MSMy Scores

Privacy Policy

Last updated: June 18, 2026

1. General Information

Welcome to My Scores. Your privacy is extremely important to us. This Privacy Policy describes how we collect, use, store, and protect your personal data when you use our mobile application and backend synchronization services.

2. Types of Data Collected

To allow the use of the application, we collect and process the following categories of personal data:

  • Registration and Profile Data (Third-party OAuth): To use the application, it is mandatory to sign in via Google Sign-In or Apple Sign-In. We collect your email address, full name, and unique identifiers provided by the respective provider.
  • Game Data Synchronized in the Cloud: All information entered regarding games, sessions, scores, edit history, names of players created, and any images of their avatars (stored in Base64 format) are saved and synchronized exclusively on our central cloud database. The application does not support local data storage.
  • Technical and Security Data: To protect our systems from abuse, cyberattacks, or overloads (Rate Limiting), our servers temporarily detect your device's IP address during API requests in memory.
  • Historical Migration Data: For users migrating from previous versions of the app, we collect and import game data previously stored on Firebase via the Firebase Admin SDK.

3. Purposes and Legal Basis of Processing

Your personal data is processed exclusively for the following purposes:

  • Providing application features: Allow you to save, sync across multiple devices, and view your game sessions history and statistics. The legal basis of processing is the execution of a contract (Art. 6, par. 1, lett. b GDPR).
  • Security and stability of the service: Prevent fraudulent activities and abuse of our APIs. The legal basis is the legitimate interest of the Data Controller to keep their infrastructure secure (Art. 6, par. 1, lett. f GDPR).
  • Data migration: Enable recovery of historical data from previous versions. The legal basis is the execution of a contract (Art. 6, par. 1, lett. b GDPR).

4. Data Retention

Retention periods for your personal data follow these rules:

  • Cloud Retention and Automatic Deletion: All game data is saved exclusively in the cloud. This data is kept for a maximum of 2 years from your last login. If no login activity is recorded for more than 2 years, the account and all related data will be permanently and automatically deleted due to inactivity.
  • Manual Account Deletion: You can request immediate and permanent deletion of your account and all data at any time via the \"Delete Account\" feature in the app settings. Remember to perform this action before uninstalling the app if you want immediate removal of your data from our servers.
  • Security Data (IP): The client's IP address processed for rate limiting is only kept temporarily in memory for security purposes and is not permanently stored in the database.

5. Processing Method and Storage Location

Cloud-synchronized data is stored and processed on secure VPS servers located within the European Union. No transfer of personal data is made outside the European Economic Area (EEA), except for authentication processes delegated to Google LLC and Apple Inc., which operate in compliance with current privacy and data transfer regulations.

6. User Rights

In accordance with the General Data Protection Regulation (GDPR), you have the right to access your personal data, request correction, update, deletion (right to be forgotten), restriction of processing, or portability, as well as to object to the processing for legitimate reasons. You can exercise these rights by sending an email to the Data Controller's address indicated below.

7. Contacts and Data Controller

The Data Controller is the My Scores team. For any questions or to exercise your privacy rights, you can contact us at our dedicated email address: [email protected].