Privacy by design

개인정보처리방침

TierSnap은 게임을 즐기는 데 필요한 정보만 처리하고, 어떤 정보가 왜 필요한지 투명하게 설명합니다. 계정과 연결된 정보는 앱 안에서 직접 삭제할 수 있습니다.

시행일 최종 수정 한국어 · English

한눈에 보기

계정, 게임 기록, 광고 제공에 필요한 최소 범위

TierSnap 운영자는 개인정보를 금전 대가로 판매하지 않습니다. 로그인과 닉네임, 랭킹 및 플레이 기록, 이용자가 제출한 영상 제안, “누구 잘못?”과 게임별 자유 커뮤니티 활동, 광고 제공에 필요한 기술 정보가 처리될 수 있습니다. “누구 잘못?” 게시물만 공개 전 운영팀 검토를 거칩니다. 게임별 자유 커뮤니티의 글과 댓글은 작성 즉시 공개될 수 있으며, 이후 이용자 신고·차단과 지속적인 운영 검토를 적용합니다. iOS 앱은 광고 SDK를 시작하기 전에 앱 추적 투명성(ATT) 권한을 요청합니다. 거부하거나 제한된 경우에도 앱 기능과 광고는 이용할 수 있으며, 모든 Google 광고 요청을 명시적으로 비개인 맞춤형으로 제한합니다.

1. 처리하는 정보

앱 기능을 제공하는 과정에서 다음 정보가 직접 입력되거나 자동으로 생성될 수 있습니다.

