FrameNook

Updated 7 October 2026

Your photos, your home.

This notice covers FrameNook, its connection page, purchase service and product website, operated by 杭州耘擎科技有限公司. The current preview has payments disabled.

Your photo library

Your Immich server sends photos directly to your TV. USB photos and videos are read directly from your drive. We do not receive, upload, host, edit or delete your media through our service. The TV temporarily loads images for display. FrameNook does not offer cloud photo storage.

Connecting your TV

The TV stores the server address, access token or API key and display preferences locally. An Immich password is used for login and is not saved by the app. Choose Settings → Disconnect to remove the saved Immich connection. This does not delete your server photos or your Pro purchase.

Phone pairing encrypts connection details in the browser. The encryption key stays in the QR link fragment and is not sent to our relay server. The relay holds encrypted data in memory, releases it once to the requesting TV, and expires it after 10 minutes. Expired relay data is cleaned up at least every 30 seconds; server restarts discard pending sessions. Protect the QR code until pairing finishes.

Use HTTPS for an internet-accessible Immich server. If you choose a local HTTP server, traffic between your TV and that server does not have HTTPS transport encryption.

Trials and purchases

When commercial billing is enabled, the app creates a random installation credential and sends it to the access service over HTTPS. The service stores a hash identifying that installation, trial dates, purchase sessions, order and transaction references, merchant identifier, activation and recovery records, refund state and processed notification identifiers. These are used to validate access, prevent duplicate charges, restore purchases and process refunds. We do not collect your TV serial number for this purpose.

PayPal processes the payment details on its own site. Our app does not request or store card numbers or PayPal passwords. PayPal handles information under its own privacy notice. Keep purchase and recovery codes private.

Active purchase and recovery records are retained to provide the purchased access. Transaction and support records may also need to be retained to resolve disputes and meet applicable recordkeeping obligations. Contact us about access, correction or deletion; deleting activation records can prevent future purchase recovery. Uninstalling the TV app does not automatically delete server-side purchase records.

Website and infrastructure

The site does not add advertising trackers or analytics SDKs. Hosting, reverse proxy and network providers may process IP addresses, request paths and delivery logs to serve requests and operate security controls. Application rate limits use client IP addresses in memory. Phone pairing secrets are placed in URL fragments rather than query strings. Do not put passwords in server URLs or support messages.

Your controls and contact

You can disconnect Immich in the app and revoke its token or read-only API key on your Immich server. Clear TV app data or uninstall to remove remaining local settings; save your purchase recovery code first. Remove the USB drive after stopping playback to end access to its files.

For privacy requests, contact hzlinj@126.com. Describe your request and provide a transaction reference only if it is needed to locate a purchase. Do not send passwords, API keys, payment card details, or private photos.