Privacy Policy for Stryked

Last Updated: June 7, 2026 (Policy version 2.4)

Aligned with in-app privacy choices: required service processing (location, account security) vs optional behavioral analytics consent

Your Privacy Matters: Stryked ("we", "our", or "the app") is committed to protecting your privacy. This policy explains what data we collect, why we collect it, and how you can control your information. For how we use platform technology (location, maps, and interactions), see our Technology & Platform Use page.

1. Information We Collect

1.1 Location Data

We collect and process your precise location data to enable the core functionality of Stryked.

What location data we collect:

When we collect location data:

Why we collect location data:

1.2 Photos and Media

We collect photos you upload as part of the Snapventure feature.

Snapventure location: We do not store your personal GPS coordinates with Snapventures. Photos are linked to the trophy you selected (the trophy's location is already public game data). EXIF/GPS metadata is stripped from images before upload.

These photos can be shared with other users as part of the social features of the app. You can control the visibility of each snapventure individually - you can make them public (visible to all users) or private (visible only to you). You can change the privacy setting of any snapventure at any time after uploading.

1.3 User Profile Data

1.3.1 Demographic Profile

When you activate free trophy categories, we ask you to complete a short demographic profile:

This information is stored in your user profile and linked to your account. We use it to understand our community in aggregate and to improve trophy recommendations. Partner-facing statistics use only k-anonymized, aggregated counts (see Section 1.5 and Section 11) — partners do not receive your individual demographic answers.

Why we collect this: Required to unlock free trophy categories (contract performance) and for aggregated product and partner insights (legitimate interest). We do not sell this data or use it for advertising.

Your choices: The form is required for free categories in production. You can update your answers when editing your profile. Deleting your account removes this data (see Section 5.5).

1.4 Purchase Information

1.5 Device and Usage Data

We collect device and usage information for security, performance, and analytics purposes:

Security Verification: We use Firebase App Check (Apple App Attest) to verify that requests come from legitimate, unmodified app installations. This helps prevent abuse and protects your data.

Note: Most device and usage data collection requires your consent for behavioral analytics. You can control this in Settings > Account Management > Privacy & Consent.

1.6 Crash and Error Data

When you opt in to Behavioral Analysis, we collect crash reports and error information via Firebase Crashlytics to improve app stability and fix bugs.

Why we collect this: To identify and fix bugs, improve app stability, and ensure a better user experience.

Legal basis: Consent (GDPR Article 6(1)(a)) via Behavioral Analysis. Crashlytics is off by default until you enable it in Settings > Account Management > Privacy & Consent. You can withdraw consent at any time.

Service Provider: Firebase Crashlytics (Google LLC). Data may be processed outside the EER under Firebase DPA and Standard Contractual Clauses.

1.7 Partner Rewards

When you participate in optional partner reward offers (vouchers, codes, or similar benefits at participating locations), we process:

What partners receive: Partners fulfil rewards themselves. When a partner scans your QR code, they receive only the information needed to verify redemption through our systems. We do not sell your profile or share your email with partners for marketing through the redemption flow unless you contact them separately.

Legal basis: Contract performance (Article 6(1)(b)) — processing necessary to operate the reward unlock and redemption feature you use. See also our Terms of Service (Section 8) for your contractual rights and limitations regarding partner fulfilment, expiry, and third-party liability.

2. How We Use Your Information

2.1 Core Game Functionality

2.2 Anti-Spoofing and Security

We use behavioral analysis and automated systems to maintain game integrity:

2.3 Service Improvement

Usage and Product Insight:

When you use the app—for example, when you activate a challenge or redeem a trophy—we log these actions for product and usage insight. These are core app actions, not separate tracking. We use a technical user ID (the same identifier needed for the app to function) to link events to a session. We do not store personally identifiable information (name, email, phone number) in this data and do not use it for advertising.

Automatically collected data (Firebase Analytics):

Account lifecycle: Sign-in and sign-out events are logged for account management and security. These are functional logs, not usage analytics.

Note: This data collection respects your GDPR consent preferences. You can opt out in Settings > Account Management > Privacy & Consent.

