Privacy notice

Who we are

Game Foundry AI (“we”, “us”) operates the Game Foundry Portal at play.gamefoundry.ai and the Slices feed at slices.gamefoundry.ai. We decide why and how the personal data described here is used, which makes us the controller of that data. For anything about privacy, deletion, takedowns or legal notices, write to privacy@gamefoundry.ai.

Age and children

Anyone can play without an account and without sharing data. Before we offer anything that involves personal data, we show a neutral age screen. The minimum age depends on your region: 13 in the United States and the United Kingdom, between 13 and 16 in countries of the European Economic Area depending on the member state, and 16 where we cannot tell your region. Your region is taken from the country Cloudflare reports for your connection; we do not use device location.

What is available only after the age screen shows you meet your region’s minimum age:

A visitor below the minimum age, or anyone who chooses to keep playing without sharing, is in play-only mode. In play-only mode the Portal and Slices do not send gameplay events, feedback, ideas or sign-in requests, and nothing identifying you is sent. Game progress that a game saves for you stays in your own browser (see Cookies and storage). The age screen is a self-declaration; we do not verify age, and the Portal and Slices are not directed to children below the minimum age. If you believe we hold data about a child below the minimum age, tell us at privacy@gamefoundry.ai and we will delete it.

What we collect and why

Apart from serving the games, nothing in this list is collected unless you pass the age screen and take the action described.

PurposeWhat is collectedWhen
Serving the gamesYour IP address and browser details reach our hosting provider, Cloudflare, so it can deliver pages and game files. We do not store your raw IP address in our database.Every visit
Share play data (Portal)Gameplay choices, session length, progress, score, outcome, approximate frame rate, sanitized runtime errors, a coarse device type (browser, operating system and form factor, never your exact user agent), a random device ID stored in this browser, and, if you are signed in, a link to your player. No audio, screen recording, stack traces or URLs.Only after you press “Share & play”
Share play signal (Slices)Game impressions, holds, plays, game events, frame rate and sanitized runtime errors, tied to the exact release. Slices keeps a random browser ID on your device and stores a salted one-way hash of it combined with the session, not the ID itself. No account is used.Only after you choose “Share play signal”
FeedbackYour star rating or verdict, tags and optional note (up to 2,000 characters), the game and exact release, a salted daily hash of your connection IP used as a rate limit, and a coarse device and known-automation token. You can add your player name to a note as a separate choice for each submission.When you press send
Game ideasThe title (up to 120 characters) and description (up to 4,000 characters) you write, the page you sent it from, a coarse device token and a salted daily IP hash. No account or name is needed. Please do not put personal information in an idea.When you press send
AccountsAn optional public player name; for email sign-in, a keyed one-way digest of your email address (we do not keep your address in our database; it passes through Cloudflare’s email service to deliver the code); for a passkey, its public key and counter; and a session record (a hash of your sign-in token). We send no marketing email.When you sign in
LeaderboardsYour player name and score can appear publicly on a game’s leaderboard when your session is eligible. Scores come from your browser and are not independently verified.Signed-in, shared sessions
Invited playtestsIf you submit a playtest task from an invitation, the server stores one-way hashes of the invitation, run, inviter, recipient and session identifiers, your ratings and note, and campaign and configuration versions. It does not store the invitation token.When you submit
MultiplayerThe multiplayer relay, which runs on Cloudflare Workers, sees your connection IP address transiently to apply per-address connection limits. A room you list is public: its name, and the player names in it, can be seen by anyone who browses rooms. An unlisted room is reachable only through its private link.While you are in a match
Abuse preventionCloudflare Turnstile runs when you open the sign-in dialog, before you create a passkey player or request an email code. It runs in your browser and Cloudflare receives your IP address and browser signals to tell people from bots.At sign-in

We use this information to run the games, find bugs, understand which games players enjoy, decide what to build next, keep the service secure and prevent abuse, and show leaderboards. We do not use it for advertising or for automated decisions that significantly affect you. Reports sent to the team in aggregate (counts by game and release) contain no names, comments or identifiers.

Our legal bases

Where the EU or UK GDPR applies, we rely on:

How long we keep it

This is our retention schedule. The automatic deletion of anonymous rows after 12 months is built but is not switched on yet, so older rows can still exist until it is. A shorter period applies if you delete your data earlier, and you can do that yourself on the Your data page.

DataHow long
Anonymous telemetry and session rows (Portal sessions, Slices signals)12 months
Feedback, free-text notes and game ideas12 months
Accounts (player name, email digest, passkeys)Until you delete the account. Sign-in sessions end after 30 days, renewed while you stay active, and never later than 90 days after they start.
Leaderboard entriesUntil the account or the game release is removed
Salted IP hashes used as rate limits7 days
Email sign-in codesExpire after 10 minutes
Invited playtest recordsInvitation records are removed after 7 days and one-use ticket records after 30 days. Submitted playtest evidence is internal team evidence; ask us to delete yours at any time.
Data stored in your own browserUntil you clear it (see Cookies and storage)

Who receives it

The leaderboard shows player names and scores publicly. We disclose data to authorities only when the law requires it.

International transfers

Our service provider operates a global network. Your data may be processed in the United States and in other places where Cloudflare operates, which can be outside your country.

Selling and sharing

We do not sell personal information, and we do not share it for cross-context behavioural advertising. The pages and games we serve contain no advertising scripts and no third-party analytics scripts. The only third-party script the Portal loads is Cloudflare Turnstile, when you open the sign-in dialog. If this ever changes, we will update this notice before it does.

Your rights

You can delete or export your data yourself at /your-data.html. You can also write to privacy@gamefoundry.ai. We aim to answer within one month and will tell you if we need longer.

If you are in the UK or the European Economic Area

We will, on request: tell you whether we hold data about you and give you a copy; correct it; delete it; restrict or stop using it; provide it in a portable format; and stop processing based on legitimate interests or consent. You may complain to your local data protection authority (in the UK, the Information Commissioner’s Office). We would like the chance to fix the problem first, so please contact us.

If you are in California

We will, on request: tell you what personal information we collected about you and for what purposes, give you a copy, correct it and delete it. We do not sell or share personal information, and we will not treat you worse for making a request. Because we mainly hold random identifiers, we may ask you to send the device ID shown at /your-data.html so we can find your data.

Anonymous data

Data tied only to a random device ID cannot be traced to you unless you give us that ID. The page at /your-data.html shows it so you can use it.

Cookies and device storage

The Portal sets one cookie only if you sign in. Everything else lives in your browser’s local or session storage. The full list, with purpose, lifetime and whether we ask for consent, is on Cookies and storage.

Security

We store no passwords. We hold your email only as a keyed digest, sign-in sessions as a hash of the token in an HttpOnly, Secure cookie, and rate-limit sign-in and email requests. No system is perfectly secure. If a breach affects your data, we will notify you and the regulators where the law requires.

Changes and contact

If we change how we use personal data, we will update this page and its date before the change takes effect, and ask again where consent is needed. Questions, requests and complaints: privacy@gamefoundry.ai. To report a name, room or other content, use /report.html.