계정 및 프로필
Firebase 사용자 ID, 로그인 제공자, 제공자가 전달한 이메일 주소, 이용자가 정한 닉네임과 닉네임 중복 확인 키, 이용자가 선택한 경우 기기에서 정사각형으로 자른 프로필 사진. 사진은 서버에서 디코딩·검증한 뒤 메타데이터를 제거하고 512×512 WebP로 다시 인코딩하며, 공개 프로필에는 원본 파일명·저장 경로·UID가 아닌 무작위 사진 식별자와 변경 번호만 사용합니다.
게임 이용 기록
앱 실행 횟수, 게임·모드, 세션 시작·종료·이탈 시각, 플레이 시간, 문제 수, 정답 수, 점수, 연속 정답, 랭킹, 언어 및 앱 버전
선택형 Firebase 이용 분석
설정에서 이용 분석을 직접 켠 경우에만 Firebase Analytics가 가명 앱 인스턴스 ID와 앱·기기 버전, 운영체제, 언어, 대략적 지역 같은 자동 기술 차원 및 앱 실행·홈 보기·게임 선택·퀴즈 시작·답변·완료·커뮤니티 화면과 작성 성공·커뮤니티 알림 선택·광고 제거 결제 화면 시작 같은 정해진 상호작용을 처리합니다. 커스텀 이벤트에는 허용된 네 게임, 클래식·서바이벌 모드, 정답 결과, 라운드·점수·연속 정답 같은 제한된 값만 사용합니다. 이용 분석이 켜진 동안 검증된 광고 제거 구매가 완료되면 스토어와 Analytics SDK가 제공하는 in_app_purchase 이벤트에 상품 식별자, 가격·값, 통화, 수량과 거래 정보가 포함될 수 있지만, 매출 완료 커스텀 이벤트로 복제하지 않습니다. 연결된 AdMob·Firebase와 Mobile Ads SDK는 같은 선택이 켜진 동안 광고 노출·클릭·노출 시간·추정 수익 및 광고 단위·화면·형식·소스 차원을 자동 Analytics 이벤트로 처리할 수 있으나, TierSnap은 광고 이벤트나 광고 파라미터를 수동으로 추가하지 않습니다. Firebase 사용자 ID, 이메일, 닉네임, 광고 ID, 게시글·댓글·영상·제보 ID, 제목·본문·메모, 결제 토큰은 보내지 않으며 Analytics User-ID와 커스텀 사용자 속성을 설정하지 않습니다.
답변 통계
영상별 티어 선택은 전체 이용자의 익명 누적 카운터로 집계됩니다. 공개 통계에는 개별 이용자의 답변 내역이 표시되지 않습니다.
퀴즈 영상 제안
YouTube 영상 ID와 링크, 게임 종류, 티어, 선택 입력한 메모, 제출 시각, 앱 버전·언어, 제출 당시 UID와 닉네임, 검토 상태 및 완료된 검토 기록의 검토 담당자 UID·이메일·결정·사유·선택 입력 메모·처리 시각을 처리합니다. 이와 별도로 앱의 퀴즈 영상 제안 내역에는 로그인한 본인만 조회할 수 있도록 게임, YouTube 영상 ID, 티어, 제출·상태 갱신 시각, 대기·승인·반려 상태, 승인된 경우 게시된 게임·영상 ID, 반려된 경우 서버가 허용한 정해진 사유 코드와 운영팀이 작성한 반려 설명을 저장합니다.
게임 문제 영상 신고
현재 출제 중인 영상의 게임·YouTube 영상 ID, 선택한 신고 사유(재생 불가·잘못된 영상·잘못된 티어·부적절한 영상·기타), 기타 사유를 선택했을 때의 필수 상세 내용(최대 500자), 신고·상태 갱신 시각, 처리 상태와 신고자 UID를 처리합니다. 이 정보는 서버 함수로만 접수되어 비공개 운영 검토 절차로 전달되며, 운영팀에 제공되는 검토 정보에는 신고자 UID·이메일·프로필이 포함되지 않습니다.
“누구 잘못?” 제보와 게시물
제보 원문에는 제보자가 선택한 게임, YouTube 영상 ID, 선택 입력한 제보 메모, 커뮤니티 가이드 버전, 제출 시각, 제보자 UID와 닉네임 및 검토 상태가 포함됩니다. 앱의 “내 영상”에서는 로그인한 본인만 읽을 수 있는 별도 제출 이력으로 게임, YouTube 영상 ID, 제출·상태 갱신 시각, 대기·공개·반려·취소·숨김·삭제 상태, 해당되는 경우 정해진 반려 분류와 운영팀이 작성한 반려 설명 및 공개 게시물 연결 정보를 처리합니다. 승인할 때 운영팀이 작성하는 공개 질문·상황 설명·양쪽 선택지와 게시 시각은 제보자의 원본 입력과 구분되며, 이후 게시물의 숨김·삭제 상태도 함께 처리합니다.
“누구 잘못?” 투표와 안전 기능
게시물별 이용자의 선택과 수정 시각, UID 없는 선택지별 누적 투표 수, 신고자의 UID·신고 대상 게시물과 그 영상 제보자 UID·사유·선택 입력한 상세 내용·시각·처리 상태, 본인이 차단한 UID와 차단 시각, 제재 상태, 검토 담당자 UID·이메일·결정·사유·선택 입력 메모·처리 시각이 포함된 검토 기록을 처리합니다. 공개된 제보의 “통계 보기”에는 다른 공개 화면과 동일한 UID 없는 선택지별 누적 수치만 표시되며, 개별 투표자나 그 선택은 표시되지 않습니다.
게임별 자유 커뮤니티 글과 댓글
기능이 제공되는 경우 이용자가 선택한 게임, 게시글 제목·본문, 댓글 본문과 답글 연결, 작성 시각·수정 시각·상태, 공개 닉네임과 비공개 계정 UID 및 커뮤니티용 작성자 키를 처리합니다. 글과 댓글은 사전 승인 없이 즉시 공개될 수 있으므로 개인정보나 연락처를 작성하지 마세요.
커뮤니티 댓글 알림
Android 또는 iOS에서 이용자가 알림을 직접 켠 경우 Firebase 사용자 ID와 Firebase Cloud Messaging 등록 토큰, 플랫폼, 토큰 갱신 시각을 계정과 연결해 처리합니다. 본인 글에 다른 이용자가 댓글을 달거나 본인 댓글에 답글을 달면 해당 게임과 게시글로 이동할 수 있는 일반적인 알림을 보냅니다. 댓글 원문은 푸시 데이터에 넣지 않으며, 본인이 작성한 댓글·답글에는 알림을 보내지 않습니다.
운영팀 게임별 공지
게임별 일반 공지의 제목·본문·게시 및 수정 시각·상태는 권한을 확인한 운영 담당자만 작성·수정하거나 게시를 종료할 수 있습니다. 일반 이용자는 공지 자체를 작성·삭제·신고하거나 시스템 작성자를 차단할 수 없고, 공지에 쓰는 댓글과 답글만 일반 게임별 자유 커뮤니티 활동으로 처리됩니다.
“누구 잘못?” 사례 토론방
투표를 완료한 이용자에게만 해당 사례의 게임별 공지형 토론방을 제공합니다. 방 제목과 본문은 공개된 사례의 운영팀 검수 제목·상황·A/B 설명에서 서버가 만들며, 시스템 공지에는 제보자 UID·개별 투표·투표 집계가 포함되지 않습니다. 이용자가 작성하는 댓글과 답글에는 게임별 자유 커뮤니티의 신고·차단·정지·삭제 정책이 동일하게 적용됩니다.
게임별 자유 커뮤니티 신고·차단·제재
신고자의 UID, 신고 대상 글·댓글·작성자, 정해진 신고 사유, 선택 입력한 상세 내용과 신고 시각, 본인이 차단한 계정과 차단 시각, 작성자 정지 상태, 운영팀 조치·사유·시각을 처리합니다. 운영팀에 제공되는 검토 정보에는 신고자 UID·이메일이 포함되지 않고, 작성자 닉네임·커뮤니티용 작성자 키·신고 사유와 필요한 원문 증거만 포함됩니다.
유입 및 운영 정보
캠페인·크리에이터 링크의 설치 리퍼러, 접속·설치 시각, 앱 버전과 같은 어트리뷰션 정보, 서비스 보안·오류 대응을 위한 서버 로그 및 삭제된 데이터의 재생성을 막기 위한 계정 삭제 안전 표식(삭제 대상 Firebase UID, 삭제 상태와 요청·완료 시각)
광고 및 기술 정보
동의 선택, 광고 노출·클릭·보상·오류 정보와 SDK가 처리하는 기기 식별자, 기기 유형, 운영체제, IP 주소에서 추정한 대략적 지역, 앱·광고 상호작용, 충돌·성능·기타 진단 정보 및 광고 성과 신호를 처리할 수 있습니다. iOS에서 ATT를 허용하면 Google Mobile Ads가 IDFA를 이용해 관련성 높은 광고와 광고 측정을 제공할 수 있습니다. 거부·제한되었거나 아직 결정되지 않은 경우 앱은 광고 SDK 초기화 전에 그 상태를 확인하고 배너·전면·보상형 광고 요청마다 비개인 맞춤형 신호를 적용합니다. ATT 허용은 UMP 지역 동의나 기타 개인정보 선택을 대신하지 않습니다.
앱 무결성 확인
Firebase App Check는 위조 앱과 자동화된 악용을 줄이기 위해 iOS에서 Apple App Attest를 사용하며, App Attest를 지원하지 않는 기기에서는 DeviceCheck를 사용합니다. 이 과정에서 Firebase 설치 식별자, 앱·기기 무결성 증명과 제한된 기술·진단 정보가 Apple 및 Google Firebase에 전송될 수 있습니다. 무결성 증명은 광고 개인화나 이용자 간 추적에 사용하지 않습니다.
티어 코인과 광고 보상 확인
계정에 연결된 티어 코인 잔액·변경 번호, 한국 시간 기준 일자별 광고 보상 횟수와 단일 요청 처리 상태를 처리합니다. 퀴즈 문제 완료 시 코인을 지급하고 게임 종료 보상을 한 번만 제공하기 위해 서버가 검증한 게임 세션 식별자, 해당 세션에서 지급된 코인 수, 완료·예약·지급 상태와 만료 시각을 비공개로 처리합니다. 티어 코인 상점이 제공되는 경우 구매한 배경·버튼·패널 테마 SKU, 구매 당시 코인 가격, 배경·버튼·패널별 현재 장착 선택과 중복 차감을 막는 요청 기록도 계정에 연결해 처리합니다. 광고를 시작할 때 서버가 만든 짧은 유효기간의 무작위 일회용 토큰을 Google Mobile Ads의 서버측 확인용 사용자 지정 데이터로 보내며, 이 토큰 자체에는 Firebase UID·이메일·닉네임이 들어 있지 않습니다. 광고 네트워크가 서명해 회신한 거래 ID, 광고 단위, 보상 이름·수량, 완료 시각과 토큰을 서버가 검증하고, 중복 지급을 막기 위해 토큰 해시·거래 확인 기록과 계정별 비공개 정리 인덱스를 처리합니다. Android 앱은 광고 도중 종료되거나 재시작된 경우 동일 요청을 안전하게 확인하기 위해 원시 토큰과 요청 상태를 설치 전용 내부 저장소에 일시 보관할 수 있습니다. 이 복구 기록은 기기 백업·이전에서 제외되며 처리 완료 시 즉시 제거합니다. Firebase의 원시 토큰과 계정 연결 기록은 앱이 직접 읽거나 쓸 수 없습니다.
광고 제거 1회 구매
기능이 제공되는 경우 Google Play 또는 App Store가 결제와 구매 기록을 처리합니다. TierSnap 앱은 스토어 SDK를 통해 구매 보유 여부를 기기에서 확인하지만, 카드 번호 같은 원시 결제 정보, 구매 영수증 또는 구매 토큰을 Firebase에 전송하거나 저장하지 않습니다.
커뮤니티 광고 익명 운영 지표
게임별 자유 커뮤니티와 “누구 잘못?”에서 배너·전면 광고의 요청·노출·클릭, 게시물 보기, 게시글·댓글 작성 및 영상 제보 생성을 UTC 일자별 누적 숫자로만 집계합니다. 커뮤니티 활동 성공 횟수는 기기에서 광고 빈도 진행도에 반영될 수 있지만, 제보 제출 성공 화면을 전면 광고로 가로막지 않고 이후 자연스러운 화면 전환에서만 노출을 시도합니다. 이 운영 집계와 중복 방지 기록에는 Firebase UID, 이메일, 닉네임, 게임·게시글·댓글·제출·YouTube 영상 ID, 작성자 키, 제목·본문·메모·신고 상세 등 이용자 또는 콘텐츠 식별자와 원문이 포함되지 않습니다.
이벤트 안내
기능이 제공되는 경우 운영자가 등록한 이벤트 이미지, 노출 일정·대상 플랫폼·연결 주소·이미지 대체 설명과 캠페인 설정을 처리합니다. 실제 표시, 이미지의 연결 동작, 닫기와 오늘 하루 보지 않기 선택은 이용자나 콘텐츠 식별자 없이 UTC 일자별 누적 숫자로 집계하며, 서버에는 사용자별 선택을 저장하지 않습니다. 패널 푸터 왼쪽의 오늘 하루 보지 않기 텍스트를 누르면 패널이 즉시 닫히고 같은 로컬 날짜에는 앱을 다시 실행해도 해당 캠페인이 표시되지 않습니다. 오른쪽 닫기, 기기 뒤로가기 또는 이미지의 연결 동작은 당일 숨김으로 처리하지 않으며 현재 앱 실행 중에만 패널을 닫습니다. 다음 로컬 날짜에 캠페인이 계속 활성 상태이면 다시 표시될 수 있습니다.
친구 초대
기능이 제공되는 경우 무작위 초대 코드, 코드 소유 계정 UID, 코드를 적용한 계정 UID, 현재 프로필 닉네임, 약관 동의 버전·시각, 캠페인 기간 중 정상 완료한 유효 게임 세션 수, 조건 완료·최종 검수 상태, 초대자별 집계와 악용 방지 기록을 처리합니다. 경품 지급 대상자의 TierSnap 가입 이메일은 최종 검수와 지급 안내에 사용됩니다. 연락처나 주소록은 수집하지 않습니다. 초대한 이용자에게는 초대받은 이용자의 현재 프로필 닉네임, 게임 세션 0–5 진행도와 조건 완료 여부가 표시되지만 UID·초대 코드·이메일·콘텐츠 식별자·내용 또는 정확한 활동 시각은 표시되지 않습니다. 친구 초대 조건 확인을 위해 커뮤니티 게시글이나 게시글·영상 식별자를 처리하지 않습니다. 운영 화면에는 계정별 수동 집계 수정 기능을 제공하지 않으며 일별·전체 집계와 검수에 필요한 최소 정보만 제한적으로 처리합니다.
기기 내 저장
언어, 이용 분석 선택, 광고 노출 진행도, 일회성 리뷰 안내 여부, 커뮤니티 알림 선택, 중단된 플레이 복구 정보, 짧은 티어 코인 광고 요청 복구 상태와 오늘 하루 보지 않기를 선택한 이벤트 캠페인 ID·기기의 로컬 날짜 등은 UserDefaults 또는 이에 준하는 로컬 저장소에 보관될 수 있습니다. 일반 닫기 상태는 현재 앱 실행 중에만 유지하고, 오늘 하루 보지 않기 상태는 선택한 로컬 날짜가 끝날 때까지만 유지합니다. 이용 분석 선택과 티어 코인 광고 요청 복구 상태는 기기 백업이나 이전으로 복원하지 않습니다.

