Pinge Privacy Policy
Controller
GiochiStorici and Pinge are operated by Forte Bruno. Contact: support@giochistorici.it.
Website: https://www.giochistorici.it.
Scope
This policy explains how Pinge handles personal data in the mobile app and in the supporting Supabase services. Pinge is an unofficial app for playing, saving, and synchronizing matches inspired by the Gioco del Ponte of Pisa.
Creating an account in Pinge creates one GiochiStorici account. The same account is intended to work across separate GiochiStorici applications as they become available. Pinge is currently the only application using this shared account.
Personal Data We Process
Pinge processes the data needed to run account and game features: account email handled by Supabase Auth; name and surname collected during registration or profile completion; essential identity data supplied by Google or Apple sign-in; display name used for Online matches; completed match history; online invite rows, invite codes, player names, temporary live game state, and match synchronization metadata; unfinished saved games synchronized with Supabase and cached on the device; pending offline match writes stored on the device; and minimal technical session metadata after login.
Pinge's backend does not retain date of birth. If an older app version sends a birth-date field, the server removes it rather than storing it. Pinge also does not collect precise GPS location, contacts, photos, payment data, advertising identifiers, or external analytics identifiers for the current feature set. Invite QR codes are generated locally in the app.
Purposes And Legal Bases
GiochiStorici uses personal data to create and manage the shared account. Pinge uses the account data for login, session security, profile display, Online player names, match history, saved games, invite creation and acceptance, live Online synchronization, data export, correction and deletion, security troubleshooting, and compliance with app-store and account-deletion requirements.
For users in the European Economic Area, the United Kingdom, and similar jurisdictions, the main legal bases are contract or pre-contractual steps, legitimate interests, consent for any future optional tracking, and legal obligation where applicable. Registration asks the user to acknowledge this Privacy Policy and accept the Terms and Conditions. That acknowledgement is not used as the legal basis for necessary account and game processing.
Third-Party Service Providers
Pinge relies on Supabase for authentication, database, realtime synchronization, and Edge Functions; Google sign-in if selected; Apple sign-in if selected; and https://www.giochistorici.it for public legal and support pages.
Pinge does not currently use Firebase Analytics, Google AdMob, Unity Ads, external QR-code services, or third-party IP lookup services in the app.
Cookies And Similar Technologies
The native mobile app does not set first-party Pinge cookies. Supabase Auth sessions and local app data are stored on the device through React Native local storage, not through browser cookies.
Cookies or similar browser storage may be used outside the native app when the user opens Google or Apple sign-in pages or public legal pages. If Pinge adds analytics, advertising, web trackers, or non-essential cookies in the future, this policy and any applicable cookie or consent notice will be updated before those features are enabled.
Data Retention
GiochiStorici follows a storage-limitation rule: personal data is kept only for the period needed for an account or application feature, account safety, legal obligations, or a user request. Shared account and profile data, email, sign-in metadata, Pinge display name, and completed Pinge match history are kept until the user deletes the GiochiStorici account or requests deletion.
Unfinished saved games are stored in Supabase and cached on the device for offline restore until the account is deleted, the user removes the saved game, or a verified deletion request is completed. Pending offline match writes are stored only on the device until they are synchronized or removed through account deletion, app storage clearing, or uninstall.
Open online invites expire quickly. A scheduled cleanup runs every 15 minutes and removes eligible closed or expired invite rows after the 12-hour retention window. If one user deletes their account, online records visible to the other player are anonymized by replacing the deleted user's display name with DeletedUser.
Children
Pinge is a general-audience historical card and game app and is not directed specifically to children. Users who are below the age required by their local law to manage an online account should use Pinge only with a parent or guardian. If you believe that a child provided personal data without appropriate permission, contact us so the account and data can be reviewed or deleted.
Sale Or Sharing Of Personal Data
Pinge does not sell personal data and does not share personal data for cross-context behavioral advertising. Pinge does not currently use advertising SDKs or personalized ad networks.
User Rights
Depending on location, privacy rights may include access, correction, export or portability, deletion, restriction, objection, withdrawal of consent, opt-out of sale or sharing where applicable, and complaint to a data-protection authority. The Profile page includes controls to export data and delete the account. Users can edit account email through the Account screen and display name from the Profile page. Name and surname correction can be requested through support@giochistorici.it.
Users can also initiate account deletion outside the app at https://www.giochistorici.it/pisa/pinge/delete-account/. The request must be sent from the email address associated with the GiochiStorici account so ownership can be verified.
Deleting the account from Pinge deletes the entire GiochiStorici account, not only the Pinge profile. The deletion removes the account and associated data from Pinge and every other GiochiStorici application, including data that becomes associated with the shared account in the future, except information that must be retained for a legal or security obligation. The confirmation shown before deletion must state this global scope clearly.
For in-app deletion, Pinge first globally terminates the user's Supabase sessions and refresh tokens, then deletes the Supabase Auth user and all linked GiochiStorici account data. Database access also requires a live Supabase session row, so a previously issued access token cannot continue reading or changing account data after those sessions are terminated. Supabase does not store Google or Apple provider access tokens in the Pinge project; deleting the Auth user removes the linked provider identity from GiochiStorici.
Users in Italy may contact or lodge a complaint with the Garante per la protezione dei dati personali. Users in the EEA, UK, or other jurisdictions may contact their local supervisory authority.
International Transfers
Pinge's current production Supabase project is hosted in eu-north-1. Supabase and other providers may process data in countries different from the user's country. Where personal data is transferred internationally, Pinge relies on appropriate safeguards such as adequacy decisions, Data Processing Agreements, and Standard Contractual Clauses where applicable.
Automated Decision-Making
Pinge does not use automated decision-making or profiling that produces legal or similarly significant effects for users.
Security
Pinge uses Supabase Auth and row-level security to protect account data. Every account-data read or change requires both the latest session recorded by Pinge and a live matching Supabase session. Older, signed-out, or deleted sessions are denied database access. No security system is perfect, so users should protect their email account, device, and sign-in provider credentials.
Changes
Pinge may update this policy when app features, service providers, legal requirements, or data practices change. The updated policy will be published before or at the same time as the related app change.
Contact
Questions about this policy or data rights can be sent to support@giochistorici.it.