What's That Game?

Privacy Policy

Last updated: 4 September 2026 · Applies to the What's That Game mobile app (iOS and Android) and its backend API.

corporate_fare

1. Who we are

What's That Game ("we", "us", "our") is an independent project run by its founding team. We are not yet incorporated as a legal entity — the project is currently operated privately by its founders. If and when we incorporate, this policy will be updated with the company details.

For any privacy question or request, contact us at hello@whatsthatgame.info.

The project founders act as joint data controllers for the purposes of the UK GDPR / EU GDPR.

summarize

2. Summary

What's That Game lets you create, store, search and discover party and board games. To do that we hold an account for you, the games you contribute (including photos), and your activity — favourites, comments, alias suggestions, and achievements.

We rely on a handful of third-party providers to run the service: Google (sign-in), OpenAI (semantic search, AI text suggestions, content moderation), Amplitude (usage analytics), Railway (hosting and database), Cloudflare (photo storage), Resend (account emails), and Expo (push notifications).

We do not sell your personal data.

database

3. Data we collect

3.1 Account data (you give us this when you register)

DataRequired?Why
First nameYesDisplay, personalisation
Last nameYesDisplay, personalisation
UsernameYesPublic identity on the platform
Email addressYesLogin, account recovery, service notices
PasswordEmail/password sign-up onlyAuthentication — stored only as a bcrypt hash, never in plain text
Date of birthYesAge-appropriate content (age ratings, adult-content gating)
Country of originYesPersonalisation / regional context (2-letter ISO code)
Avatar imageOptionalProfile picture (see §3.4)

We also automatically record an account role, an active/inactive flag, and account created/last updated timestamps.

3.2 Google sign-in data (if you choose "Sign in with Google")

If you sign in with Google, we receive from Google — under the openid email profile scopes — your email address (and whether it is verified), Google account ID (sub), first name and last name (given_name, family_name), and profile picture URL.

We store these to create and identify your account. We do not receive your Google password.

3.3 Content you create

  • Games you contribute: name, description, objective, setup, rules, type, player counts, duration, difficulty, age rating, equipment, setting, up to 10 photos, and public/private visibility.
  • Comments you post on games, and comments you like.
  • Alias suggestions you submit for a game's alternative names, and their review status.
  • Games you favourite or upvote.
  • Achievements you earn.
  • Reports you submit about other games (reason text and which game).
  • Feedback you submit to us (type and message).

Anything you mark public is visible to other users. Anything you mark private is visible only to you.

3.4 Photos and images

When you upload a photo (for a game or your avatar), it is first placed in a private quarantine storage area and screened by our AI moderation provider (see §3.5) before it becomes publicly visible. Approved images are copied to public storage and served via a public URL; rejected images are discarded. We store the image file itself, its storage location, and, for game photos, its display position.

3.5 Content moderation

Text you submit (e.g. comments, game descriptions) and images you upload are automatically checked with an AI moderation model before being made public, to detect content such as hate speech or graphic/sexual imagery. This is an automated screening step, not a decision that produces legal effects on you — see §4.

3.6 Analytics data (Amplitude)

Our app uses Amplitude to understand how the app is used (e.g. which screens are viewed, key in-app actions). Amplitude may process a device identifier, app/usage events, and technical data such as device type and OS version.

Amplitude derives your approximate location (country/region/city level) from your IP address at the time of your request; we do not collect or store your IP address or precise/GPS location, and Amplitude does not retain the raw IP after deriving location. This coarse location data is used solely for internal product analytics (e.g. understanding usage by region) and is not used for tracking across other companies' apps or websites, not shared with data brokers, and not used for advertising purposes.

See Amplitude's privacy policy: amplitude.com/privacy.

3.7 Push notification data

If you enable notifications, we store a device push token and platform (iOS/Android) so we can deliver notifications (e.g. achievement unlocks, announcements) via Expo's push service. We keep a record of notifications sent to you and their delivery status.

3.8 QR / short-link data

Some marketing/social links route through short codes we host (e.g. qr.whatsthatgame.co.uk/<code>). We record an aggregate scan count per link — we do not tie individual scans to your account.