비밀번호, 인증번호, 결제 정보는 TierSnap 운영자에게 보내지 마세요. 로그인 비밀번호와 인증 절차는 각 인증 제공자가 직접 처리합니다.

2. 이용 목적

  • 로그인, 계정 식별, 닉네임 중복 방지, 선택한 프로필 사진 표시와 사용자 설정 유지
  • 퀴즈 진행, 정답 통계, 랭킹, 세션 복구와 게임 결과 제공
  • 퀴즈 영상 제안 접수·검토·게시, 본인 제안 내역 제공 및 악용 방지
  • 재생 불가·잘못된 영상·티어 등 게임 문제 영상 신고 접수, 중복·과다 신고 방지 및 영상 품질 개선
  • “누구 잘못?” 제보의 본인 전용 처리 상태 제공, 게시물의 사전 검토·게시, 공개 후 익명 투표 결과 제공, 신고 처리, 이용자 차단, 콘텐츠 숨김과 반복 악용 방지
  • 게임별 자유 커뮤니티 글·댓글의 즉시 게시, 신고 검토, 이용자 차단, 콘텐츠 숨김·복구, 반복 악용 방지를 위한 작성자 정지와 정지 해제
  • 이용자가 선택한 경우 본인 게시글의 새 댓글과 본인 댓글의 새 답글 알림 제공
  • 플레이 시간과 기능 이용 현황을 이용한 서비스 품질 개선
  • 이용자가 별도로 동의한 경우 가명 설치 단위의 Firebase 이용 분석을 통한 화면·기능 흐름과 퀴즈 품질 개선
  • 배너·전면·보상형 광고 제공, 광고 빈도 관리, 부정 트래픽 방지와 광고 성과 측정
  • 티어 코인 잔액·한국 시간 기준 일일 한도 제공, 서명된 광고 완료 확인, 테마 구매·장착과 중복 지급·차감·재전송·변조 방지
  • 기능이 제공되는 경우 이벤트 안내·노출 빈도 관리·비식별 운영 측정, 친구 초대 코드 발급, 정상 완료한 게임 세션 5판의 캠페인 조건 확인, 초대받은 이용자의 현재 프로필 닉네임과 조건 진행 상태 제공, 최종 순위 검수·경품 지급 및 중복·자기 초대 등 악용 방지
  • 필수 업데이트 안내, 장애 진단, 문의 대응과 법적 의무 준수

3. 외부 제공자와 정보 처리

TierSnap은 아래 서비스를 이용합니다. 필요한 범위의 정보가 각 제공자의 서버에서 처리될 수 있으며, 구체적인 처리 방식은 해당 제공자의 정책을 함께 확인해 주세요.

