Privacy Policy
Godpack is operated by Abelian, Inc., a Delaware corporation (“Godpack,” “we,” “us”). This policy describes the information handled by Godpack’s website, web application, mobile application, and supporting services.
Account and profile information
When you choose Sign in with Apple, Apple authenticates you and provides an identifier for your account and, when available, your name and email address. You may use Apple’s Hide My Email option. Godpack uses Supabase to manage sign-in and sessions. We do not receive your Apple password. On mobile, session credentials use your device’s secure storage. On the web, session information is stored in browser storage; the “Remember me” option keeps you signed in for up to 30 days, while turning it off limits the session to the current browser tab. You can sign out to end the session.
For email sign-in, we use your email address to send a sign-in code through our authentication service. We store your Godpack account identifier, display name, username, optional profile photo and biography, onboarding progress, and your Terms acceptance record.
Payments and shipping information
Payments are processed by Stripe. Payment details are entered through Stripe-hosted fields or a supported payment wallet. We store payment references, amounts, statuses, and account transaction records needed to credit balances, fulfill purchases, and resolve payment issues.
When you request physical shipping, we store your recipient name, delivery address, and shipment details. We use and share the information needed with fulfillment and delivery providers to process your request.
Product and community information
Our servers store the information needed to operate the service: collections, pack activity, account balances and transactions, trades, gifts, battles, follows, messages, comments, notification state, and abuse reports. This data persists across app sessions.
Your profile and public community posts are visible to other members. Feed and activity visibility depend on the feature and its sharing settings. Direct messages and private requests are limited by the application’s access controls to their participants; they are stored on our servers and are not end-to-end encrypted. We may process reports and related content to address abuse and operate the service.
Notifications and technical information
If you allow push notifications, we store a device push token and your notification preferences, and use Apple’s or Expo’s delivery services to send notifications. You can disable notifications in your device settings at any time.
Our hosting, authentication, update, and content-delivery providers receive the technical details needed to serve requests, such as IP addresses and request times. Godpack uses Supabase for authentication and database hosting, Render for the application API, and Expo for app updates and related delivery services. Card images and other assets may be delivered by third-party content hosts.
When you use Godpack while signed in, we record the approximate location your IP address maps to, such as your city, region, and country, to understand where Godpack is used. We keep only your most recent approximate location and do not store your IP address for this purpose. We do not collect precise device location.
Product analytics
Godpack sends product-usage events to PostHog’s US service to understand how the app is used and to improve it. These events include navigation and product actions, installation and session identifiers, and account-related properties such as your Godpack user ID, username, and balance. Because of this, analytics can be associated with your Godpack account; we do not describe them as anonymous. We do not send your Apple password or authentication tokens as analytics events.
How information is used and shared
We use information to authenticate users, preserve collections, operate community, payment, pack-opening, and shipping features, deliver notifications, investigate reported abuse, maintain security, and improve the app. Information is processed by the service providers described above and shown to other users as required by each feature’s visibility. Relevant providers may process information in countries other than your own.
We do not sell personal information and we do not use it for third-party advertising.
Your choices and deletion requests
You can edit supported profile fields, change available sharing settings, block other members, manage your device’s notification permission, and sign out. Signing out ends this device’s session; it does not erase your server-side account.
You can request account deletion through Settings. Account access is disabled immediately, and we complete the deletion of your account and associated data — including your Supabase sign-in identity and any Apple account linkage — within 30 days of receiving the request. Deleted data may persist in encrypted backups for a limited period afterward before those backups are cycled out. Deletion is not instantaneous, and requests cannot be canceled in the app. Contact us for assistance with access, correction, or deletion requests.
We retain account and community data for as long as your account exists and as needed to operate the service; we retain records after deletion only where required for security, abuse prevention, or legal obligations.
Eligibility, changes, and contact
Godpack is intended for users who meet the eligibility requirements in its Terms of Service — currently adults aged 18, or the local age of majority, whichever is higher. Contact us if you believe an ineligible user has provided personal data.
We will update this policy when our practices change and identify its effective date above. Questions or privacy requests may be sent to support@godpack.gg.