Repcade Privacy Policy
Controller
PROJECT82 LLC is the designated controller for Repcade. Public customer address: 30 N Gould St, STE R, Sheridan, WY 82801, USA.
Data categories
Camera frames and face geometry are processed on the device as numeric game inputs. Repcade does not upload or record camera frames or face geometry and does not use them for biometric identification. Local ghosts store game-character positions, not face geometry. Only if you opt in, Repcade sends your best camera Endless score, exercise, repetitions/gates, day, app version and persistent random installation ID to Supabase. The public entry shows a generated alias, rank and score. The installation linkage persists despite that alias; the records are not unlinked anonymous data. The chosen name is not sent to the leaderboard. Submitted scores are deleted automatically about one month after their score date (a daily job removes rows more than 31 days old). You can request deletion of a submitted score at jin@project82.kr. Turning leaderboard participation off does not delete a score already submitted. On iOS, optional saved or shared clips contain the game screen and game audio. The app is designed to hide the camera preview while recording and does not offer microphone recording. Sharing occurs when you use the system share action. Local session history, XP, streaks, achievements and settings are stored on the device. The app stores only a versioned approved or denied age-eligibility status on the device; birth date, exact age and residence are not saved by this gate. Support requests include what you send and your reply address. On Android, voice cues and spoken repetition counts use the text-to-speech engine selected on your device, which runs as a separate service or app. To play speech, Repcade passes text selected from your session milestones and game outcomes, and the current repetition count when voice counting is enabled, together with speech language and playback settings, to that engine through Android. Android also makes the calling app’s identifier (UID) available to the engine. This is an Android app identifier, not an advertising ID or Repcade installation identifier. Repcade does not send microphone recordings or camera images to the speech engine. The Coach voice pack is on by default; Voice count is off by default. To stop both kinds of speech requests, set Voice pack to Off and turn Voice count off in Settings. The selected engine and voice depend on your device settings. Repcade does not require an offline voice. We have not established whether a selected engine sends these requests off the device or how long it retains them; no particular engine provider, processing country or retention period is represented here. Consult the selected engine’s privacy information for its practices.
Sources and sharing triggers
Inputs come from local camera detection, your game actions, your explicit leaderboard choice, store purchase events and information you send for support. Challenge links created with the current version contain only the exercise, mode, seed, result and game rule fields; they do not include a chosen name. The current app and the updated challenge web page do not show a name contained in a link. You can also share a result image showing your exercise, score, level and streak. A /d# link places the link details in the URL fragment, which the HTTP request to /d does not send. Links created by earlier versions may contain the chosen name and can remain in recipients' messages, share apps and browser history. Opening an older /d? link sends its query, including any name, to Vercel. Earlier app versions that have not been updated may still show a name contained in a link. Recipients may forward any link they receive.
Purposes and basis
Local processing operates the game and saves progress; the optional leaderboard ranks submitted results; store and RevenueCat processing verifies purchases; support processing answers requests. Optional submission is not consent to unrelated processing. The applicable basis for processing and overseas transfers depends on the user's location and feature used.
Service processing and training
Repcade does not offer accounts, login, chat or advertising. It does not generate AI conversations and does not use gameplay or other user data for model training at any age.
Support review and labeling
Support personnel may read the information you deliberately send to resolve a request. Repcade has no conversation-labeling or training-review workflow, and camera material is not sent for human review. Do not include unnecessary sensitive information in a support request.
Service providers
Opt-in scores use Supabase in a US East data center. On iOS and Android, RevenueCat receives an anonymous SDK purchase ID and entitlement information when the app starts after eligibility approval, and store transaction details during purchase or restore. The App Store or Google Play handles payment. Product and checkout availability depend on each store catalog. Vercel serves challenge links. From 2026-09-29 to 2026-10-09, Repcade's web pages, including the challenge page, used Vercel Web Analytics: each page view sent the full page address to Vercel, including the /d# part of a challenge link with any chosen name and game details. Vercel Web Analytics is no longer used. Face detection uses Google ML Kit on the device. Google says ML Kit may send device and app information, performance and configuration details, feature events, error codes, and per-installation identifiers not intended to uniquely identify you or your device for diagnostics and usage analytics. On Android it also lists input/output size and feature version. Camera images are not sent to Google. Google does not publish a processing country or retention period for these diagnostics.