Google Firebase 인증, 실시간 데이터베이스, 서버 함수, 이벤트 이미지와 서버가 정규화한 프로필 사진 저장, 사용자가 켠 경우에만 생성·등록되는 커뮤니티 푸시 토큰, 선택형 이용 분석, App Check와 App Attest·DeviceCheck 기반 앱 무결성 확인 Firebase 개인정보 안내
Google Mobile Ads · UMP 광고, 동의 선택, 광고 측정과 부정 트래픽 방지 Google 광고 정책
Unity Ads Google AdMob 미디에이션을 통한 광고 제공 가능 Unity 개인정보처리방침
Apple · Google 로그인 이용자가 선택한 계정 인증과 토큰 처리 Apple 개인정보 안내
Google Play · App Store 광고 제거 1회 구매의 결제, 구매 기록과 같은 플랫폼 내 구매 복원 Google 개인정보처리방침
YouTube 퀴즈 또는 커뮤니티 영상 화면을 열면 iframe 플레이어와 미디어 리소스가 로드되고 자동 재생될 수 있습니다. 이때 YouTube가 IP 주소, 기기·브라우저 정보, 요청 출처, 재생·상호작용 정보와 쿠키 또는 유사 저장소를 처리할 수 있습니다. Google 개인정보처리방침 YouTube 이용약관

iOS의 ATT 요청에서 허용을 선택한 경우에만 광고 식별자 접근이 가능하며, 허용해도 지역별 UMP 동의 결과와 기타 플랫폼 제한에 따라 비개인 맞춤형 광고가 표시될 수 있습니다. 거부·제한 시에는 모든 Google 광고 요청을 비개인 맞춤형으로 제한하고 IDFA를 보내지 않습니다. 광고 개인정보 옵션은 앱 설정에서 다시 확인할 수 있고, ATT 권한은 iOS 설정에서 변경할 수 있습니다. 자세한 내용은 Google 광고 데이터 안내를 확인해 주세요.

