Privacy Policy
Last updated: October 8, 2026
NightIn is a browser extension, made by Stormra, that lets two people watch a video in sync. This policy explains what the extension and this website (nightin.stormra.com) handle. In short: an account is optional, we don't sell data, and your video, chat and calls go directly between your browser and your partner's.
What goes directly to your partner
Once a party is connected, the following travel over an encrypted, direct (peer-to-peer) connection between the two browsers. They don't pass through or get stored on our servers:
- Playback events: play, pause, seek, speed, ads and buffering.
- Chat messages, reactions and your nickname.
- The address of the video page in your party tab, and any page you choose to share with "Watch this page together".
- Your camera and microphone, only while you have them switched on.
A direct connection means your partner's browser learns your IP address, as with any video call.
What our pairing service handles
To help the two browsers find each other, the extension uses Google Firebase:
| Data | Why | How long |
|---|---|---|
| A user ID: a random, anonymous one (Firebase Anonymous Authentication), or your account's if you're signed in | So only the people in a party can write to it | Anonymous IDs: until we delete unused ones |
| The 6-character party code, the user IDs of the people in it, and when the party was created | To pair the host and the guest | Deleted when the party ends |
| Whether each side is online | To notice when someone disconnects | While the party lasts |
| Connection set-up messages, which include network addresses (IP addresses) | To set up the direct connection | Deleted as soon as the other side reads them |
The extension also asks a Google STUN server for your public network address, which is needed to set up a direct connection.
Some networks (for example strict office or hotel Wi-Fi) don't allow a direct connection. Then the connection between you and your partner is relayed through Cloudflare's TURN service, which forwards the encrypted data without being able to read it, and sees your IP address like any network relay. To use it, the extension gets temporary relay credentials from our server, which only checks that you're in a party.
Your NightIn account (optional)
You can use NightIn without an account. If you want your name on every computer, you can sign in with Google on nightin.stormra.com/account. NightIn in that browser then signs in to the same account.
| Data | Why | How long |
|---|---|---|
| From Google: your email address, your Google account's name and profile picture link, and your Google account ID; and when you signed in (kept by Firebase Authentication) | To sign you in, on the website and in the extension, and to show who's signed in | Until you delete your account |
| The name you use in parties | To use the same name on every computer | Until you change it or delete your account |
To sign NightIn in as you, the extension sends your website sign-in token to our server (a Cloudflare Worker), which checks it and returns a short-lived sign-in for the same account. Nothing is stored there. Google handles the sign-in itself under Google's Privacy Policy; we never see your Google password.
You can change your name, sign out, or delete your account at any time on the account page. Deleting it removes your sign-in and your name straight away, and NightIn in that browser goes back to being a guest. Signing out only signs you out; nothing is deleted.
Anonymous usage statistics
To see how NightIn is used and where to improve it, the extension saves a few statistics in the same Firebase database. They never contain your name or email. Each party's statistics are stored under the user ID of each person in it: an anonymous ID, or your account's ID while you're signed in. We look at them only in totals, never to follow one person. After you delete your account, its ID no longer points to anyone.
| Data | Why | How long |
|---|---|---|
| A random install ID made by the extension, when you first and last used NightIn, the extension version, your computer's time zone (for example "Europe/London"), and whether NightIn is signed in to an account (yes or no, never which one) | To count users, how many use an account, and to see roughly which countries they're in (the time zone gives the country, never a city or exact location) | Up to 2 years |
| For each party: when it started, whether the other person connected, when it ended and how, which sites it was on (for example YouTube or Netflix; for other websites, the website's name, such as example.com; never the video or the page address), whether the camera or mic was used, and how many chat messages were sent (never their text) | To count parties and see how long they last and which features are used | Up to 2 years |
When you remove NightIn, Chrome opens a short page on this website asking why. It saves the extension version and how many days it was installed, and, only if you send the form, the reason you chose and what you wrote. It isn't linked to you or your install ID, and is kept for up to 2 years.
We use only the time zone for location. We don't record your IP address for statistics, and we don't use GPS or ask for location permission.
What stays on your computer
- Your nickname. If you're signed in, it's also saved to your account (see above).
- Call settings: chosen camera and microphone, your partner's volume, and where the call window sits.
- Whether the chat sidebar is open.
Website access and camera & mic
NightIn runs on the pages you visit so that it can find the video player and keep it in sync. It doesn't read or send the content of those pages, your browsing history or your passwords. It only sends the video page's address to your partner, as described above.
Camera and microphone access is asked for only when you start a call. You can turn either off at any time, and both stop when the party ends.
Invite links and this website
An invite link looks like nightin.stormra.com/j/CODE#v=…. The video address after the # stays in your browser and is never sent to our server. The website has no cookies, no analytics and no ads. The account page (if you sign in) and the admin page (used only by the NightIn team) keep their sign-in in your browser's storage. Our host, Netlify, keeps standard server logs (such as IP address and the page requested) to run and protect the site.
What we don't do
- We don't sell, rent or share your data with advertisers or data brokers.
- We don't record calls or store chat messages.
- We don't record which videos or pages you watch, only which websites a party was on.
- We don't use your data for anything other than running NightIn.
Children
NightIn isn't directed at children under 13, and we don't knowingly collect personal information from them.
Changes
If this policy changes, we'll update the date at the top of this page. Significant changes will also be noted in the extension's release notes.
Contact
Questions or requests, including deleting your account if you can't use the account page: nightin-support@stormra.com.