3.9 Technical data

When the app calls our backend, our hosting provider processes standard request metadata (IP address, timestamps, user-agent) for security and reliability. Authentication uses a JWT token stored in a secure, HTTP-only cookie and/or sent as a bearer token from the app.

gavel

4. How we use your data (purposes & legal bases)

PurposeLegal basis (GDPR)
Create and run your account, authenticate youPerformance of a contract
Store and display games, photos, comments, aliases, favouritesPerformance of a contract
Semantic search and AI text suggestions (see §5)Performance of a contract / legitimate interest
Automated content moderation of text and images (see §3.5)Legitimate interest / legal obligation
Age-appropriate content gatingLegitimate interest / legal obligation
Push notificationsConsent (notification permission)
Transactional emails (e.g. password reset)Performance of a contract
Product analytics and improvement (Amplitude)Consent, where required, otherwise legitimate interest
Security, fraud/abuse prevention, debuggingLegitimate interest
Service and security communicationsPerformance of a contract / legitimate interest
shield_with_heart

We do not use your data for automated decisions that produce legal effects on you. Automated content moderation (§3.5) only screens content before publication; it does not affect your account status, and rejected content can be appealed by contacting us.

psychology

5. AI features and how your content is processed

When you create or edit a game, the game's text is sent to OpenAI to:

  • Generate a semantic-search embedding (text-embedding-3-small), stored so your game can be found by meaning-based search.
  • Optionally improve a field's wording when you use the AI optimiser (gpt-4.1-nano) or the "brain dump" free-text-to-fields feature.
  • Screen text and uploaded images for policy violations using an AI moderation model, before the content is made public.

Only the content you submit (game text, comments, images) is sent — not your account credentials. OpenAI processes this as our service provider. See OpenAI's privacy policy: openai.com/policies/privacy-policy. We recommend not putting personal or sensitive information into game text, comments, or photos.

share

6. Third parties we share data with

We share data only with providers that help us run the service:

ProviderRoleWhat they receive
GoogleSign-in (OAuth)Authentication exchange; we receive your basic profile
OpenAIEmbeddings, AI text suggestions, content moderationGame/comment text and images you submit
AmplitudeProduct analyticsUsage events and device/technical data
RailwayHosting + managed PostgreSQL databaseAll data needed to run the service, stored at rest
Cloudflare (R2)Photo and avatar storageUploaded image files, in quarantine and public storage
ResendTransactional emailYour email address, for account emails such as password resets
ExpoPush notification deliveryYour device push token and notification content
block

We do not sell your personal data or share it with advertisers.

public

7. International transfers

Our backend and database are hosted on Railway, and our processors (Google, OpenAI, Amplitude, Cloudflare, Resend, Expo) may process data in Europe or the United States. Where data leaves the UK/EEA, transfers are protected by appropriate safeguards such as Standard Contractual Clauses.

history

8. How long we keep data

  • Active accounts: account data and content are kept while your account is active.
  • Account deletion — Stage 1 (Day 0): when you request deletion, your account is deactivated immediately and login is blocked. Your data is not yet deleted.
  • Recovery window (Days 1–30): you can reactivate your account and restore full access within 30 days of requesting deletion.
  • Account deletion — Stage 2 (Day 30): after the 30-day window expires, we permanently erase your personal data (name, email, date of birth, country, avatar, authentication credentials). Private games and their associated content (including photos) are deleted. Public games you contributed are retained anonymously (attributed to "Deleted user") so the platform catalogue remains useful. Comments you posted are retained anonymously. User reports, favourites, alias suggestions, achievements, feedback, and push tokens are deleted.
  • Rejected/quarantined images that never pass moderation are discarded and not made public.
  • Analytics data is retained according to Amplitude's retention settings.
  • Backups and logs are kept for a limited period for security and recovery, then deleted.
delete_forever

Request account deletion in-app any time. Your data is fully erased 30 days after the request, unless you reactivate first.

how_to_reg

9. Your rights and choices

Depending on your location, you have the right to access, correct, delete, restrict, or object to processing of your personal data, and to data portability.

Delete your account

Request deletion from within the app. Deactivated immediately, permanently erased after 30 days (§8). You can cancel and reactivate within those 30 days, or email us for manual erasure.

Access / correction

Update your profile in the app, or contact us.

Push notifications

Disable at any time via in-app settings or OS-level controls; this removes your stored device token.

Withdraw analytics consent

Where we rely on consent, withdraw it any time via in-app settings / OS-level controls.

To exercise any right, email hello@whatsthatgame.info. You also have the right to complain to your data protection authority (in the UK, the ICO: ico.org.uk).

child_care

10. Children

What's That Game is not directed at children under 13. You must be at least 13 to create an account. We do not knowingly collect data from children under that age. If you believe a child has given us data, contact us and we will delete it. Some games are gated as adult content and require an appropriate age.

encrypted

11. Security

Passwords are stored only as bcrypt hashes. Authentication uses signed JWT tokens over HTTPS in HTTP-only cookies. Uploaded images pass through a private quarantine area and automated moderation before becoming public. Access to production data is restricted. No system is perfectly secure, but we take reasonable technical and organisational measures to protect your data.

update

12. Changes to this policy

We may update this policy. We will post the new version with an updated "Last updated" date and, for material changes, notify you in the app.

alternate_email

13. Contact

What's That Game (founding team)

mail hello@whatsthatgame.info