4. 보관 기간과 파기

  • 계정·프로필: 계정 삭제 시까지 보관하며, 삭제 요청이 완료되면 계정과 연결된 경로에서 제거합니다.
  • 프로필 사진: 현재 사진은 교체·직접 삭제 또는 계정 삭제 시까지 보관합니다. 교체하거나 삭제하면 이전 Storage 객체와 비공개 소유·정리 인덱스를 제거하며, 일시적인 Storage 장애가 있으면 계정에 연결된 비공개 재시도 인덱스를 삭제 성공 시까지 유지합니다. 계정 삭제는 사진 객체 삭제를 확인한 뒤 비공개 사진 메타데이터와 인증 계정을 순서대로 제거합니다.
  • 계정 삭제 안전 표식: 삭제가 시작된 뒤 오래된 앱 요청이나 지연된 서버 작업이 삭제한 정보를 다시 만들지 못하도록 Firebase UID, 삭제 진행·완료 상태와 요청·완료 시각만 담은 최소 표식을 서비스 운영 기간 동안 보관합니다. 이 표식에는 프로필, 게시물, 투표 선택이나 기타 이용 내용이 포함되지 않습니다.
  • 플레이·랭킹 기록: 서비스 제공 기간 동안 보관합니다. 계정 삭제 시 UID와 연결된 세션·랭킹 기록을 제거합니다.
  • 선택형 Firebase 이용 분석: 앱 설치 직후에는 수집하지 않으며, 설정에서 이용자가 직접 켠 동안에만 가명 앱 인스턴스 단위로 처리합니다. 이용 분석을 끄거나 현재 기기에서 계정을 삭제하면 기기의 수집을 중단하고 로컬 Analytics 데이터와 앱 인스턴스 ID를 초기화합니다. 이미 전송된 과거 이벤트에는 TierSnap 계정 UID를 넣지 않았으므로 계정으로 조회하거나 연결하지 않으며, Google Analytics 속성의 적용 중인 보존·삭제 설정과 비식별 집계 처리에 따라 보관 또는 삭제될 수 있습니다.
  • 퀴즈 영상 제안: 대기 중인 제안과 본인 전용 제안 내역 전체는 계정 삭제 시 해당 UID 경로에서 제거합니다. 검토가 끝난 운영 기록은 제출자가 계정을 삭제하면 제출자 UID·닉네임·선택 입력 메모와 반려 설명을, 검토 담당자가 계정을 삭제하면 담당자 UID·이메일·자유 입력 검토 메모와 반려 설명을 지우고 비식별 영상·결정·시각 메타데이터만 남길 수 있습니다. 이 내역은 “누구 잘못?”의 별도 내 영상 제보 이력과 구분됩니다.
  • 게임 문제 영상 신고: 신고자 UID, 사용자별 중복 방지 기록과 일일 제한 기록은 계정 삭제 시 제거합니다. 운영상 남겨야 하는 신고는 신고자 UID를 개인을 가리키지 않는 “[deleted]” 표식으로 바꾸고 자유 입력 상세 내용을 삭제합니다. 게임·영상 ID, 정해진 사유, 처리 상태·시각 및 UID 없는 사유별 익명 집계는 영상 오류 개선과 운영 무결성을 위해 남을 수 있습니다.
  • “누구 잘못?” 제보와 게시물: 검토 대기 원문은 취소·검토 완료 또는 계정 삭제 때 활성 대기열에서 제거합니다. 게임, YouTube 영상 ID, 제출·갱신 시각, 처리 상태, 정해진 반려 분류, 운영팀 작성 반려 설명과 공개 게시물 연결 정보로 구성된 본인 전용 제출 이력은 계정이 유지되는 동안 처리 상태를 보여 주기 위해 보관될 수 있으며 계정 삭제 시 해당 UID 아래의 이력 전체를 제거합니다. 승인된 게시물은 영상 제보자가 삭제하거나 운영팀이 숨길 때까지 공개될 수 있습니다. 계정 삭제 시 해당 제보에 연결된 공개·숨김 게시물 원문과 제보자 식별 정보를 제거합니다. 제보 원문과 구분된 운영팀 작성 공개 질문·상황 설명·양쪽 선택지 및 비식별 처리 기록은 아래 설명과 같이 남을 수 있습니다.
  • “누구 잘못?” 투표·신고·차단·제재: 계정과 연결된 개별 투표, 처리 전 신고, 차단 목록 및 제재 UID 기록은 해당 기능 제공 중 또는 계정 삭제 시까지 보관합니다. 계정 삭제 시 검증 가능한 투표 합계에서는 해당 이용자의 선택을 선택지별·전체 합계에서 차감합니다. 손상되거나 누락되어 검증할 수 없는 익명 집계는 무결성 보호를 위해 남을 수 있지만, 계정과 연결된 개별 투표는 삭제합니다. 신고 처리 뒤 원본 신고는 제거될 수 있으며, 사유별 신고 수·처리 결과·처리 시각처럼 신고자와 작성자를 식별하지 않는 검토 기록은 안전 운영과 분쟁 대응을 위해 필요한 기간 동안 남길 수 있습니다.
  • 게임별 자유 커뮤니티 글·댓글: 공개 원문은 이용자가 직접 삭제하거나 운영팀이 숨기거나 계정을 삭제할 때까지 보관될 수 있습니다. 자가 삭제한 원문은 공개 화면에서 즉시 제거되며 다시 공개하지 않습니다. 다만 삭제 전에 신고된 원문은 신고 회피 방지와 안전 검토를 위해 공개되지 않는 증거로 검토 완료 시까지 필요한 기간 동안 한시 보관될 수 있습니다. 신고가 처리되면 해당 증거를 제거하거나 개인과 연결되지 않도록 정리하고, 작성자 계정이 삭제되면 연결된 공개·숨김·신고 증거 원문과 작성자 키·닉네임을 즉시 제거합니다.
  • 커뮤니티 댓글 알림: 알림을 켠 동안 계정과 연결된 Firebase Cloud Messaging 등록 토큰을 보관합니다. 앱에서 알림을 끄면 서버 등록을 해제하고, 더 이상 유효하지 않은 토큰은 전송 결과를 확인해 제거할 수 있습니다. 계정 삭제 시 해당 계정의 모든 알림 토큰을 제거합니다.
  • 운영팀 게임별 공지: 활성 공지는 운영팀이 게시를 종료할 때까지 게임별 공지 영역에 표시될 수 있습니다. 게시 종료 시 공개 공지와 댓글·답글은 제거되고 공지 원본과 UID·이메일이 없는 작업·감사 기록은 운영 보관소에 남을 수 있습니다. 처리 전인 댓글 신고의 신고자·대상 연결, 비공개 증거와 검토 정보는 신고 회피 방지와 안전 검토를 위해 검토 완료 시까지 필요한 기간 동안 한시 보관할 수 있으며 대상은 삭제된 것으로 표시되어 복구할 수 없습니다. 이용자 계정 삭제는 그 이용자가 공지에 작성한 댓글·답글과 연결 정보만 제거하며 서버 소유 공지 자체는 다른 이용자의 계정 데이터로 처리하지 않습니다.
  • 사례 토론방: 사례가 공개된 동안 서버 소유의 공지형 방과 사례↔방 비공개 연결 인덱스를 유지할 수 있습니다. 원본 사례가 제보자 삭제·계정 삭제 또는 운영팀 숨김으로 비공개가 되면 방·댓글·답글은 즉시 접근 불가로 처리하고 공개 원문과 일반 작성자·위치 연결을 잠금된 정리 작업으로 제거합니다. 다만 이미 접수되어 처리 전인 댓글 신고는 신고 회피 방지와 안전 검토를 위해 신고 원문, 신고자·대상 연결, 비공개 증거와 검토 정보를 검토 완료 시까지 필요한 기간 동안 한시 보관할 수 있습니다. 이때 대상은 삭제된 것으로 표시되어 원문을 복구할 수 없고, 검토가 끝나면 증거를 제거하거나 개인과 연결되지 않도록 정리합니다. 같은 작성자에 대해 다른 게시글에서 접수된 신고와 처리 중인 안전 작업은 사례 토론방 삭제만으로 제거하지 않습니다.
  • 게임별 자유 커뮤니티 신고·차단·제재: 처리 전 신고, 신고자의 사용자별 인덱스, 차단의 양방향 연결, 정지 상태, 요청 중복 방지와 사용량 제한 기록은 안전 기능 제공에 필요한 동안 또는 계정 삭제 시까지 보관합니다. 계정 삭제 시 본인이 작성한 신고와 차단 연결, 정지·작성자 연결·요청 기록을 제거하고, 본인 콘텐츠·작성자를 대상으로 한 신고 원문과 숨김 보관본도 제거합니다. UID·이메일·원문 스냅샷이 없는 조치·사유·시각 감사 기록만 안전 운영을 위해 남을 수 있습니다.
  • 커뮤니티 광고 익명 운영 지표: UID·이메일·닉네임·게임 또는 콘텐츠 식별자 없이 UTC 일자별로 합산한 광고 및 커뮤니티 이벤트 수는 90일 동안 보관합니다. 중복 집계를 막는 무작위 작업 기록과 비식별 설정 작업·감사 기록은 7일 동안 보관합니다. 새 지표 기록이나 비공개 운영 조회·설정 호출 때 보존 기간이 지난 기록을 제한된 범위로 순차 정리합니다.
  • 티어 코인: 계정별 잔액·변경 번호와 한국 시간 기준 일일 보상 횟수, 구매한 배경·버튼·패널 테마 SKU와 구매 가격 및 배경·버튼·패널별 현재 장착 선택은 계정을 유지하는 동안 보관하고 계정 삭제 시 제거합니다. 게임 종료 추가 보상의 미사용·예약 기록은 게임 완료 후 최대 24시간, 지급 완료 표식은 중복 지급 방지를 위해 14일 보관합니다. 테마 구매·장착의 중복 처리를 막는 계정별 요청 기록은 14일 동안 보관합니다. 서버의 광고 시작용 원시 일회용 토큰과 해당 시작 요청 기록은 30분 유효기간이 끝나면 정기 정리 작업으로 함께 제거되며 통상 발급 후 1시간 안에 삭제됩니다. 서명 확인을 마친 콜백의 토큰 해시와 광고 거래 필드는 일시적인 서버 장애 뒤 지급을 재시도하기 위해 최대 24시간 보관합니다. 성공한 시작 요청은 원시 토큰이 없는 재사용 방지 표식으로 14일 보관하지만, 취소된 요청에는 별도 취소 영수증을 만들지 않습니다. 검증된 광고 거래의 재전송을 차단하기 위한 토큰 해시·거래 기록과 계정별 정리 인덱스는 90일 보관합니다. Android의 설치 전용 복구 기록은 지급·취소·만료 확인 때 즉시 제거하고, 다음 앱 실행 때 최초 저장 후 7일이 지난 기록을 사용하기 전에 제거하며, 앱 삭제 때 함께 삭제되고 기기 백업·이전에서 제외됩니다. 계정 삭제 시 계정별 지갑·일일 기록·게임 종료 보상 기록·대기 요청·작업 기록·거래 인덱스와 테마 보유·장착·구매·요청 기록을 제거하며, UID·이메일·닉네임이 없고 토큰 해시와 거래 ID만 포함한 전역 중복 방지 영수증은 발급 후 최대 90일까지 남을 수 있습니다.
  • 이벤트 안내·친구 초대: 기능 제공, 진행 상태 표시, 최종 검수와 안전 운영에 필요한 동안 이벤트 이미지·설정, 약관 버전, 초대 코드·계정별 초대 관계, 정상 완료한 게임 세션 진행 상태, 확정 순서와 악용 방지 기록을 보관합니다. 초대한 이용자에게는 초대받은 이용자의 현재 프로필 닉네임과 게임 세션 진행도만 제공되며 UID·이메일·콘텐츠 식별자나 내용은 제공되지 않습니다. 친구 초대 조건 확인을 위해 커뮤니티 게시글을 추적하지 않습니다. 계정 삭제 시 해당 계정과 연결된 초대 코드·관계·진행·요청 기록은 삭제하거나 개인과 연결되지 않도록 정리하며, 지급·분쟁 또는 법적 의무에 필요한 최소 기록은 필요한 기간 동안 제한적으로 보관할 수 있습니다. UID·이메일·콘텐츠 식별자가 없는 일자별 이벤트·초대 합계는 서비스 품질과 무결성을 위해 남을 수 있습니다. 이 기능은 계정 연결 정보의 삭제 절차가 적용되는 버전에서만 활성화합니다.
  • 광고 제거 구매: 구매는 TierSnap 계정이 아니라 구매에 사용한 Google Play 또는 App Store 계정에 귀속됩니다. TierSnap 계정을 삭제해도 구매가 자동으로 환불되거나 스토어의 구매 기록이 삭제되지 않습니다. 같은 플랫폼에서 구매에 사용한 동일한 스토어 계정으로 구매 복원을 시도할 수 있으며, Android 구매와 iOS 구매는 서로 공유되거나 복원되지 않습니다. 구매가 확인되면 배너·전면·보상형을 포함한 모든 광고가 제거됩니다. 닉네임 변경·부활처럼 광고 시청을 이용 조건으로 쓰던 기능은 적용되는 앱 정책에 따라 광고 없이 제공되지만, 광고 시청 자체가 지급 조건인 티어 코인 적립은 이용할 수 없습니다. 앱 공지·이벤트 안내는 광고가 아니므로 계속 표시될 수 있습니다.
  • 익명 집계: 답변·점수 분포, 커뮤니티 선택지별 투표 수 및 캠페인 숫자처럼 UID가 없고 개인을 직접 식별하지 않는 누적 통계는 서비스 품질과 무결성을 위해 유지될 수 있습니다.
  • 제공자 로그: 보안, 광고 부정 방지와 법적 의무를 위한 기술 로그는 각 제공자의 정책 및 관계 법령에 따른 기간 동안 보관될 수 있습니다.

