← All policies

Privacy Policy

Effective: July 11, 2026 · Last updated: July 11, 2026

Short version: TUG is a game. You don't need an account. On your device we keep a random ID and your game progress. We use PostHog to understand how the game is used. If you're in the EEA or UK, we ask permission before analytics run. When paid Pulls go live, Stripe handles your payment and email — we never see your full card number. We don't sell your data. To access or delete what we hold, use the in-app data controls or email privacy@tug.today.

1. Who we are

TUG is operated by the operator of tug.today, a sole proprietor in Arizona, USA. Privacy contact: privacy@tug.today.

2. Anonymous-first

You can use TUG without an account or your name. On first open we generate a random ID stored on your device; it remembers your side, streak, and (if you buy) your purchases. It isn't tied to your real identity unless you purchase (email + card via Stripe). Under EU/UK law this random ID and your IP are still personal data, so we treat them accordingly.

3. What we collect, and why

  • On your device (localStorage): a random ID, chosen side per rivalry, day/streak markers, cached game state, and analytics keys. Stays until you clear it.
  • Gameplay & Pull data: your random ID, which rivalry and side, and how many Pulls you've made — summary totals, not a log of every tap. Stored in Supabase (USA). Basis (EEA/UK): legitimate interest in operating the game.
  • Technical & security data: Cloudflare processes your IP and basic request/device data to deliver the game, balance load, and defend against bots. IP also derives a coarse city/country location for analytics. Basis: legitimate interest in security and delivery.
  • Analytics (PostHog, USA): page views, referrer/UTM, coarse geo, side picked, return visits, and in-app events — keyed to your random ID. Session replay is currently turned off. Basis (EEA/UK): your consent; elsewhere, legitimate interest in improving the product.
  • Purchase data (when paid Pulls go live — not active yet): Pulls are simulated and no real payments run today. When live, Stripe collects your email and card directly under its own terms; we never receive or store your full card number. We store a purchase summary (random ID, pack, amount, Pulls granted, time) to deliver Pulls, provide support, and meet tax/accounting duties. Basis: contract performance; legal obligation for financial records.
  • Rewarded ads (planned — not active yet): A third-party ad provider may later set its own cookies or identifiers. We'll update this policy and our consent tools before any advertising trackers run.

4. What we do NOT do

We don't sell your personal information and don't share it for cross-context behavioral advertising. We don't ask for your name or build ad profiles. We don't knowingly collect data from children under 13.

5. Processors / sub-processors

ProviderRoleDataLocation
CloudflareHosting, CDN, real-time engine, bot protectionIP, request/device data, live game stateGlobal CDN / US
PostHogProduct analyticsRandom ID, in-app events, coarse geoUnited States
SupabaseDatabase (Pull summaries, purchases)Random ID, rivalry/side/Pull totals, purchase summariesUS East
Stripe (when live)Payment processingEmail, card, payment metadataUS / global

We may add or change providers and will keep this list current.

6. International transfers

We and most providers are in the US. If you use TUG from the EEA/UK or elsewhere, your data is transferred to the United States. Where required we rely on appropriate safeguards (EU Standard Contractual Clauses; UK IDTA/Addendum).

7. Retention

On-device storage: until you clear site data. Analytics events: kept for a limited period, then deleted or anonymized. Pull summaries: while the rivalry is active plus a reasonable period. Purchase records: as long as needed for support and tax, then deleted or anonymized.

8. Your rights & choices

Depending on where you live, you may have rights to access, correct, delete, or port your data, to restrict or object to processing, and to withdraw consent anytime (no effect on prior processing). California: you may know, delete, and correct, and opt out of "sale"/"sharing" — and we don't sell or share for cross-context behavioral advertising. We honor Global Privacy Control (GPC) and won't discriminate for exercising rights. Because TUG is anonymous, we may ask for your random ID to find your records. To request: use the in-app data controls or email privacy@tug.today.

9. Children

TUG is for people 13 and older and is not directed to children under 13. We don't knowingly collect their data; if a child under 13 gave us data, email privacy@tug.today and we'll delete it.

10. Cookies, local storage & consent

TUG uses no traditional advertising cookies today. We use localStorage to run the game and PostHog for analytics. In the EEA/UK we ask consent before loading analytics; change your choice anytime via "Cookie settings" in the footer. See our Cookie & Tracking Notice.

11. Security

We use reputable providers, restrict database access to server-side keys, and lock down our stores. No method is 100% secure, but we take reasonable measures.

12. Changes

We may update this policy as TUG evolves (paid Pulls, ads). We'll change the "last updated" date and give more prominent notice for material changes.

13. Contact

TUGprivacy@tug.today.

Privacy Policy · TUG is an independent fan game. No prizes. No payouts. No cash value.