Efekti — Privacy Policy
Effective: 26 June 2026
1. Who we are
Efekti is a desktop app and Twitch Extension that lets a streamer's viewers trigger
live visual effects on the streamer's webcam. Efekti is operated by Arkkis
(Joni Nieminen). Privacy contact: efekticamera@outlook.com.
2. Data we collect
Streamers (broadcasters) who connect Efekti:
- Twitch user id (
broadcaster_id) and login name.
- Twitch OAuth access and refresh tokens — stored encrypted at rest. Used to
read your channel-point redemptions and Bit cheers and relay them to your desktop
app, and to look up the display name of a viewer who triggers an effect so we can
name them in the chat announcement (scopes
channel:manage:redemptions,
bits:read). The raw tokens never leave our server.
- OAuth pairing records (temporary, to link the desktop app to your channel).
- Your effect catalog (which effects, at which Bits price) and channel-point reward
mappings.
- Bits transaction IDs — stored so one purchase can't fire an effect twice. We store
no payment-card or financial data; Bits are processed entirely by Twitch.
- A recent history of effects triggered through the panel (the viewer's Twitch id, the
effect, the number of Bits used, and the time) — used to show a Top fans leaderboard
and your activity log. Deletable at any time via the data-deletion request below.
- Your community goal settings and its running Bits progress counter (an aggregate
number — no per-viewer personal data). Deletable via the data-deletion request.
Viewers who use the panel:
- A Twitch opaque user id — used in memory only for anti-spam cooldowns and
not stored.
- We do not request viewer identity sharing.
- If you use Bits to trigger an effect, your Twitch user id, the effect, the number of
Bits used, and the time are recorded so the channel can show a Top fans leaderboard
and the streamer can see their activity log. This is keyed to the channel; the
broadcaster can delete it at any time, and you may also request deletion via the
contact below.
- A display name may be sent with an effect so the streamer can see who triggered it in
their private console; that transient name is not persisted (leaderboard names
are looked up from your public Twitch profile using the stored user id).
3. How we use it
Solely to operate the service: authenticate your channel, deliver effects, and prevent
abuse and duplicate charges. We do not sell or rent personal data and do not use it for
advertising. Data is shared only with Twitch (the platform) as needed to run the service.
4. Storage & retention
Data is stored in a database on our own server. Tokens are encrypted at rest and all
traffic is over HTTPS/WSS. We retain streamer data while your channel is connected;
transaction IDs are kept for duplicate-charge protection. We remove your data on request,
or when you disconnect/revoke Efekti's access.
5. Your rights
You can export or delete all data we hold for your channel at any time
from the Efekti desktop app (it calls our data export and delete endpoints). Revoking
Efekti's access in your Twitch Connections settings also triggers deletion. To exercise
your GDPR/CCPA rights or ask any question, email
efekticamera@outlook.com.
6. Security
OAuth tokens encrypted at rest, HTTPS/WSS only, and least-privilege OAuth scopes
(only what's needed to read redemptions and cheers).
7. Children
Efekti is not directed to children under 13 (or the minimum age required in your
region) and follows Twitch's Terms of Service.
8. Changes
We will update this page and its effective date whenever this policy changes.