3. Data Storage and Security

3.1 Where We Store Your Data

Data Storage Location: Your app data is stored on servers in the European Union (Belgium, europe-west1 region). We use Google Cloud Platform's EU data centers for our Firebase services. We do not transfer your data outside the EU.

3.2 How Long We Retain Your Data

3.3 Security Measures

4. Data Sharing and Disclosure

4.1 With Other Users

4.2 With Service Providers and Partners

4.3 Legal Requirements

We may disclose your information if required by law or to:

4.4 We Do NOT:

Tracking and identifiers: We do not use Apple’s App Tracking Transparency (ATT) or the Identifier for Advertisers (IDFA). We do not track you across apps or websites for advertising or profiling, so we do not request ATT permission. Any analytics we use are limited to our app and are described in this policy.

5. Your Rights and Choices

5.1 Location Services

5.2 Account Management

5.3 Privacy Choices in the App

Your privacy choices are stored on your device (not per account). If someone else signs in on the same iPhone, they inherit the device's analytics preference until they change it in Settings > Account Management > Privacy & Consent.

Required for the game (information only — no withdrawable toggle while you use the app):

Optional (you can withdraw anytime):

5.4 GDPR Rights (EU Users)

If you are in the European Union, you have additional rights:

5.5 Account Deletion

To delete your account and all associated data:

  1. Go to Settings in the app
  2. Select "Delete Account"
  3. Confirm your decision

Upon deletion:

6. Automated Decision-Making

6.1 Anti-Spoofing System

The app uses automated systems to detect location spoofing and cheating. This system:

6.2 Your Right to Appeal Automated Decisions (GDPR Article 22)

Under GDPR Article 22, you have the right not to be subject to a decision based solely on automated processing, including automated bans. You have the right to request human review of any automated decision that affects you.

If you believe you were incorrectly banned:

How to Submit an Appeal

  1. In-App Appeal: Use the built-in ban appeal flow in the app. When you see a ban notification, tap "Appeal Ban" to submit your appeal directly within the app.

What Happens After You Submit an Appeal

Your Rights

In addition to the appeal process, you have the right to:

Note: Automated bans are typically temporary (24 hours) and are designed to prevent cheating and maintain fair gameplay. Most bans are automatically lifted after the specified duration, but you can appeal at any time if you believe the ban was incorrect.

7. Children's Privacy

Stryked is not intended for anyone under the age of 16. In the European Economic Area (EEA), including the Netherlands, the minimum age is 16, in line with the GDPR age of digital consent for processing personal data (such as location data). We do not knowingly collect personal data from anyone under 16, including location data. If you are under 16, please do not use the app or create an account. If we become aware that we have collected data from someone under 16, we will delete it promptly. This aligns with our Terms of Service.

8. Changes to This Policy

We may update this privacy policy from time to time. When we do:

9. Third-Party Services

Our app uses the following third-party services:

9.1 Firebase (Google LLC)

9.2 Apple Sign-In

9.3 Google Sign-In

9.4 Apple Maps (MapKit)

10. Contact Us

If you have questions, concerns, or requests regarding this privacy policy or your personal data (including exercising your GDPR rights—access, rectification, erasure, restriction, portability, objection, or withdrawal of consent), please contact us:

Response Time: We aim to respond to all privacy inquiries within 48 hours.

Data Protection: We have not designated a Data Protection Officer. For all privacy and data protection requests, please use the contact details above.

Data breach notification: In the event of a personal data breach, we will notify the competent supervisory authority within 72 hours of becoming aware of it (GDPR Article 33) and will inform affected individuals without undue delay when the breach is likely to result in a high risk to their rights and freedoms (GDPR Article 34). For questions about our incident process, contact support@getstryked.com.

For EU Users – Complaints:

If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.

11. Legal Basis for Processing (GDPR)

We process your personal data based on the following legal bases under GDPR:

Special Category Data: Precise location is processed on-device for core gameplay under contract (Article 6(1)(b)) and, where applicable, legitimate interest for fraud prevention (Article 6(1)(f)). Optional analytics uses separate consent (Article 6(1)(a)).


© 2025 Stryked. All rights reserved.
This privacy policy is effective as of June 7, 2026 (version 2.4).