Overseas processing
Supabase (US East; https://supabase.com/support): When you submit a leaderboard score, HTTPS sends the exercise, score, repetition count, date, app version and random installation ID for ranking. Submitted scores are deleted automatically about one month after their score date (a daily job removes rows more than 31 days old). Request deletion at jin@project82.kr. Do not submit a score to avoid this transfer.
RevenueCat (US and other processing locations may apply; https://www.revenuecat.com/contact): On iOS and Android, after age eligibility approval, app startup sends an anonymous SDK purchase ID and entitlement status; purchase or restore adds store transaction details. Startup processing occurs even without a purchase. Records follow RevenueCat’s published practices; no single fixed period for active records or backups is stated. Declining a purchase alone does not prevent startup processing; to avoid it, do not use Repcade.
Vercel (primary US facilities, possible processing in other countries; https://vercel.com/contact): Opening a challenge link sends an HTTPS request and access details. Current-version links contain no name. A /d? link created by an earlier version includes the chosen name and game details in the URL; a /d# link does not send its fragment in the HTTP request. From 2026-09-29 to 2026-10-09, Vercel Web Analytics sent page addresses to Vercel, including the /d# part with any name; it is no longer used. Vercel’s published information does not give a fixed period for these request records or the collected analytics events. Do not open a challenge link to avoid that request.
Google LLC / ML Kit (Google does not publish the processing countries; https://developers.google.com/ml-kit/terms): When you use Repcade game screens on iOS or Android, Google ML Kit may send device and app details, performance and usage events, and per-installation identifiers for diagnostics. Camera images are not sent. There is no in-app switch for this processing; to avoid it, do not use Repcade.
Retention and deletion
Local history, XP, streaks, achievements, settings and ghosts remain on the device and are affected by local clearing or removal of app data. Submitted scores are deleted automatically about one month after their score date (a daily job removes rows more than 31 days old). You can request deletion of a submitted score at jin@project82.kr. Turning leaderboard participation off does not delete a score already submitted. Purchase records held by RevenueCat and link-request records held by Vercel are kept under those providers' practices. Their published materials do not give one fixed period for these records. You can ask us to delete purchase records linked to you. Their published materials do not give a fixed period for static requests, security records or backups. Vercel Web Analytics events collected from 2026-09-29 to 2026-10-09 are kept under Vercel's practices; its published materials do not give a fixed period after which they are deleted. Clearing local data alone does not erase remote scores, purchases, existing shared links or recipients' copies or cancel a store subscription.
Data minimization and safeguards
Camera frames and face geometry are processed on the device and not sent to our servers. Optional score uploads are limited to the stated fields. Device access controls and careful sharing help protect local records. Storage and transport safeguards depend on each service's published terms and actual configuration; risk-free storage is not promised.
Your choices and requests
Contact jin@project82.kr to request access, correction, deletion, restriction or objection, or a copy of eligible records. State whether the request concerns local records, a submitted score, a purchase, a shared link or support correspondence. Anonymous purchase or leaderboard records may need information that safely links them to you; the current Settings screen does not display those identifiers. We will explain the needed matching method, applicable rights and limits, and the outcome for each request. Do not send identity documents, camera footage or face data in your initial request. Privacy contact: jin@project82.kr.
Young users
Repcade's minimum age is 13, or 14 for residents of Korea. A local screen uses a self-reported birth date and residence to assess eligibility; the inputs themselves are not saved, and only a versioned approved or denied status is stored on the device. Underage denial persists, and a failed storage read cannot overwrite a known denial. Eligible users under 18 outside Korea and under 19 in Korea self-confirm guardian permission. The app does not independently verify identity, age or that permission. The free core has no advertising or child-targeted billing prompts.
Game automation
Numeric movement detection controls gameplay and submitted scores determine leaderboard ordering. These functions are game mechanics, not biometric identity verification or a health assessment. Repcade does not create AI conversations or model-training profiles from these inputs.
Privacy contact
Privacy contact: jin@project82.kr. Privacy officer: Jinwon Jeon (전진원); role: Founder. Public customer address: 30 N Gould St, STE R, Sheridan, WY 82801, USA.
Changes
If data uses, service providers or retention criteria change, we update this notice and provide any notice required for the change.