Privacy Policy
Pixelheim (“we”, “us”, “our”) operates Stackheim, a Magic: The Gathering companion app available on iOS, Android, and macOS. This Privacy Policy explains what data we collect, how we use it, and your rights.
01Data We Collect
Account Data
When you create an account, we collect:
- Email address— used for authentication and account recovery.
- Display name— chosen by you, visible to friends and game participants.
Game Data
When you use the app, we store:
- Game sessions— life totals, commander damage, counters, tokens, and other game state events.
- Game history— records of completed games linked to your account.
- Decks— deck names and metadata you create.
- Friends list— your friend connections and pending requests.
Analytics Data
We use PostHog to collect anonymized usage analytics. This includes:
- App feature usage patterns (e.g., which screens are visited).
- Crash and error reports.
- Device type and OS version.
Analytics data is not linked to your account and cannot be used to identify you personally.
Subscription Data
If you subscribe to a paid plan, payment is processed entirely by Apple (App Store), Google (Google Play), or the respective platform. We use RevenueCat to manage subscription status. We do not collect or store payment details such as credit card numbers.
02How We Use Your Data
We use your data to:
- Provide and operate the app (game tracking, history, multiplayer sync).
- Authenticate your account and manage sessions.
- Process and manage your subscription status.
- Improve the app through anonymized analytics.
- Send transactional communications (e.g., password reset emails).
We do not sell your data. We do not use your data for advertising.
03Data Sharing
We share data only with the following third-party processors, solely to operate the app:
| Service | Purpose | Data shared | Location |
|---|---|---|---|
| Supabase | Database, authentication, real-time sync | Account data, game data | Sweden (EU) |
| PostHog | Anonymized analytics | Anonymous usage events | EU |
| RevenueCat | Subscription management | Anonymous user ID, subscription status | USA |
| Apple / Google | Payment processing | As per their privacy policies | USA |
We may also disclose data if required by Norwegian or EU law.
04Data Storage and Security
Your data is stored on Supabase servers in Sweden (EU). We use industry-standard security measures including encryption in transit (TLS) and at rest. Access to production data is restricted to authorized personnel.
05Data Retention
- Active accounts: Data is retained as long as your account exists.
- Deleted accounts: All personal data is deleted within 30 days of account deletion.
- Anonymized analytics: Retained indefinitely (cannot be linked to you).
06Your Rights
Under the General Data Protection Regulation (GDPR), you have the right to:
- Access your personal data.
- Correct inaccurate data.
- Delete your account and associated data.
- Export your data in a portable format.
- Object to or restrict processing of your data.
To exercise any of these rights, contact us at lifestack@pxh.no.
Account Deletion
You can request account deletion by contacting lifestack@pxh.no. All personal data will be permanently removed within 30 days.
07Children's Privacy
We do not knowingly collect data from children under 16 years of age. If you believe a child under 16 has created an account, please contact us and we will promptly delete it.
08Unauthenticated Use
You can use Stackheim without creating an account. In this mode, no personal data is collected or stored on our servers. Anonymized analytics may still be collected.
09Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated date. Continued use of the app after changes constitutes acceptance.
10Contact
For privacy-related questions or requests:
Pixelheim
Email: lifestack@pxh.no