보관 목적이 끝나면 복구가 어렵도록 삭제하거나 개인과 연결되지 않는 집계 형태로 전환합니다.

5. 계정과 데이터 삭제

Android 또는 iOS 앱에서 다음 순서로 계정을 직접 삭제할 수 있습니다.

  1. TierSnap에 로그인합니다. Android는 홈의 프로필 카드 아래에서, iOS는 설정에서 삭제 메뉴를 엽니다.
  2. 계정 삭제를 선택하고 안내 내용을 확인합니다.
  3. 최종 확인을 완료합니다. Apple 로그인 계정은 보안을 위해 Apple 인증 화면이 한 번 더 나타날 수 있습니다.

완료되면 Firebase 인증 계정, 프로필, 프로필 사진 Storage 객체와 비공개 사진 소유·작업·정리 인덱스, 본인이 소유한 닉네임 예약, 랭킹, UID별 플레이 기록, 대기 중인 퀴즈 영상 제안과 본인 전용 제안 내역 전체, “누구 잘못?”의 별도 내 영상 제출 이력 전체와 대기·공개·숨김 게시물 원문, 개별 투표, 신고자·신고 대상 UID가 포함된 처리 전 신고, 본인의 차단 목록과 다른 이용자의 목록에 남은 본인 UID, 제재 및 커뮤니티 중복 요청 방지용 UID 기록이 삭제됩니다. 커뮤니티 검토 기록에서는 삭제 계정과 연결된 제보자·신고자·검토 담당자 UID와 담당자 이메일, 닉네임, 제보 영상·게임·자유 입력 메모 및 반려 설명을 제거합니다. 운영팀이 게시를 위해 별도로 작성한 질문·상황 설명·양쪽 선택지와 비식별 결정·처리 시각은 제보자의 원본 데이터가 아니므로 운영 기록으로 남을 수 있습니다. 숨김·제재 기록의 운영상 필수 담당자 식별 필드는 개인을 가리키지 않는 고정된 “[deleted]” 표식으로 바꿀 수 있습니다. 완료된 영상 제안 검토에서는 삭제 대상이 제출자이면 제출자 UID·닉네임·선택 입력 메모와 반려 설명을, 삭제 대상이 검토 담당자이면 담당자 UID·이메일·자유 입력 검토 메모와 반려 설명을 제거하고 YouTube ID·URL 등 비식별 영상·결정·시각 메타데이터는 유지될 수 있습니다. 게임 문제 영상 신고에서는 삭제 대상 신고자의 UID·자유 입력 상세 내용·사용자별 중복 방지 및 일일 제한 기록을 제거하고, UID 없는 게임·영상·정해진 사유·처리 상태·시각과 익명 집계는 남을 수 있습니다. 게임별 자유 커뮤니티에서는 본인이 작성한 공개·숨김 글과 댓글, 신고 전용 비공개 증거, 작성자 키·닉네임·UID 연결, 본인이 제출한 신고, 본인 콘텐츠·작성자를 대상으로 한 신고 원문, 차단의 양방향 연결, 정지 상태, 가이드 동의, 사용량 제한과 중복 요청 기록 및 커뮤니티 알림 토큰을 제거합니다. 삭제 전에 신고된 콘텐츠도 계정 삭제가 완료되면 안전 검토 대기 여부와 관계없이 작성자와 연결된 증거 및 신고 그룹을 즉시 정리하며, 이용자가 삭제한 콘텐츠는 복구하지 않습니다. UID·이메일·원문 스냅샷이 없는 비식별 조치·사유·시각 기록만 남을 수 있습니다. 검증 가능한 투표 합계에서는 삭제된 이용자의 선택을 차감합니다. 집계가 손상되거나 누락되어 검증할 수 없으면 개별 투표만 삭제하고 UID 없는 익명 합계는 무결성 보호를 위해 남을 수 있습니다. 그 밖에 답변·점수·커뮤니티 투표의 UID 없는 누적 수치와 사유별 신고 수·결정·처리 시각 등 비식별 검토 메타데이터는 남을 수 있습니다. 친구 초대 기능이 제공된 경우 해당 계정이 소유한 초대 코드와 계정별 초대 관계·조건 진행·확정 순서·악용 방지 기록도 삭제하거나 개인과 연결되지 않도록 정리합니다. 지급 전 계정을 삭제하면 공식 이벤트 규칙에 따라 참가 자격과 지급에 필요한 연결을 유지할 수 없어 이벤트 참여가 취소될 수 있으며, UID·이메일·콘텐츠 식별자가 없는 합계만 남을 수 있습니다. 티어 코인 기능이 제공된 경우 계정별 지갑·일일 보상 횟수·대기 요청·작업 기록과 계정별 거래 정리 인덱스를 제거합니다. UID·이메일·닉네임 없이 토큰 해시와 광고 거래 ID만 담은 전역 중복 방지 영수증은 재전송 차단을 위해 최초 거래 후 최대 90일까지 남을 수 있습니다. 광고 제거 구매는 TierSnap 계정과 별개인 스토어 계정에 귀속되므로 계정 삭제만으로 자동 환불되거나 스토어 구매 기록에서 삭제되지 않습니다. 예외적으로, 삭제한 정보의 재생성을 막는 최소 계정 삭제 안전 표식에는 Firebase UID와 삭제 상태·시각만 남으며 서비스 운영 기간 동안 보관됩니다.

