Sentifold Gamejam
Privacy Policy
Effective September 9, 2026
Sentifold Gamejam is a collection of small, handpicked games, published by Sentifold Inc. (“Sentifold”, “we”). This policy covers the Sentifold Gamejam app for iPhone and iPad and the Gamejam pages on the web — this page, sentifold.ai/gamejam, and gamejam.sentifold.ai. It is the whole story: if something is not described here, we do not do it.
What we collect
- Account. Playing does not require an account; signing in is optional, and it is what lets you send feedback on the games you play. If you do sign in, we keep the email address you sign up with — or, if you use Sign in with Apple, the address Apple shares with us, which may be Apple’s private relay address — and a random account ID. If you sign in with a password, we store only a salted one-way hash of it, never the password itself. We may also use the address to send occasional news about Sentifold Gamejam — new games, features and offers. Every such email has an unsubscribe link. Sign-in, verification and security emails are sent regardless of that choice.
- Play activity. The app tells our servers which games you install, play, and remove: the game, what happened, when, for how long, the app version, and whether a download succeeded or failed. This is tied to your account, and it is how we learn which games are worth our players’ time and whether our deliveries work.
- Feedback. When you rate a game or write to us about it, we keep your words and your verdict against your account, so one player holds one opinion per game. Feedback comes only to us; it is never published.
- Game reports. Anyone can report a game from its page, signed in or not. A report from a signed-in player is kept against their account. A report from a guest is stored with no account and no address: only the reason chosen, any note written with it, the game and the time. To keep one address from flooding us, guest reports are rate-limited per address; that count lives only in the server’s memory for a few minutes and the address is never stored with the report.
- A session cookie. Signing in sets one cookie so you stay signed in. That is its whole job. The Gamejam web pages set none.
- Server logs. Like nearly every internet service, our servers record technical logs — IP address, request time, browser or app version — when the app or a browser talks to them. Content-delivery logs are deleted within 90 days; other logs are kept only to operate and debug the service.
- Diagnostics before you sign in. From the moment the app opens until you sign in, it sends us a short technical account of what it is doing: that it started, that the catalog appeared, which sign-in option you tapped, whether signing in succeeded and how long it took, whether the app was interrupted, and, if the player stops, the eight-character support code shown on its screen. Each launch gets a random identifier that exists only until the app closes. These records also carry the installation identifier described below, so we can connect problems before sign-in with that installation afterward. They contain no email address or IP address and are deleted after 90 days.
- Device reports. At first launch, the app creates one random identifier for the installation. It is not derived from hardware, serial numbers, hardware UUIDs or network addresses. Device reports and launch and usage events are stored under that identifier: without an account before you sign in, and linked to your account once you sign in on that installation. Reinstalling the app creates a new identifier. We use these reports to know which computers to test on and optimize for. Reports can include the operating system, version and build; manufacturer and machine model; hardware and process architecture; processor and core counts; memory; displays and their size, scale and refresh rate; graphics adapter, driver and backend; app version and build; JavaScript engine; product and platform; and, when signed in, locale and time zone. Facts the machine does not expose are left out. Our server adds the receipt time and keeps current installation facts and history when facts change. A separate random identifier for each launch lets us ignore duplicate device reports. The report itself is not written to server logs. Reporting is on by default; we rely on our legitimate interest in keeping the app working on the hardware people use. The switch under Settings → Privacy stops device reports, before or after sign-in. Erasing your account deletes its installation records and hardware history, and unlinks every event stored under those installation identifiers. Reports and pre-sign-in events from installations that never sign in are pruned after 90 days. Account-linked current facts remain while the account exists; older snapshots are pruned after 365 days and each installation keeps at most 200 snapshots after a daily sweep.
What we do not collect
No name, no phone number, no contacts, no precise location, no photos, no camera, no microphone. Device reports and diagnostics carry no identifier derived from serial numbers, hardware UUIDs or network addresses. Their random installation identifier links them to your account once you sign in. The app shows no ads, sells nothing, and contains no third-party analytics or advertising code. We do not track you across other apps or websites, we never sell personal data, and we do not share it with advertisers or data brokers.
Games cannot see you
Every game in the catalog runs in a sandbox. A game never receives your email address, your account ID, or anything else about you — it sees only its own save data.
Where the data lives
Our servers run on Amazon Web Services in the United States, so your data is stored and processed there. If you use Sign in with Apple, the sign-in itself happens with Apple under Apple’s own privacy policy. No one else receives your personal data unless the law compels us.
Deleting your account
In the app: account menu → Erase account → confirm. It takes effect immediately and requires no conversation with anyone. Erasing removes your email address and every way of signing in, signs the account out everywhere, deletes the text of your feedback, and deletes the account’s installation records and hardware history. It also removes the installation identifiers from device reports and every launch and usage event stored under them, including events from before sign-in. The unlinked rows are pruned on their existing schedules, described below. What remains is play statistics that name nobody: a record that some player once played, tied to an account that can never be used or identified again. You can also write to contact@sentifold.ai from your account’s email address and we will do the same by hand. For diagnostics from an installation that never signed in, write to us with the installation identifier or approximate launch time so we can help locate the records. They also expire as described below.
How long we keep it
Account data and feedback last as long as your account does; erase the account and they go with it, as described above. Content-delivery logs and the sign-in diagnostics recorded before you sign in last at most 90 days. Device reports are pruned by a daily job once they are older than 90 days, including reports from installations that never sign in. Account-linked installation records and current facts last as long as the account; older snapshots follow the 365-day and 200-snapshot retention limits described above.
Children
Sentifold Gamejam is not directed at children under 13, and we do not knowingly collect personal data from them. If you believe a child has created an account, write to us and we will erase it.
Your rights
Depending on where you live, the law gives you rights over your personal data: to see it, correct it, delete it, or object to how it is used. We honor these requests from everyone, wherever they live. Write to contact@sentifold.ai from the email address on your account, or from any address if you have no account and are asking about the data the app sends before sign-in. To stop news emails, use the unsubscribe link in any one or write to us at that address.
Security
Everything travels over HTTPS. Passwords exist only as salted one-way hashes. Databases and storage are private, and production access is limited to the people who run the service.
Changes
When this policy changes, the new version appears at this address with a new effective date.
Contact
Sentifold Inc. — contact@sentifold.ai