Privacy
Last updated: 18 May 2026
Who we are
GoFilm is a cinema discovery service. The data controller is GoFilm. This page explains what data we hold about you, why, and how to control it.
What we collect
We deliberately collect as little as possible.
If you use GoFilm without signing in (Guest), we store:
- A random identifier in a cookie on your device, used to keep your watchlist, ratings, and saved cinemas across visits
- Your watchlist, ratings, and saved cinemas — only if you create them
- Your approximate location and search radius — only if you grant location access or enter a postcode, used to show nearby cinemas
- Your IP address temporarily, used to rate-limit abusive activity
If you sign in as a Member, we additionally store:
- Your email address
- Your sign-in code request history (used to enforce rate limits and prevent abuse)
- Your email preferences (whether you want our weekly roundup)
- Your Film Alerts (films you're tracking for future availability)
- A log of weekly emails sent to you — kept for 12 months and then deleted
If you sign in using Sign in with Apple on the iOS app, your email address comes to us via Apple. Apple may give us your real email address or a private relay address ending in @privaterelay.appleid.com that forwards to your real address — your choice during sign-up. We do not receive any other information from Apple. Apple's handling of this authentication is governed by their privacy policy at apple.com/legal/privacy.
If you enable push notifications in the iOS app (used for Film Alerts), we store an Apple Push Notification Service device token. This token lets us send notifications to your device; it doesn't identify you to us in any way beyond delivery. You can disable push notifications at any time via iOS Settings → Notifications → GoFilm, or by signing out.
We do not collect: your name, payment information, contact lists, browsing history outside GoFilm, or anything from third parties about you. We do not use analytics or tracking cookies.
Why we collect it
We collect only what's necessary to make GoFilm work:
- Cookies and identifiers: to remember your saved cinemas and watchlist between visits, and to keep you signed in
- Email address: to send sign-in codes and (if you opt in) the weekly roundup
- Location: to show you cinemas nearby
- IP address: to rate-limit abuse of the sign-in and email-request endpoints
Our legal basis under UK GDPR is legitimate interest for cookies and identifiers (necessary to provide a usable service) and consent for the weekly email (which you opt in to and can opt out of at any time).
Who we share it with
We use the following service providers to operate GoFilm:
- Hostinger (UK) hosts the server where your data is stored. Hostinger does not access your data; they provide infrastructure only.
- Resend (Ireland) sends our emails. They handle your email address and the content of emails we send to you. Their privacy policy is at resend.com/legal/privacy-policy.
- Apple (USA) provides Sign in with Apple authentication and the Apple Push Notification Service for the iOS app. Apple receives the minimum information required to handle these flows. Their privacy policy is at apple.com/legal/privacy.
We do not sell, share, or otherwise transfer your data to anyone else. We do not advertise on GoFilm.
How long we keep it
- Guest accounts: deleted automatically after 6 months of inactivity
- Member accounts: kept until you delete your account
- Sign-in codes: expire 15 minutes after request and are deleted within 24 hours regardless
- Weekly email send log: kept for 12 months and then deleted
When you delete your account, all of the above is permanently removed from our database within 24 hours.
Your rights
Under UK GDPR you have the right to access, correct, delete, restrict, port, or object to our processing of your data. You can exercise all of these directly in the app:
- Access (download a copy of all your data): sign in and visit your Account page, then click "Download my data." You'll get a ZIP file with everything we hold about you in JSON and CSV form.
- Delete your account: on the same Account page, expand "Delete account" and confirm. This is immediate and permanent.
- Stop emails: uncheck "weekly roundup" on your Account page, or click the unsubscribe link in any email we send you.
If you signed in using Sign in with Apple, you can also manage GoFilm's access via your Apple ID settings at appleid.apple.com → Sign in with Apple → GoFilm. Revoking access there is equivalent to deleting your GoFilm account.
If you have lost access to the email you used to sign up, we have no way to identify you and cannot recover your account. The email address is the only personal information we hold that could verify your identity.
If you believe we have not handled your data correctly, you have the right to complain to the UK Information Commissioner's Office at ico.org.uk/make-a-complaint.
Cookies
GoFilm uses one cookie. It contains a random identifier used to recognise your device between visits — that's how we keep your watchlist and saved cinemas. It is HttpOnly, Secure, and SameSite=Lax, meaning it cannot be read by JavaScript and is only sent over HTTPS. We do not use tracking cookies, analytics cookies, or advertising cookies.
Children
GoFilm is not designed for children under 13 and we do not knowingly collect data from children. If you believe a child's data has ended up in our system, sign in as that account and delete it via the Account page.
Security
We protect your data using industry-standard practices:
- All connections to GoFilm use HTTPS (TLS encryption)
- Sign-in codes are stored as one-way hashes, never as plaintext
- Cookies are HttpOnly, Secure, and SameSite=Lax
- Sign-in attempts are rate-limited to prevent brute-force attacks
No system is completely secure, but the data we hold is deliberately limited to what's necessary, which limits the impact of any breach.
Contact
For privacy questions or to exercise your rights, you can email privacy@balsham.cloud. For most data requests (download, deletion, email preferences), it's faster to use the in-app controls described above.
Changes to this policy
If we make material changes to this policy, we'll update the date at the top of this page and notify Members via email. Continued use of GoFilm after changes implies acceptance.