SHA-256 hash only No PII Account identification
Search History Tool calls & responses Personalization, analytics
Preferences Liked/disliked content, platforms Better recommendations
Region Country code (e.g., "US") Content availability

Data We Do NOT Collect

How We Use Your Data

We never sell your data. We do not share your personal information with advertisers, data brokers, or any third parties for marketing purposes.

Data Retention

We retain your data for as long as your account is active or as needed to provide our services:

Your Rights & Controls

Delete Everything, Anytime

You can delete ALL your data at any time, no questions asked. Simply ask your AI assistant: "Delete all my What2Watch data" or email us. We will immediately and permanently remove all data associated with your anonymous hash.

You have the following rights regarding your data:

To exercise any of these rights, just ask your AI assistant or contact us at privacy@what2watch.live

Security

We take security seriously and implement the following measures:

Third-Party Services

What2Watch integrates with the following services:

Each of these services has their own privacy policies governing their handling of data.

GDPR Compliance (European Users)

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, you have additional rights under the General Data Protection Regulation (GDPR):

Legal Basis for Processing

Your GDPR Rights

International Data Transfers

Your data may be processed in the United States. We ensure appropriate safeguards are in place for any international transfers, including standard contractual clauses where required.

Supervisory Authority

You have the right to lodge a complaint with your local data protection authority if you believe we have violated your privacy rights.

US Privacy Rights

California Residents (CCPA/CPRA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):

We do NOT sell your personal information. We have not sold personal information in the preceding 12 months and have no intention of doing so.

Virginia, Colorado, Connecticut, and Other State Residents

Residents of states with comprehensive privacy laws (VCDPA, CPA, CTDPA, etc.) have similar rights to access, delete, correct, and opt-out. Contact us to exercise these rights.

Children's Privacy

What2Watch is not directed at children under 13 (or 16 in the EEA). We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately and we will delete it.

Changes to This Policy

We may update this privacy policy from time to time. We will notify users of significant changes by updating the "Last updated" date at the top of this page. Continued use of the service after changes constitutes acceptance of the updated policy.

Contact Us

If you have questions about this privacy policy or our data practices, please contact us: