# Privacy Policy — Spectra

Last updated: 19 August 2026

Spectra is a colour puzzle game published by Rokitskiy.DEV (dev.rokitskiy.spectra). This policy describes exactly what the app collects, why, and what you can do about it.

What the game stores on your device

Everything needed to play stays on the device and never leaves it unless you are signed in:

  • your settings (sound, ambient, haptics, reduced effects, tile symbols)
  • your progress — best score per mode, highest tier reached, number of rounds played, streak, unlocked and selected palettes
  • one round in progress, so closing the app does not lose it
  • today’s Daily result.

Uninstalling the app removes all of it.

What the game sends to a server

Account

On first launch the app creates an anonymous Firebase account. It has no email, no name and no password — it is an identifier that lets your progress follow you to a new device. You are never asked to sign in to play.

If you choose Sign in with Google in Settings, Google shares your name, email address and profile picture with the app, and that identity is attached to the account so your progress follows your Google account rather than one device. This is entirely optional: everything in the game works the same without it. Signing out returns you to a guest account; the progress stored on the device stays where it is.

Cloud save

If the anonymous account exists, the progress listed above is copied to Firebase Firestore under that identifier so it can be restored. It contains scores and counters only. Nothing in it identifies you.

Analytics

Firebase Analytics receives coarse gameplay events: a round started, a round ended with a score and a tier, a tier reached for the first time, a streak length. No event carries an identifier you chose, the contents of a board, or anything typed by you.

Crash reports

Firebase Crashlytics receives a report when the app crashes, and a non-fatal report when one of a few internal operations fails (a cloud save that did not go through, a saved round that could not be read). A report contains the stack trace, the device model, the OS version and the app version.

Remote configuration

The app fetches feature flags and tuning values from Firebase Remote Config. This is a download; nothing about you is sent with the request beyond what any HTTPS request carries.

Advertising

The game shows a full-screen ad after some finished rounds, served by Google AdMob. To do that, AdMob receives your device’s advertising identifier and technical information about the device, and may use them to select and measure ads. This is the one place where data leaves for a purpose other than running the game.

In the EEA and the UK you are asked, before any ad is requested, whether you consent to personalised advertising; the game requests nothing until you have answered. You can change that answer at any time from Settings → Ad privacy options. Declining does not restrict the game in any way — you simply see non-personalised ads instead.

What the game never collects

No phone number, contacts, photos, files, precise or coarse location, microphone or camera input, and no advertising identifier. Name and email address are received only if you sign in with Google, and only from Google. There are no third-party trackers and no advertising in the current version. If advertising is added later, this policy will be updated before that version ships, and the app will ask for consent where the law requires it.

Children

Spectra is not directed at children under 13 and does not knowingly collect data from them.

Legal basis and your rights (GDPR)

For users in the EEA and the UK, the legal basis is legitimate interest in operating and improving the game (Art. 6(1)(f) GDPR). You can:

  • stop analytics and crash reporting by uninstalling the app
  • withdraw or change your advertising consent at any time in Settings → Ad privacy options
  • sign out, which detaches your Google identity from this device
  • delete everything held about you by writing to the address below — the anonymous identifier is all that is needed to erase the record, and it is included automatically if you write from the app’s support link
  • request a copy of what is stored under that identifier.

Data retention

Cloud-saved progress is kept while the account exists. Analytics data is retained for the period configured in Firebase (currently 14 months). Crash reports are retained for 90 days.

Processors

Google Ireland Limited (Firebase Authentication, Firestore, Analytics, Crashlytics, Remote Config, and AdMob for advertising). Data is processed on Google’s infrastructure; see https://firebase.google.com/support/privacy and https://support.google.com/admob/answer/6128543 for their terms.

Contact

Rokitskiy.DEV — info@rokitskiy.dev

Changes

Any change to this policy will be published at this address with a new date at the top.