1. Overview
This Privacy Policy explains how Sonarchy ("we", "us", or "our") collects, uses, stores, and protects information about you when you use the Game. We are committed to handling your information responsibly and transparently.
By using the Game, you consent to the practices described in this Policy. This Policy is incorporated into and forms part of the Terms of Service.
2. Information we collect
2.1 Information you provide
When you create an account or use the Game, you may provide:
- Email address (for account creation and authentication)
- Password (only when signing in with email and password; stored as a salted hash by our authentication provider, never in plain text)
- Username or display name chosen by you
- Any optional profile information you choose to add
2.2 Information collected automatically
When you use the Game, we may automatically collect:
- Device type, operating system, and browser information
- IP address and general location (country/region level)
- Game session data, including rooms joined, songs selected, and votes cast
- Error logs and crash reports to help us diagnose and fix issues
- Usage patterns and feature engagement to help us improve the Game
2.3 Information from third parties
When you use the Game's music search and playback features, your searches are processed by the YouTube Data API. YouTube and Google may collect data in accordance with their own privacy policies. We receive limited metadata about search results (song titles, video IDs) but do not receive your personal data directly from YouTube.
If you choose to sign in to Sonarchy using your Google account, Google shares a minimal set of profile information with us based on the standard OpenID Connect scopes requested at sign-in:
- openid — a stable identifier so we can recognise you across sessions
- email — your email address, used as your account identifier
- profile — your name, profile picture URL, and locale
We do not request access to your Google contacts, Drive, calendar, or any other Google service. You can review and revoke Sonarchy's access to your Google account at any time via your Google Account security settings (Security → Third-party apps with account access).
3. How we use your information
We use the information we collect to:
- Create and manage your account
- Operate multiplayer game sessions and sync game state across devices
- Authenticate your identity and maintain session security
- Improve game performance, fix bugs, and develop new features
- Communicate with you about your account or important service updates
- Detect and prevent fraud, cheating, or abuse
We do not sell your personal information to third parties. We do not use your information for targeted advertising.
4. Data storage and security
Your account data and game session information are stored securely using Supabase, a cloud database platform. Data is stored on servers that may be located outside your country of residence, including within the European Economic Area or other regions.
We implement reasonable technical and organizational measures to protect your information from unauthorized access, alteration, or disclosure. However, no method of transmission over the internet is 100% secure. You use the Game at your own risk and are responsible for keeping your account credentials confidential.
Game session data (e.g., song selections, votes, scores) may be retained for a limited period to support leaderboards and game history features, after which it may be anonymized or deleted.
5. Data sharing
We do not sell, trade, or rent your personal information. We may share information only in the following limited circumstances:
- With service providers (such as Supabase, Vercel, and Resend for transactional email) who process data on our behalf and are contractually bound to protect it
- With YouTube and Google as necessary to process music search queries via the YouTube Data API
- With Google as the authentication provider when you choose to sign in to Sonarchy using your Google account
- If required by law, court order, or governmental authority
- To protect the rights, safety, or property of Sonarchy, its users, or the public
- In connection with a business transfer (e.g., merger or acquisition), subject to the successor honoring this Policy
6. Multiplayer visibility
Sonarchy is a social, multiplayer game. Please be aware that:
- Your chosen username is visible to other players in any game session you join
- Your song selections and votes are visible to other players in the same session during gameplay
- Your scores and rankings may be displayed on in-game leaderboards
Do not use your real name, email address, or other sensitive information as your display username.
7. Children's privacy
The Game is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us and we will take steps to remove that information and restrict their access.
Users between 13 and 18 should use the Game only with parental permission. Parents are encouraged to review this Privacy Policy with their children.
8. Your rights and choices
Depending on your location, you may have rights regarding your personal data, including:
- The right to access the personal information we hold about you
- The right to correct inaccurate information
- The right to request deletion of your account and associated data
- The right to object to or restrict certain processing of your data
- The right to data portability (where applicable under your local law, including under the GDPR for users in the European Economic Area)
To exercise any of these rights, contact us at hello@sonarchy.com. We will respond to verified requests within a reasonable timeframe. Please note that we may need to retain certain information for legal or operational purposes even after a deletion request.
If you signed in using Google, you can additionally revoke Sonarchy's access to your Google account at any time via your Google Account security settings (Security → Third-party apps with account access). Revoking access via Google will sign you out of Sonarchy on future sessions but will not by itself delete the account data we hold — use the deletion right above for that.
9. Cookies and tracking
The Game and our web infrastructure may use cookies and similar technologies to maintain your session, remember preferences, and collect usage analytics. By using the Game, you consent to this use.
You may be able to configure your browser or device to refuse certain cookies, but this may affect the functionality of the Game.
10. Third-party links and services
The Game relies on and may link to third-party services including YouTube, Google, Supabase, Vercel, and Resend. These services have their own privacy policies and we encourage you to review them. We are not responsible for the privacy practices of any third party.
11. Changes to this policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. We will post the updated Policy with a new effective date. Your continued use of the Game after changes are posted constitutes acceptance of the revised Policy.
For significant changes, we will make reasonable efforts to notify users directly (e.g., via email or in-app notification).
12. Contact us
If you have questions, concerns, or requests related to this Privacy Policy, please contact us at hello@sonarchy.com. We take privacy inquiries seriously and will respond promptly.