Privacy Policy
Braced Vessel Atelier
This policy explains how this application handles information and how to contact us about privacy.
Information we process
Braced Vessel Atelier stores your optional restorer name, language, sound and animation preferences, reminder choice, campaign progress, current round, saved porcelain patterns, daily history and cached daily challenge locally on your device. The name is not sent to the server. The app obtains public daily challenge content over HTTPS. When a server daily round ends, it sends the challenge date and identifier, victory or defeat and number of moves together with a random installation identifier and installation secret. The secret is generated on the device and stored in the iOS Keychain with device-only accessibility. The server stores the installation identifier and a bcrypt hash of the secret, not the raw secret, and associates daily results with that installation. Railway hosting also receives network requests and may process IP addresses, request timing, paths and technical connection information in infrastructure logs. The application does not include advertising, third-party analytics, accounts, location tracking or a contact form.
How we use information
Local data enables the restoration game, saved rounds, album, preferences and optional local reminders. The server provides the same dated daily challenge to players, records installation-scoped daily outcomes and supports deletion of those results. Installation credentials authorize result writes and erasure without a user account. Technical request information is processed to deliver the service, detect abuse and diagnose availability. A cached or embedded local challenge supports play when the server is unavailable; embedded challenge outcomes remain local.
Service providers and sharing
Daily content, installation identifiers, secret hashes and results are processed in the application's PostgreSQL database hosted on Railway. Railway and its infrastructure providers process requests and operational information to host the service. The installation secret travels over HTTPS for registration and authorization but is not stored in raw form by the backend. The backend logs failure event identifiers without recording request bodies, authorization headers or secrets. There are no advertising, analytics, social sign-in, payment or email delivery SDKs. The app does not sell your information or publish personal results. The supplied privacy contact email is only a contact address, not an in-app messaging service.
Data retention
Local progress and preferences remain on the device until reset or removed with the app, subject to iOS backup and Keychain behavior. Server installation records and daily results are retained until an authorized deletion request; there is no automatic age-based deletion job. Public daily challenge configurations are retained in the server database. Pending result uploads remain locally until sent, local progress is reset, or they become older than the server’s seven-day submission window; expired pending results are removed on the next synchronization. Infrastructure log and provider backup retention depend on Railway's service practices; this application does not set or guarantee a specific duration. Local game files may be included in device backups, while the installation Keychain secret is device-only and is not designed for transfer to another device.
Deleting your information
Settings offers Reset local progress to remove the current round, album, daily history, cache and pending uploads from this device; it keeps your name and preferences. Delete server results separately authenticates with this installation's secret and deletes its installation record and all associated daily results from the active database. Local plates remain available. The app confirms deletion only after the server responds successfully, retains the secret if the request fails, and creates fresh installation credentials for future result submissions after successful deletion. Erasure from the active database does not promise immediate removal from infrastructure logs or provider backups, which follow provider retention and expiry. Resetting or deleting live data does not remove copies in existing device backups. If the installation secret is lost, there is no account-based recovery or cross-device restoration of server access.
Permissions and your choices
Notifications are optional. The app requests iOS notification permission only when you enable the daily reminder in Settings and schedules a local reminder; it does not send a push token to the backend. Disable the reminder in the app or withdraw permission in iOS Settings at any time. Gameplay works without notification permission. The app does not request access to photos, camera, microphone, contacts or location. Viewing saved patterns stays inside the app.
Your privacy rights
You can edit your local name and preferences, reset local progress and delete your installation's server results in Settings. Depending on your jurisdiction you may also have rights to access, correction, deletion, restriction, objection or portability. Contact andrey.veduta.gear@gmail.com for privacy questions or requests. Do not send your installation secret by email. Because no account or email address is attached to gameplay data, identifying a server record after the device credential is lost may not be possible. You may raise concerns with the relevant data protection authority where applicable.
Security
The deployed API uses HTTPS. Each installation has a cryptographically random secret stored in the iOS Keychain; the server verifies a bcrypt hash before writing or deleting results. Database queries use parameters and installation-scoped authorization, and request bodies and authentication concurrency are bounded. Database credentials remain server-side. No credential is shared across installations. Local game data is stored in the app sandbox. These measures reduce risk but cannot guarantee absolute security; keep your device and its backups protected.
Children’s privacy
The game is designed for an adult audience and is not directed to children. It does not require a name, account or age information to play and does not include advertising or social features. If you believe a child has supplied information that should be removed, contact andrey.veduta.gear@gmail.com; device controls and the in-app deletion options remain available.
Changes to this policy
This policy may be updated when the application's processing or hosting changes. The current version is published at the public Privacy Policy link in Settings, with its effective date. Material changes will be reflected in the updated policy and, where appropriate, the application release information. Review this page for the latest practices. Privacy questions may be sent to andrey.veduta.gear@gmail.com.