Effective: September 7, 2026
This Privacy Policy explains how Pullr collects, uses, discloses, retains, and protects personal information when you use our website, applications, APIs, cloud download service, support, and communications.
Pullr is the controller of personal information used to operate the service. For privacy questions or requests, contact [email protected]. This policy does not cover third-party websites, download sources, or content reached through Pullr.
We collect information you provide, including your name, email address, password hash, notification and player preferences, support messages, copyright correspondence, two-factor authentication data if you enable it, WebDAV credentials if you generate them, Telegram account details if you link Telegram, Google Drive connection details if you connect Drive, and authorizations if you connect external tools or AI agents through Model Context Protocol (MCP) or OAuth. We record the time you accepted the Terms and this policy. Your email address cannot be changed after registration.
If you continue with Google, Google provides your Google account identifier, name, and email address. We store the Google account identifier to authenticate you and, if a Pullr account already exists for that email address, we link Google sign-in to that account. We treat the Google-provided email as verified. For Google sign-in we do not store Google access tokens, refresh tokens, or Google profile photos.
If you connect Google Drive, Google provides a Drive account identifier, email address, access token, and refresh token after you grant the Drive file scope. We store those tokens, the Drive email address, and identifiers for folders and files Pullr creates in your Drive so we can upload a ready pull when you choose to. Connecting Drive is separate from Google sign-in and can use a different Google account. We create folders in your Drive, including a Pullr folder, for those uploads. File bytes are uploaded from the download node that holds the pull to your Google Drive; Pullr does not copy those bytes onto the application server. We keep Drive tokens while the connection remains active. Unlinking Drive in settings or deleting your account deletes the stored tokens and export records in Pullr. Files already copied into your Drive remain there under Google's terms until you delete them.
If you subscribe to the guest newsletter, we collect the email address you submit and send a confirmation link. Creating a Pullr account does not include a separate newsletter checkbox; verified accounts are subscribed as described below.
When you use Pullr, we process source URLs and links you submit, source fingerprints, filenames, file sizes, pull status and history, share identifiers, selected locations, WebDAV and other credential use, plan and PayPal subscription identifiers, IP address, browser and device information, session data, security events, application logs, notification history, last-seen activity, and account activity. Staff may record internal account notes for support and operations; those notes are not shown in your account. We may receive abuse, copyright, and infrastructure reports from users, rights holders, hosting providers, and other third parties.
We process account, pull, billing, and technical information to perform our contract with you and provide the service. We use legitimate interests to secure Pullr, diagnose failures, measure performance, prevent fraud and abuse, enforce quotas and policies, deduplicate pulls, communicate about the service, send newsletter and product updates to verified users, and improve reliability. We process records when necessary to comply with law, respond to legal requests, establish or defend claims, and protect users and third parties. Where applicable law requires consent for a specific technology or communication, we rely on consent.
Pull share links are unlisted but accessible without an account to anyone who has the link. Shared pages may expose filenames, folder structure, sizes, and downloadable content. Do not use public sharing for confidential or personal data.
We disclose information as needed to infrastructure and hosting providers; Resend for transactional email and, after you verify a Pullr account or confirm a guest newsletter signup, contact synchronization and product events; PayPal when you start or manage a paid subscription; Google when you continue with Google to create or sign into an account and when you connect Google Drive, including refresh tokens and the pull files you choose to upload; Umami Cloud for website and product analytics; X Ads for advertising conversion measurement, including hashed email addresses, click IDs, IP address, and browser information; Telegram when you link the bot; Gravatar when an avatar is requested; OpenSubtitles when we look up subtitle files for a video; Bunny Fonts for web fonts; third-party AI agents and desktop developer tools that you explicitly authorize via Model Context Protocol (MCP) and OAuth to manage your pulls, downloads, and account information; and professional advisers, authorities, claimants, or counterparties where required for compliance, safety, or legal claims. We do not sell personal information for money.
Pullr uses essential cookies and browser storage for authentication, sessions, security, preferences, and Livewire functionality. We load Umami Cloud analytics for guests and non-admin users to understand usage and performance. Umami may receive technical request information such as IP address, browser, device, referring page, and visited routes according to its configuration and privacy practices. We also load the X (Twitter) conversion pixel for guests and non-admin users and send matching conversion events through the X Conversion API so we can measure advertising campaigns. That pixel and API may use cookies or similar identifiers, including an X click ID stored when you arrive from an X ad.
Account information is retained while your account is active. Internal account notes are kept with the account and deleted when the account is deleted. Pulls attached to an account remain until you delete or are detached from them, they are taken down, or they later have no remaining users and are cleaned up. Session, security, application, and analytics records are kept for periods reasonably necessary for operations and investigation. Blocked-source, ban, activity-log, and other legal or abuse records may be retained longer to enforce policies, prevent repeat violations, and establish or defend claims. Account-linked copyright strike records are deleted when the account is deleted. Backups may retain deleted data for a limited recovery cycle before being overwritten.
Deleting your account removes your profile and access and detaches the account from its pulls. Shared or deduplicated files may remain available to other users or until they are later cleaned up. Google Drive tokens and Drive export records stored in Pullr are deleted with the account. Issued OAuth access tokens and MCP authorizations are revoked and deleted upon account deletion. Deletion does not cancel a PayPal subscription. We may retain blocked-source fingerprints, logs, and other records where deletion would undermine legal obligations, fraud prevention, or the rights of others.
We use access controls, encryption in transit, hashed credentials, logging, rate limits, and other technical and organizational safeguards. No internet service is completely secure. Pullr may automatically reject blocked sources, enforce quotas, clean up unattached pulls, identify suspicious activity, and apply escalating copyright strikes. Contact us if you believe an automated or moderation decision is incorrect.
Pullr and its providers may process information in countries other than your own. Those countries may have different privacy laws. Where applicable law requires a transfer mechanism, we will use an available lawful mechanism before making the covered transfer.
Depending on where you live, you may have rights to know or access personal information, correct it, delete it, receive a portable copy, restrict or object to processing, withdraw consent, and appeal a denied request. The in-app email-notifications setting only controls pull status emails. You may unsubscribe from newsletter and marketing messages without closing your account by contacting [email protected]. We may need to verify your identity and may retain information where an exception applies. Authorized agents may submit requests where local law permits.
California residents may request the categories and specific pieces of personal information collected, correction or deletion, and information about disclosures. Pullr does not sell personal information for money. We share hashed identifiers and related technical data with X Ads to measure advertising conversions. Contact us if you want to opt out of that measurement sharing. We will not discriminate against you for exercising applicable privacy rights.
Pullr is not directed to children and accounts are limited to adults or people who have reached the age of legal majority where they live. If you believe a child provided personal information, contact us.
We may update this policy as Pullr changes. We will revise the effective date and may provide additional notice for material changes.
For privacy requests or complaints, email [email protected]. Describe your request and the account email involved. You may also complain to your local data protection authority where applicable.