Privacy Policy
Last Updated: {{currentDate}}
Information We Collect
Account Information
When you create an account, we collect:
- Username: Your chosen display name
- Email Address: For account verification and communication
- Password: Securely hashed and stored via AWS Cognito
- Phone Number: Optional, for additional security
- Discord Username: Optional, for community features
Automatically Collected Information
We automatically collect:
- Usage Data: How you interact with our games and services
- Device Information: Browser type, operating system, IP address
- Game Statistics: Scores, achievements, and gameplay data
- Log Data: Access times, pages viewed, and technical diagnostics
How We Use Your Information
We use your information to:
- Provide Services: Account management, game access, and features
- Authentication: Secure login and account verification
- Communication: Account updates, security alerts, and optional newsletters
- Improvement: Analyze usage to enhance our games and services
- Security: Detect fraud, abuse, and unauthorized access
- Legal Compliance: Meet regulatory requirements and enforce terms
Data Storage and Security
AWS Infrastructure
Your data is stored securely using Amazon Web Services (AWS):
- AWS Cognito: Handles user authentication and password security
- AWS DynamoDB: Stores account and game data with encryption
- AWS Lambda: Processes requests with secure, isolated functions
- AWS CloudFront: Delivers content securely via global CDN
Security Measures
We implement industry-standard security practices:
- Encryption in transit and at rest
- Secure authentication tokens with expiration
- Regular security audits and monitoring
- Access controls and principle of least privilege
Cookies and Tracking
Essential Cookies
Required for basic functionality:
- auth_token: Maintains your login session securely
- cookie_consent: Remembers your cookie preferences
Optional Cookies
Used with your consent for enhanced experience:
- Analytics: Understanding usage patterns and performance
- Preferences: Remembering your game settings and preferences
Data Sharing
We do not sell your personal information. We may share data only:
- With Your Consent: When you explicitly authorize sharing
- Service Providers: AWS and other trusted partners under strict agreements
- Legal Requirements: When required by law or to protect rights and safety
- Business Transfers: In case of merger, acquisition, or asset sale
Your Rights
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your account and data
- Portability: Export your data in a standard format
- Opt-out: Unsubscribe from marketing communications
- Cookie Control: Manage cookie preferences via our banner
Data Retention
We retain your data:
- Account Data: Until you delete your account
- Game Data: For the lifetime of your account
- Log Data: Up to 90 days for security and debugging
- Marketing Data: Until you opt-out or as required by law
Children's Privacy
Our services are not intended for children under 13. We do not knowingly collect personal information from children under 13. If you believe we have collected such information, please contact us immediately.
International Users
Your data may be transferred to and processed in the United States and other countries where AWS operates. We ensure appropriate safeguards are in place for international transfers.
Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or prominent notice on our website. Your continued use constitutes acceptance of the updated policy.
Contact Us
For questions about this Privacy Policy or your data:
- Email: privacy@bendit-hytale.com
- Subject Line: "Privacy Policy Inquiry"
- Response Time: We aim to respond within 30 days