현재 기기에서 계정을 삭제하면 선택형 Firebase 이용 분석도 비활성화하고 로컬 Analytics 데이터와 가명 앱 인스턴스 ID를 초기화합니다. 이미 전송된 이벤트에는 Firebase 사용자 ID·이메일·닉네임을 넣지 않고 Analytics User-ID도 설정하지 않으므로 TierSnap 계정 삭제 백엔드가 UID로 선택해 삭제할 수 있는 계정 연결 Analytics 기록은 없습니다. 과거의 설치 단위 이벤트와 비식별 집계는 Google Analytics 속성의 보존·삭제 설정에 따라 처리됩니다.

앱을 사용할 수 없거나 삭제가 완료되지 않으면 계정에 사용한 이메일에서 support@brainrottedgames.com으로 요청해 주세요. 본인 확인이 필요할 수 있으며, 정당한 요청은 통상 즉시 또는 확인 후 30일 이내 처리합니다.

6. 보안과 국외 처리

전송 구간 암호화, Firebase 보안 규칙, 인증된 서버 함수, 최소 권한 접근과 운영 권한 분리를 사용해 정보를 보호합니다. 다만 인터넷 전송이나 저장 시스템의 절대적인 안전을 보장할 수는 없습니다.

Google, Apple, Unity 등 글로벌 제공자를 이용하므로 정보가 대한민국 외 지역의 서버에서 처리될 수 있습니다. 해당 처리는 서비스 제공, 보안, 광고와 지원을 위해 필요한 범위에서 제공자 정책과 적용 법률에 따라 이루어집니다.

7. 아동의 개인정보

TierSnap은 만 14세 미만 아동을 주 이용자로 설계하지 않았습니다. 법정대리인의 동의 없이 아동의 개인정보가 처리되었다고 판단되면 아래 연락처로 알려 주세요. 확인 후 필요한 삭제 또는 제한 조치를 진행합니다.

8. 이용자 권리와 문의

이용자는 자신의 정보에 대한 열람, 정정, 삭제, 처리 제한 및 동의 철회를 요청할 수 있습니다. 닉네임은 앱 기능에 따라 변경할 수 있으며, 계정 삭제는 위 절차를 이용해 직접 진행할 수 있습니다. Firebase 이용 분석은 광고·계정·알림 동의와 별개인 기본 비활성 선택이며, 설정에서 언제든지 켜거나 끌 수 있습니다. 끄더라도 게임과 계정 기능은 그대로 이용할 수 있습니다.

운영 주체
TierSnap 운영자
개인정보 문의
support@brainrottedgames.com
지원 페이지
TierSnap 고객지원

정책이 변경되면 이 페이지의 최종 수정일을 갱신하고, 중요한 변경은 앱 또는 서비스 화면에서 추가로 안내합니다.

English version

TierSnap Privacy Policy

Effective: August 11, 2026 · Last updated: August 31, 2026

TierSnap processes only the information needed to provide accounts, gameplay, rankings, clip submissions, the “Who’s at fault?” community, service operations, and advertising. The operator does not sell personal information for money. Only “Who’s at fault?” posts are reviewed by the operations team before publication. Posts and comments in the separate game-by-game free community may become public immediately and are then subject to user reports, blocks, and ongoing moderation. On iOS, TierSnap asks for App Tracking Transparency (ATT) permission before initializing the advertising SDK. Denying or restricting ATT does not remove gameplay or ads; every Google ad request is explicitly limited to non-personalized treatment.

