Privacy Policy
Effective Date: September 5, 2026
This Player-Centric Privacy Blueprint establishes how Yuan Lai Yuan ("we," "us," or "our") maps, utilizes, and shields your personal profile when you immerse yourself in Endless Block: Classic Puzzle via Google Play. Our guiding principle is to leverage your data strictly to amplify your gaming journey and safeguard your digital footprint.
Mapping Your Gaming Footprint
We integrate secure pathways to log and curate your information, prioritizing absolute data hygiene. The following outline clarifies the exact data points we intercept and our corresponding handling methods.
1.1 Information Harvested Directly
The instant you interact with Endless Block: Classic Puzzle, our architecture captures specific data streams:
Connection Footprints: IP addresses, network handshake timestamps, and general hardware classifications.
Hardware Schematics: The specific maker and model of your device, the installed OS (Android/Google OS), localized language, and time zone variables.
Persistent Device Trackers: Alphanumeric tags bound to your phone, encompassing the Google Advertising ID (GAID), Android Device ID, Google Play Games ID, and your primary Google Account token.
Player Journey Stats: Checkpoints reached, apex scores, virtual trophies earned, and telemetry from multiplayer matchmaking.
Economy Logs: Your digital purchase receipts, consumption rate of virtual currency, customized interface configurations, and ledger balances.
1.2 External Authentication Hubs
If you choose to bypass local login by using hubs like Google Play Games Services, we will sync approved identity markers (e.g., public display names) from their systems. This handshake is exclusively governed by your prior approval of that third party's data manifest.
We highly recommend auditing the privacy blueprints of these networks:
Google Play Games / Google Services: https://policies.google.com/privacy
By linking an external hub, you legally warrant that:
Your engagement respects the terms of service enacted by that third-party entity.
You clear the legal age threshold required by that network in your sovereign territory.
Legal Justifications for Processing
We meticulously process your data to fulfill specific game-related objectives, anchored in established legal doctrine:
Game Execution & Player Care: To fulfill in-app acquisitions, troubleshoot your support requests, and keep servers online; to deliver core game loops, apply custom user states, and inject necessary software patches and security updates.
Statutory Basis: Justified under GDPR Article 6(1)(b) (contractual necessity). This processing is inescapable to uphold our Terms of Service and keep the game playable.
Platform Iteration & Marketing: To transmit personalized marketing intel about Yuan Lai Yuan or vetted allies; to cache your progression; and to decode player behavior to invent new features and maximize marketing and support efficacy.
Statutory Basis: Authorized by GDPR Article 6(1)(f) (legitimate interests). We lean on this to satisfy our corporate ambition of providing superior interactive entertainment.
Tailored Ad Serving: To beam bespoke commercial advertisements to users who have granted ad-tech partners the clearance to read their device trackers.
Statutory Basis: Also supported by GDPR Article 6(1)(f). This enables our legitimate drive to fund the platform via optimized ad campaigns.
Data Archival and Expiration
Your personal footprint is stored in our infrastructure solely for the period required to power the game, satisfy legal audits, and navigate potential arbitrations. In edge cases involving compliance, security forensics, or contract defense, we reserve the right to lock data in our archives for a legally defined extension.
Separately, stripped and aggregated usage metrics are kept for high-level system analysis. This data is routinely flushed unless a severe security mandate requires prolonged storage.
Information Syndication Channels
Honoring your transparency rights, and operating under GDPR Articles 6(1)(b), 6(1)(c), and 6(1)(f), we may funnel your data to authorized external parties in these scenarios:
Strategic Integrators: To deploy joint features, satisfy regulatory audits, facilitate corporate mergers, or any action requiring your explicit opt-in.
Judicial & State Bodies: Should we detect a severe violation of our rules, or if legal decrees force us to unveil data to protect the IP, physical safety, or legal standing of Yuan Lai Yuan and the community.
The Global Player Network: Whenever you dive into networked multiplayer, post on forums, or climb global ranking boards.
