Privacy Policy
Last updated: February 12, 2026
1. Introduction
Welcome to boardgames.zone ("we", "us", "our"). We are committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect information when you use our browser-based multiplayer board games platform.
By using boardgames.zone, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use our service.
2. Data We Collect
We collect the following categories of data depending on how you interact with our platform:
Automatically Collected
- IP Address: Collected when you connect to our servers, used for security, rate limiting, and abuse prevention.
- Analytics Data: Page views, session duration, game interactions, and browser/device information collected via analytics tools.
- Game History: Records of games played, including moves, results, timestamps, and game type. Games played without an account are stored anonymously.
Provided by You (Registered Users)
- Email Address: Required for account creation and authentication.
- Display Name: A public username you choose, shown to other players and on leaderboards.
- Profile Information: Optional avatar and other profile settings.
3. How We Use Your Data
- Gameplay: To operate multiplayer games, match players, validate moves, and maintain game state.
- Leaderboards & Ratings: To calculate and display player ratings, rankings, and game statistics.
- Analytics: To understand how our platform is used, improve the user experience, and identify popular features.
- Error Tracking: To detect, diagnose, and fix bugs and performance issues.
- Security: To detect abuse, prevent cheating, and protect the integrity of our platform.
- Communication: To send essential account-related notifications (e.g., password resets). We do not send marketing emails.
4. Third-Party Services
We use the following third-party services that may process your data:
- Supabase: Provides our database and authentication infrastructure. Your account data (email, profile, game history) is stored on Supabase servers. Supabase is SOC 2 Type II compliant. Supabase Privacy Policy
- Sentry: Used for error tracking and performance monitoring. May receive error reports containing technical data (browser info, stack traces, IP address). Sentry Privacy Policy
- Vercel: Hosts our frontend application. Vercel may process request logs including IP addresses. Vercel Privacy Policy
- Railway: Hosts our WebSocket server for real-time multiplayer game sessions. Railway may process IP addresses and connection metadata. Railway Privacy Policy
5. Data Retention
- Game History: Game records (moves, results, timestamps) are kept indefinitely to support leaderboards, replay features, and game analysis. If you delete your account, your game records are anonymized (your user ID is removed).
- Account Data: Your profile, email, ratings, and friendship data are retained until you request account deletion.
- Analytics Data: Aggregated analytics data is retained indefinitely. Individual session data may be automatically purged after 90 days.
- Error Logs: Sentry error reports are retained for 90 days.
6. Cookies
We use the following types of cookies:
- Authentication Cookies: Essential cookies used to maintain your login session. These are strictly necessary for the service to function when you are signed in.
- Preference Cookies: Store your game settings such as color schemes, sound preferences, and language selection.
- Analytics Cookies: Help us understand how visitors interact with our platform. These can be disabled in your browser settings.
You can play games on boardgames.zone without an account and without accepting non-essential cookies. Core gameplay does not require login.
7. Your Rights
Under the GDPR and other applicable data protection laws, you have the following rights regarding your personal data:
- Right of Access: You can request a copy of the personal data we hold about you.
- Right to Rectification: You can update your display name and profile information at any time through your account settings.
- Right to Erasure: You can delete your account through the Settings page. This will remove your profile, ratings, and friendships, and anonymize your game history records.
- Right to Data Portability: You can request an export of your personal data in a machine-readable format.
- Right to Restriction: You can request that we limit how we process your personal data.
- Right to Object: You can object to the processing of your personal data for specific purposes.
To exercise any of these rights, please contact us at [email protected]. We will respond to your request within 30 days.
8. Children's Privacy
boardgames.zone is not directed at children under 13. We do not knowingly collect personal data from children under 13. If you believe a child under 13 has provided us with personal data, please contact us and we will promptly delete it.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data, including encrypted connections (HTTPS/WSS), secure authentication via Supabase, and access controls on our infrastructure. However, no method of transmission over the Internet is 100% secure, and we cannot guarantee absolute security.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify registered users of significant changes via email. The "Last updated" date at the top of this page indicates when this policy was last revised. Your continued use of the service after changes constitutes acceptance of the updated policy.
11. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at:
Email: [email protected]