Effective 18 July 2026 · App package com.broad.thomas
Broadlive is a live-streaming social app where you can host or join audio rooms, video rooms, and multi-guest rooms; send comments, stickers and gifts; watch and post Moments short videos; check rankings, levels and VIP; and top up a wallet to redeem items in the store. This policy explains what data we collect to run those features, who we share it with, and the controls you have.
1. Who we are
The Broadlive app and website (broadlive.xyz) are operated by the Broadlive team ("we", "us"). For any privacy question, contact support@broadlive.xyz.
2. Information we collect
Account & profile
Email address, phone number, or Google account identifier — depending on which sign-in method you choose.
Display name, avatar photo, gender, birthday, country and short bio if you fill them in on your profile.
Password (stored only as a salted hash — never in plain text).
Live-room content
Audio & video streams while a room is live — routed through Agora RTC for real-time delivery. Streams are not recorded to our servers by default.
Chat comments and system events (join / leave, gifts, seat changes) — stored so late-joiners can see recent context and so we can enforce the community rules.
Moments videos you upload — stored on our CDN so other users can play them.
Wallet & store
Coin / diamond top-ups, gift sends, agency transfers, VIP purchases and Store redemptions.
Payment provider order IDs — actual card / bank credentials are never seen by Broadlive; they stay with the payment gateway.
Device & usage
Device model, OS version, app version, Android advertising ID, Firebase installation ID, coarse region derived from IP.
Crash reports and non-fatal error traces (Firebase Crashlytics) — used to find and fix bugs.
Feature usage counters (which rooms you visit, how long you stay) — used to power ranking, level, and "For You" ordering.
Permissions we may ask for
Permission
Why
Microphone
Speak in an audio / multi room, or record a Moment.
Camera
Broadcast video, join as a video cohost, or record a Moment.
Photos / Media
Pick an avatar or upload a Moment.
Notifications
Tell you about follows, gifts, room invites, and important account events.
Contacts (optional)
Only if you tap "Find friends" — we never upload contacts silently.
Each permission can be revoked any time in your device settings; the affected feature will simply be disabled.
3. How we use your data
To run the app: sign-in, room joining, comment delivery, gifts, wallet, ranking, level, VIP, Moments feed.
To keep the platform safe: detect ban evasion, mute rule-breakers, remove sexual / abusive content.
To improve the app: aggregate analytics, crash fixes, A/B experiments — never tied to your identity beyond your user ID.
To send you legitimate notifications about your account, gifts, rewards, or content moderation actions.
We do not sell personal data. We do not run ad networks or third-party targeted advertising inside the app.
Processing your top-up. We store only the order ID and status.
CDN provider
Serving avatars, gift SVGA, Moments video and other public media.
We share the minimum needed for each partner to do its job, under contract and only for the purposes above.
5. How long we keep it
Account data: kept while your account is active. After account deletion, we purge personal fields within 30 days; we retain the anonymous user-ID stub only where required for wallet ledger integrity.
Chat comments & system events: rolling window; oldest entries expire from the room cache automatically.
Moments: kept until you delete them, your account is deleted, or the item is removed for a rule violation.
Wallet ledger: kept for at least 5 years for financial-record and anti-fraud obligations.
Crash and analytics logs: up to 90 days.
6. Your rights & controls
See & edit your profile from the Profile screen inside the app.
Invisible mode hides your presence in room and follower lists — Settings → Privacy toggle.
Block list — blocked users cannot see your profile, follow you, or send you messages.
Delete your account — Settings → Delete Account, or email support@broadlive.xyz from the address on file. We confirm deletion within 30 days.
Data export — email us and we will provide a copy of your profile, gift and wallet history within 30 days.
7. Children
Broadlive is not intended for children under 18. If we learn that a user is under 18 we suspend the account, remove their content, and refund any pending wallet balance. If you believe a minor is using the app, contact support@broadlive.xyz and we will act within 48 hours.
8. Community safety
Sexual, harassing, hateful and violent content is banned. Our moderators can mute, kick, or ban users; repeat offenders lose their wallet balance. Screen-recording of live rooms is blocked at the OS level (FLAG_SECURE) to protect hosts from non-consensual capture.
9. Security
Traffic is encrypted with HTTPS / TLS 1.2+. Passwords are stored only as bcrypt hashes. Access to production databases is restricted to named team members with 2FA. Payment card data never enters our systems.
10. International transfers
Broadlive servers are hosted in Singapore and the United States. If you use the app outside those regions your data will be transferred there, protected by the same technical and organisational measures described above.
11. Changes
We will notify users of material changes to this policy through an in-app banner and by updating the "Effective" date at the top. Continued use of the app after a change means you accept the updated policy.
12. Contact
Privacy questions or requests: support@broadlive.xyz.
Postal: Broadlive Team, c/o Thomas Live Kit, Dhaka, Bangladesh.