This privacy policy applies to Heartforge (henceforth "The App") developed by Kieksi Digital and distributed via the Apple App Store, Google Play Store, and the web.
Privacy Policy
Last updated: 9 March 2026
1. Introduction
2. Data We Collect
2.1 Account Information
When you create an account, we collect your email address and generate a unique user identifier. Your email is used for authentication, account recovery, and essential service communications (such as subscription receipts). We do not send marketing emails.
2.2 User-Generated Content
Content you create within the App — such as characters, encounters, adventures, and notes — is stored locally on your device and, if you are signed in, synced to our cloud servers to enable access across your devices.
2.3 Purchase and Subscription Data
We store records of your subscription status and purchase history to manage your access to premium features. We do not store or have access to your payment details (credit card numbers, billing addresses, etc.) — payment processing is handled entirely by third-party providers.
2.4 Device and Diagnostic Data
We may receive anonymous crash reports and basic device information (device type, operating system version) through platform-provided crash reporting services. This data is used solely to improve app stability and does not identify you personally.
3. How We Use Your Data
We use the data we collect for the following purposes:
- Providing the service — authenticating your account, syncing your content across devices, and managing your subscription
- Improving the App — diagnosing crashes and fixing bugs using anonymous diagnostic data
- Content delivery — downloading game content, compendium updates, and application updates
We do not use your data for advertising, profiling, or any purpose unrelated to providing and improving the App.
4. Internet Connectivity
Heartforge uses internet connectivity for:
- Account authentication and session management
- Syncing user-generated content to the cloud
- Downloading game content and compendium updates
- Processing purchases and managing subscriptions
Content delivery operations (game data, compendium updates) are anonymous and do not transmit any personal information or usage analytics.
5. Crash Reporting
On iOS and macOS, users who have opted in to share crash data may send anonymous crash logs to Apple, made available to the developer via App Store Connect. You can control this under Settings > Privacy & Security > Analytics & Improvements.
On Android, similar anonymous crash and ANR (Application Not Responding) reports may be shared via Google Play Console, subject to your device's diagnostics sharing settings.
These reports include diagnostic information such as device type, OS version, time of crash, and stack traces. They do not contain personal or identifying information.
6. Third-Party Services
Heartforge relies on the following third-party services:
- Supabase — authentication, cloud data storage, and content sync. Subject to the Supabase Privacy Policy.
- RevenueCat — subscription and purchase management. Subject to the RevenueCat Privacy Policy.
- Apple App Store / Google Play Store — app distribution and payment processing on native platforms, each subject to their respective privacy policies.
These services process only the minimum data necessary to provide their respective functions. We do not share your personal data with any third parties for advertising or marketing purposes.
7. No Analytics or Tracking
The App does not use any third-party analytics services, advertising frameworks, or tracking technologies. We do not collect usage analytics, behavioral data, or location information.
8. Data Storage and Security
Your data is stored on secure, industry-standard cloud infrastructure. We use encryption in transit (TLS) for all communications between the App and our servers. Access to user data is restricted to essential service operations only.
On the web, the App uses browser local storage and cookies strictly for session management and authentication. No tracking cookies are used.
9. Data Retention and Deletion
We retain your account data and user-generated content for as long as your account is active. If you wish to delete your account and all associated data, you may contact us at the address below. Upon receiving a deletion request, we will permanently remove your account information, user-generated content, and subscription records from our systems within 30 days, except where retention is required by law or for legitimate business purposes (such as resolving disputes).
Anonymous diagnostic data (crash reports) cannot be attributed to individual users and is retained indefinitely for quality improvement purposes.
10. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Export your data in a portable format
To exercise any of these rights, please contact us at the address below.
11. Children's Privacy
The App is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us so we can take appropriate action.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify users of significant changes through the App. Your continued use of the App after changes become effective constitutes acceptance of the updated policy.
13. Contact Information
If you have any questions about this privacy policy or the App's data practices, please contact us:
Heartforge Support
Email: kieksi@kieksi.fi