4.1 Ad Network Syndication
Provided we secure your active consent as defined by GDPR Article 6(1), we will broadcast your device trackers to advertising syndicates for personalized ad targeting. Our authorized ad-tech roster includes:
Applovin Corporation: https://www.applovin.com/privacy/
AdColony: https://yandex.com/legal/international_ads_privacy_policy
Amazon Publisher Services: https://www.amazon.com/privacyprefs
Meta (Facebook, Inc.): https://www.facebook.com/about/privacy/
Google LLC: https://policies.google.com/privacy
Google Admob: https://support.google.com/admob/
Unity Technologies: https://unity3d.com/legal/privacy-policy
IronSource: http://www.ironsrc.com/wp-content/uploads/2019/03/ironSource-Privacy-Policy.pdf
Vungle, Inc.: https://vungle.com/privacy/
Fyber: https://www.fyber.com/privacy-policy/
InMobi: https://www.inmobi.com/privacy-policy/
Note: This Blueprint does not dictate the downstream data processing of these external firms. Please visit their respective privacy portals to understand their mechanics.
4.2 Infrastructure Sub-Contractors
To prevent downtime and ensure smooth networking, we lease cloud processing and analytics from specialized providers:
Firebase (Google LLC): https://firebase.google.com/support/privacy
Adjust: https://www.adjust.com/terms/privacy-policy/
Youth Protection Protocols
Endless Block: Classic Puzzle is fundamentally not constructed for, nor promoted to, audiences under 13. We maintain a zero-tolerance policy against the intentional harvesting of private data from this demographic. Should our systems flag the accidental ingestion of such information, rapid eradication scripts will be triggered. Guardians discovering an unauthorized data handover by a minor must contact our support desk immediately to initiate a purge.
Cyber Defense Posture
We refuse to compromise on security and deploy robust cryptographic measures to lock down your data. However, the community must acknowledge that no digital vault or web transmission is impervious. Therefore, we cannot legally guarantee total invulnerability against sophisticated breaches.
OS-Level Broadcasting
If you grant the necessary permissions, we may push system updates, sale alerts, and game reminders directly to your Android/Google UI. You hold the ultimate authority to revoke this access at any time by toggling the notification switches in your device’s core settings.
Player Privacy Entitlements
8.1 European Economic Area (EEA) Privileges
We pledge to clear standard privacy tickets within 30 days. For highly complex queries, GDPR Article 12 allows us a maximum extension of two additional months, accompanied by a proactive explanatory email.
(1) Right of Access: Under GDPR Article 15, you can demand an itemized summary of the data we hold, our motives, the recipients, and the storage lifespan. A digital extract is available upon request.
(2) Right to Object: Shielded by GDPR Article 21, you can contest processing tied to "legitimate interests" (Article 6(1)(f)). We will halt processing unless overriding legal imperatives exist. Your right to kill direct marketing processing is absolute.
(3) Right to Rectification: Backed by GDPR Article 16, you wield the power to force the correction of corrupted or incomplete profile records.
(4) Right to Restriction: Referencing GDPR Article 18, you may compel us to quarantine your data and freeze processing under specific legal conditions.
(5) Right to Withdraw Consent: Codified in GDPR Article 7, if processing relies on your consent, you can pull it instantly. This does not roll back previously executed processing.
(6) Right to Portability: Permitted by GDPR Article 20, you have the clearance to extract your data in a machine-readable format and port it to a separate data controller.
8.2 California Resident Privileges (CCPA)
(1) Resolution Window: We target a 45-day SLA for verifiable requests. If technical hurdles force a delay (capped at 90 days), we will issue a written status update.
(2) Data Lookback: Data exports provided to you will exclusively encompass the 12-month trailing period preceding your inquiry.
(3) Right to Opt-Out: The CCPA enshrines your undeniable right to command us to stop the commercial sale of your personal information.
(4) Right to Know: You possess the right to full transparency regarding the exact data vectors we intercept and our commercial motives, detailed in this document.
(5) Access to Records: Twice a year, completely free, you may request a thorough ledger of the personal information logged over the past 12 months.
(6) Right to Deletion: You can mandate the permanent wiping of personal data collected over the last year, provided it doesn't trigger statutory exemptions (e.g., necessary for bug fixing or security).
Triggering the Wipe Protocol
When your data is no longer necessary for our service delivery, you can demand its permanent destruction. To trigger this wipe protocol, transmit your request to the designated compliance email below.
Compliance Desk
For regulatory clarifications, feedback, or to invoke your privacy rights, route all traffic to:
Contact Email: modungkhankjg6362@gmail.com