GRIDRUN Privacy Policy

Last updated: 6 October 2026

This policy explains what information the mobile game GRIDRUN (the "App") collects, why, who receives it, and the choices you have.

1. Who we are

The App is published by Rinadia ("we", "us"), the data controller for the information described here.

Contact: rizwan.kabir0000@gmail.com

2. The short version

3. Information we collect

CategoryExamplesSource
Device and other identifiersAndroid advertising ID, Firebase app instance / installation ID, a random anonymous ID created by RevenueCatAutomatically, via SDKs
App interactionsGame events such as starting or finishing a Run, Stage results, Perks picked, ads offered and watched, screens viewed, session lengthAutomatically, via Firebase Analytics and AdMob
Crash logs and diagnosticsCrash stack traces, device model, OS version, app version, memory state, ad-loading diagnosticsAutomatically, via Firebase Crashlytics, Firebase and AdMob
Purchase historyWhich in-app products you bought, when, transaction IDs and price. We never receive your card or payment details; Google Play handles paymentGoogle Play Billing via RevenueCat
Approximate locationA general region inferred from your IP address by the ad SDK. The App does not request location permissionGoogle Mobile Ads SDK
Game data stored on your deviceSave file, settings, high scores, streaks, cosmeticsStays on your device; not sent to us

We do not collect contacts, photos, files, microphone audio, precise location, or any information that directly identifies you by name.

The Daily Run share card is an image created on your device. It contains the date, score and game icons only. It is shared only if you choose to share it, using your phone's share sheet.

4. How we use information

PurposeLegal basis (GDPR / UK GDPR)
Run the game, restore purchases, deliver items you boughtPerformance of a contract
Show ads (personalised only where you consented) and measure them; prevent ad fraudConsent (personalised ads); legitimate interests (non-personalised ads, fraud prevention)
Understand how the game is played so we can fix difficulty, balance and bugs; run A/B tests of game settingsLegitimate interests (improving the game); consent where required by local law
Fix crashes and performance problemsLegitimate interests
Comply with legal obligations (tax records for purchases)Legal obligation

We do not sell your personal information for money. We do not use your data to make decisions that have legal or similarly significant effects on you.

5. Partners (SDKs) and their policies

PartnerWhat it doesPrivacy information
Google AdMob (Google Mobile Ads SDK)Rewarded and interstitial adshttps://policies.google.com/privacy · https://policies.google.com/technologies/partner-sites · https://support.google.com/admob/answer/6128543
Google User Messaging Platform (UMP)Consent form for ads (EEA/UK/CH and other regions where required)https://developers.google.com/admob/android/privacy
Google Firebase (Analytics, Crashlytics, Remote Config)Usage analytics, crash reporting, remote game settings and A/B testshttps://firebase.google.com/support/privacy · https://policies.google.com/privacy
RevenueCatManages in-app purchases and entitlementshttps://www.revenuecat.com/privacy
Google Play (Billing)Payment processinghttps://policies.google.com/privacy

Google may act as an independent controller for data used to serve and measure ads. Firebase, Crashlytics and RevenueCat act as our service providers (processors).

6. Advertising ID

The App reads your Android advertising ID to show and measure ads and to prevent fraud. You can reset it or delete it (Android 12+) at Settings → Privacy → Ads on your device. If deleted, ads are still shown but they are not tied to that ID.

7. Consent and your ad choices

8. Children

GRIDRUN is designed for adults (18+). It is not directed at children, and we do not knowingly collect personal information from anyone under 18 (or the age of digital consent in your country). If you believe a child has used the App and data was collected, contact us and we will delete it.

9. Retention

DataHow long
Firebase Analytics event data14 months (set in the Firebase console), then deleted automatically
Crashlytics crash reportsUp to 90 days
RevenueCat purchase recordsFor as long as needed to provide your purchases and meet tax/accounting law, then deleted on request where the law allows
Ad dataAs described in Google's policies
Save data on your deviceUntil you uninstall the App or clear its data

10. Your rights

Depending on where you live, you may have the right to:

How to make a request: email rizwan.kabir0000@gmail.com with the subject "GRIDRUN privacy request". We reply within 30 days (45 days for California requests, extendable as the law allows).

Deleting your data: on request we delete your Firebase Analytics and Crashlytics data linked to your app instance ID and your RevenueCat customer record. You can also reset or delete your advertising ID and uninstall the App to remove local data. Google Play keeps its own purchase records under Google's policy.

11. International transfers

Our partners may process data in the United States and other countries. Where required, transfers are covered by the European Commission's Standard Contractual Clauses or other lawful mechanisms used by those partners.

12. Security

All data sent by the App travels over encrypted connections (HTTPS/TLS). No method of transfer or storage is 100% secure, but we choose partners with strong security practices.

13. Changes to this policy

If this policy changes, we will update the date at the top and, for significant changes, show a notice in the App. The current version is always available at https://rizwankabir22.github.io/gridrun-privacy/.

14. Contact

Rinadia

Email: rizwan.kabir0000@gmail.com