VIPERVEX PASSPORT Privacy Notice
Effective October 4, 2026. Operated by ViperVex ("we"). Contact: info@vipervex.com.
What we store
- For each viewer on each channel: the anonymous opaque id Twitch gives the extension, a random passport number, progression (XP, level, streak, stamps, quests, achievements, titles, collection items, journey destinations, history) and cosmetic choices.
- Your numeric Twitch user id only while you share your identity with the extension, together with the time a sign-in last confirmed that share. Leaderboards list only shares confirmed within the last 30 days.
- For broadcasters and their editors: settings, and an audit record of settings changes, season changes, waypoints and erasures that includes the staff member's Twitch id.
- Aggregate daily counts per channel (for example, how many Passports were opened). These contain no viewer identifiers.
- For channels that bought the full version: the channel's numeric Twitch id, its Twitch username and an optional note such as an order number, kept while the licence is active, because that record is what turns the full version on. Erasing a channel's Passport data does not remove it.
What we do not store
About viewers: names, display names, avatars, email addresses, chat messages or payment information. Names and pictures on leaderboards are fetched from Twitch by each viewer's own browser. Network addresses are used only momentarily, to limit request rates, and are not stored.
In your browser
One local storage entry remembers the channel's theme so the Passport paints in the right colours, and one per channel remembers that you saw the leaderboard notice.
Retention
Daily counters are removed after 40 days, weekly counters after 26 weeks, monthly counters after 25 months, check-in and live-minute activity records after 40 days, aggregate metrics and staff audit records after 400 days. Your Passport itself stays until you delete it or the channel owner erases the channel.
Deleting
Viewers can delete their Passport on a channel from its Passport page (type DELETE). The channel owner can erase every Passport and setting on the channel. Your past XP stays in the community journey's anonymous total; when you delete, this season's XP is taken back out of it.
Revoking identity sharing
If you revoke identity sharing in your Twitch settings, Twitch gives the extension a new anonymous id for you, so a new Passport starts. Your old Passport stops being listed within 30 days at most, and as soon as you share again.
Purchases
The full version is bought from ViperVex outside Twitch, through a store such as Etsy. That store processes the payment; we never see or store card details. From an order we use the buyer's Twitch username to activate the right channel, and the store's own records of the order are kept as tax and accounting rules require. None of it is used for advertising or sold.
Where it is stored
The VIPERVEX PASSPORT service runs on Cloudflare Workers, with its database hosted by Neon (PostgreSQL) in the United States. Every request is verified with Twitch's signed extension token, travels over HTTPS, and can only reach the channel it belongs to. Operational logs record a request's route, status and an internal request id; tokens and secrets are removed before anything is logged, and request URLs are not logged.
How it is used
Only to run VIPERVEX PASSPORT on the channel where it was earned. We do not sell data, do not use it for advertising and do not share it with third parties beyond the hosting providers named above. One channel's Passports are never combined with another's.
Twitch
VIPERVEX PASSPORT runs inside Twitch. Twitch's own processing of your data is covered by the Twitch Privacy Notice.
Children
VIPERVEX PASSPORT is for Twitch users and follows Twitch's age requirements.
Changes and contact
If this notice changes, the new version will be published at this address with a new effective date. For questions or data requests, contact ViperVex at info@vipervex.com.