Rune Ricochet is a single-player fantasy brick-blaster roguelite. We aim to collect as little
data as possible. This policy explains what the game and its third-party components collect, why,
who processes it, and the choices you have.
We do not ask you to create an account, and we do not collect
your name, email address, postal address, phone number, precise location, contacts, photos, or
microphone or camera input. The game has no user-to-user communication features and no
user-generated content sharing. We operate no server of our own and hold no player database.
2. What we collect and why
The data described below is collected by third-party SDKs integrated into the game. Each entry
names the SDK responsible, so every collection is traceable to a specific feature.
2.1 Advertising (Google AdMob, with Google UMP consent)
The game shows ads in two places: rewarded ads, which you choose to watch at
natural pause points in exchange for an in-game reward, and an interstitial ad shown
between runs at the end of a run.
Advertising identifier and related device identifiers. Google AdMob uses your
device advertising ID and related technical device information to serve ads, measure ad
performance, and prevent fraud and abuse.
Personalized vs. non-personalized ads. Where required, the Google User
Messaging Platform (UMP) presents a consent request. If you consent, ads may be
personalized. If you decline — or where personalized ads are not permitted —
you receive non-personalized ads, which use limited data for frequency
capping, ad reporting, and fraud prevention only.
Why: to fund the game.
2.2 Purchases (Unity IAP and the platform app store)
The game offers one optional in-app purchase: a one-time premium
“remove ads” product (remove_ads). There is no pay-to-win content and no
subscription.
Purchase and entitlement records. Unity IAP, working with the platform store
(Google Play or the Apple App Store), records whether the premium product has been purchased,
so the entitlement can be applied and restored on your device.
Payment handling. All payment processing is handled by the platform app store.
The game never sees or stores your card number, billing address, or any other payment
credential.
Why: to deliver and restore the one-time purchase you chose to make.
2.3 Analytics and crash diagnostics (Firebase Analytics and Firebase Crashlytics)
Rune Ricochet includes Google's Firebase Analytics and Firebase Crashlytics SDKs. Both are
off by default and are controlled by the Analytics & Diagnostics
toggle under Settings › Privacy & Data. With one exception, described under
Before you opt in below, nothing in this section is collected unless you turn that toggle
on.
What is collected while the toggle is on:
Gameplay events. The game reports a small, fixed set of events: run start,
run end, room clear, boss result, draft pick, rewarded-ad opt-in, and premium purchase. Each
carries only gameplay values — the run's length and mode, the room number, the encounter or
boss identifier, the outcome, the type of reward picked and where it was picked, and which
rewarded-ad placement was offered. No free text, no name, no email address, and no identifier
that we assign to you.
Firebase Analytics' automatic events and identifiers. Alongside the events
above, Firebase Analytics records app lifecycle events (such as first open, session start, and
screen views), an app-instance ID it assigns to your installation, the device advertising ID
on Android, an approximate location (no more precise than city level) that Google derives
from a masked IP address, and — if you buy the premium product — an in-app purchase event
carrying the product ID and price. It also records basic technical information: device model,
operating system version, and app version.
Crash reports. Firebase Crashlytics records crash and error reports: the
stack trace, the state of the app at the time of the crash, device model, operating system
version, app version, and a Crashlytics installation identifier and Firebase installation ID
used to group reports. The game does not attach a user ID, custom keys, or custom log
messages to crash reports.
Why: to understand how the game is played and where players stop, and to
find and fix crashes.
Before you opt in. The Firebase SDK initialises when the app starts. It ships
with both of its collection switches off, so no analytics events and no crash reports are sent
unless you turn the toggle on. The SDK's installations component may register an install-scoped
Firebase installation ID with Google when the app starts, before you opt in. That identifier is
generated by the SDK, does not identify you or your device, is not an advertising identifier, and
is replaced by a new one if you reinstall the app.
Turning it off. Turning the toggle off stops analytics collection immediately.
Crash reporting stops from the next time you launch the app. Data already collected is retained as
described in section 5; you can ask us to have it deleted (section 8).
3. Data stored on your device
The game saves your progress, unlocks, settings, and premium entitlement in a local file in the
private storage of the app on your device. This save data stays on the device, is not transmitted to
us, and is removed when you uninstall the app. You can also clear it in-game with
Settings › Progress › Reset Progress.
4. Who processes this data
Data
Processor
Purpose
Advertising ID, related device identifiers, ad-consent state
Google (AdMob, User Messaging Platform)
Serve and measure rewarded and interstitial ads; record your consent choice
Purchase and entitlement records
Unity Technologies (Unity IAP) and the platform app store (Google, Apple)
We do not sell or share your personal information for cross-context behavioral
advertising in the sense used by the California Consumer Privacy Act, and we do not receive money
in exchange for personal information.
5. Retention
Advertising data is retained by Google under its own retention windows and our
configured AdMob settings. We do not hold a copy.
Analytics data, if you opt in: event-level data (individual gameplay events)
is retained by Google for 2 months; user-level data is retained for
14 months, and that period resets whenever you're active in the game. These
windows do not affect aggregated, non-identifying reports. We do not hold a separate copy.
Crash reports are retained by Google for 90 days, after which Google begins
removing them.
Firebase installation IDs are retained by Google until we ask Google to delete
them; a reinstall generates a new one.
Purchase and entitlement records persist for as long as needed to honor and
restore your purchase.
On-device save data persists until you reset progress or uninstall the app.
6. Your choices
Ad consent. You can decline personalized ads at the consent prompt, and you
can revisit that choice at any time via
Settings › Privacy & Data › Manage Ad Consent.
Analytics and diagnostics. The
Settings › Privacy & Data › Analytics & Diagnostics toggle
controls Firebase Analytics and Firebase Crashlytics together, is off by default. Analytics
and crash reporting run only while it is on, and you can turn it off at any time; crash
reporting stops from the next launch.
App Tracking Transparency (iOS). On iOS, the system ATT prompt controls whether
the app may access the device advertising identifier for tracking. If you decline, ads are
served without that identifier.
Device-level advertising controls. You can reset or delete your advertising ID
in your device settings on both Android and iOS.
Remove ads. The one-time premium purchase removes the run-end interstitial and
the rewarded-ad prompts.
7. Children
Rune Ricochet is a general-audience fantasy game. It is not directed to children,
it is not enrolled in the Google Play Designed for Families program or the Apple Made for Kids
category, and we do not knowingly collect personal information from children. If you believe a child
has provided us with personal information, contact us at the address below and we will act on it.
8. Data deletion and privacy requests
The game has no account system, so there is no profile for us to delete. Data tied to your device
or your app-store identity is handled as follows:
On-device save data: delete it yourself at any time via
Settings › Progress › Reset Progress, or by uninstalling the app.
Advertising data: reset or delete your advertising ID in your device settings,
and withdraw ad consent via Manage Ad Consent.
Analytics and crash data: turn Analytics & Diagnostics off to stop
further collection. To have data already collected under your app-instance ID or installation
ID deleted, email us at the address below and we will route the request to Google.
Purchase records: these are held by Google Play or the Apple App Store under
your store account, and are managed through that store.
To make a deletion request or exercise any other applicable privacy right — including rights under
the GDPR or the CCPA/CPRA — email us at mikef907@gmail.com. We
will respond and, where the data is held by one of the processors listed above, route the request to
them.
9. Changes to this policy
We may update this policy as the game and its integrations change. Material changes will be
published at this URL with an updated effective date.