Information we process

  • Account and profile: Firebase user ID, sign-in provider, email supplied by that provider, nickname, nickname-reservation key, and, if selected by the user, a locally cropped square profile image. The server decodes and validates it, strips source metadata, and re-encodes it as a 512×512 WebP. The profile uses only a random image ID and revision, not the original filename, Storage path, or UID.
  • Gameplay: app opens, game and mode, session times and duration, answered rounds, exact answers, score, streak, leaderboard entry, language, app version, and timestamps.
  • Optional Firebase usage analytics: only after the user expressly enables Usage Analytics in Settings, Firebase Analytics processes a pseudonymous app-instance ID, automatic app and device dimensions such as app and OS version, language and coarse region, and a fixed set of interactions: app and Home views, game selection, quiz start, answer and completion, supported community views and successful creation actions, community-notification choice, and the start of the ad-removal checkout screen. Custom events use only allowlisted game and mode categories, answer outcomes, and bounded round, score, and streak counts. While usage analytics is enabled, a verified ad-removal purchase may also produce the store and Analytics SDK's in_app_purchase event with a product identifier, price or value, currency, quantity, and transaction information; TierSnap does not duplicate it as a custom revenue-completion event. Linked AdMob, Firebase, and the Mobile Ads SDK may also process ad impressions, clicks, exposure time, estimated revenue, and ad-unit, screen, format, and source dimensions as automatic Analytics events while that choice is on; TierSnap does not add manual advertising events or parameters. Analytics contains no Firebase user ID, email, nickname, advertising ID, post, comment, video or submission ID, content text, note, or purchase token. TierSnap does not set an Analytics User-ID or any custom user property.
  • Aggregate answers: tier choices are added to per-video counters. Public distributions do not display an individual user's answer history.
  • Quiz clip suggestions: YouTube ID and URL, game, tier, optional note, submission time, review status, app version, language, and the submitter's UID and nickname. Completed review records can include the reviewing staff member's UID and email, decision, reason, optional review note, and time. A separate owner-only Suggestion history stores the game, YouTube ID, tier, submission and status-update times, pending, approved, or rejected status, published game and clip IDs for approvals, and, for rejections, a server-approved fixed reason code and an operations-team-authored explanation shown to the submitter.
  • In-quiz video problem reports: the current game and YouTube video ID, a fixed reason code (video not playing, wrong video, wrong tier, inappropriate, or other), required detail for “other” up to 500 characters, report and update times, processing status, and reporter UID. Reports are accepted only through a server function and sent through a private review workflow. Information provided to the operations team omits reporter UID, email, and profile data.
  • “Who’s at fault?” reports and posts: the original report contains the reporter-selected game, YouTube ID, optional report note, community-guideline version, submission time, reporter UID and nickname, and review state. “My videos” uses a separate owner-only submission history containing the game, YouTube ID, submission and status-update times, pending, published, rejected, cancelled, hidden, or deleted state, an approved rejection category and operations-team-authored explanation where applicable, and a public-post reference where applicable. On approval, the operations team separately writes the public question, situation description, and two side labels. Those operations-team-authored fields are distinct from the reporter's original data; publication time and later visibility or deletion state are also processed.
  • “Who’s at fault?” voting and safety: a user's choice and update time for each post; option totals without UIDs; reporter UID, target post and its video submitter UID, reason, optional report detail, time and status; blocked UIDs and block times; suspension state; and moderation records containing review-staff UID and email, decision, reason, optional note, and processing time. “View stats” for a published submission shows the same UID-free aggregate option totals used on other public screens; it does not reveal individual voters or their choices.
  • Game-by-game free community: when enabled, the selected game, post title and body, comment body and reply relationship, creation and update times, state, public nickname, private account UID, and a community author key. These posts and comments may be visible immediately without prior approval, so users should not include personal information or contact details.
  • Community comment notifications: on Android or iOS, when a user expressly enables notifications, the service links the user's Firebase ID with a Firebase Cloud Messaging registration token, platform, and token-update time. It sends a generic notification when another user comments on the user's post or replies to the user's comment, with routing data that opens the relevant game and post. Comment text is not included in push data, and the service does not notify a user about that user's own comment or reply.
  • Game-community safety: reporter UID, reported post, comment, or author, a fixed reason, optional detail and time; account blocks and times; author suspension state; and operations-team action, reason, and time. Information provided for operations review omits reporter UID and email and contains only the reported author's nickname and community author key, fixed reasons, and the evidence needed for review.
  • Attribution and operations: campaign or creator install-referrer fields, access/install timestamps, security events, technical service logs where applicable, and a deletion-safety marker containing the deleted Firebase UID, deletion state, and request/completion times.
  • Advertising and device signals: consent choices, ad impressions, clicks, rewards and errors, plus device identifiers, device type, OS, coarse location inferred from IP address, app and ad interactions, crash, performance and other diagnostic data, and ad-performance signals processed by ad SDKs. If the user authorizes ATT on iOS, Google Mobile Ads may access the IDFA for more relevant ads and advertising measurement. When ATT is denied, restricted, or not yet determined, TierSnap resolves that status before ad-SDK initialization and applies an explicit non-personalized signal to every banner, interstitial, and rewarded request. ATT authorization does not override regional UMP consent or other privacy choices.
  • App integrity: Firebase App Check uses Apple App Attest on supported iOS devices and falls back to DeviceCheck when App Attest is unavailable. Firebase installation identifiers, app and device attestation, and limited technical or diagnostic information may be sent to Apple and Google Firebase to reject counterfeit clients and automated abuse. TierSnap does not use integrity attestations for ad personalization or cross-app tracking.
  • Tier Coins and reward verification: an account-linked Tier Coin balance and revision, the Korea Standard Time reward day and count, and single-request processing state. To credit completed quiz questions and offer a completed game's extra reward only once, the service privately processes the server-validated game-session identifier, Coins credited in that session, completion/reservation/credit state, and expiry time. When the Tier Coin shop is available, the service also processes the purchased background, button, or panel theme SKU, Coin price at purchase, independently equipped background, button, and panel choices, and request receipts that prevent duplicate deductions. When an ad starts, the server supplies Google Mobile Ads with a short-lived random one-time token as server-side-verification custom data. The token itself contains no Firebase UID, email, or nickname. The server verifies the ad network's signed transaction ID, ad unit, reward name and amount, completion time, and token, and processes token hashes, transaction receipts, and a private per-account cleanup index to prevent duplicate credit. If Android closes or restarts during an ad, the app may temporarily keep the raw token and request state in installation-only internal storage so it can safely resume the same request. This recovery record is excluded from device backup and migration and is removed as soon as processing reaches a terminal state. The app cannot directly read or write Firebase's raw-token or account-linked wallet records.
  • One-time ad-removal purchase: when available, Google Play or the App Store processes the payment and purchase record. The TierSnap app checks purchase ownership on the device through the store SDK, but it does not send or store raw payment details such as card numbers, purchase receipts, or purchase tokens in Firebase.
  • Anonymous community-ad operations metrics: UTC-day aggregate counts for banner and interstitial requests, impressions and clicks in the game-by-game and “Who’s at fault?” communities, plus post views, post or comment creation, and video-submission creation. Successful community-action counts may advance on-device ad-frequency progress, but a successful submission screen is not interrupted by an interstitial; an ad is attempted only at a later natural screen transition. These aggregates and their deduplication records contain no Firebase UID, email, nickname, game, post, comment, submission or YouTube video ID, author key, title, body, note, report detail, or other user or content identifier.
  • Event notice: when enabled, the service processes an operations-supplied image, schedule, target platforms, destination link, accessibility label, and campaign configuration. Actual impressions, image-link actions, dismissals, and “do not show again today” selections are counted only as UTC-day aggregates without user or content identifiers; the server does not store each user's choice. Tapping the “do not show again today” text on the left side of the footer immediately closes the event notice and keeps that campaign hidden across app restarts for the same local date. The Close text on the right, the device Back action, and an image-link action do not create daily suppression and close the event notice only for the current app run. The campaign may appear again on the next local date if it remains active.
  • Friend invites: when enabled, the service processes a random invite code; inviter and invitee account UIDs; the invitee's current profile nickname; accepted terms version and time; the number of distinct valid game sessions successfully completed during the campaign; provisional and final-review state; inviter totals; and abuse-prevention records. A prize recipient's TierSnap registration email is used for final review and prize delivery. It does not collect contacts or address books. The inviter sees the invitee's current profile nickname, game-session progress from 0–5, and completion status, but not the invitee's UID, code, email, content identifiers or content, or exact activity time. Community posts and their identifiers are not processed for referral qualification.
  • On-device data: language, the usage-analytics choice, ad-frequency progress, one-time review-prompt state, community-notification choice, interrupted-session recovery state, short-lived Tier Coin ad-request recovery state, and the event campaign ID and device-local date selected for “do not show again today” may be stored locally. An ordinary event-notice dismissal lasts only for the current app run, while the daily-hide state lasts only through the selected local date. The usage-analytics choice and Tier Coin ad-request recovery state are excluded from device backup and migration.

Purposes and service providers

We use this information to authenticate users, prevent duplicate nicknames, run quizzes and rankings, restore sessions, review quiz clip suggestions, show each user their own quiz suggestion history, show users their separate “Who’s at fault?” submission status, pre-moderate and publish those posts, provide anonymous voting results, and process their reports and blocks, publish game-by-game free-community posts and comments immediately when the feature is enabled, process reports and blocks, hide or restore content, and suspend or unsuspend authors, receive in-quiz video problem reports, prevent duplicate or excessive reports, and fix broken or incorrect quiz videos, display a user-selected profile image, send new-comment and new-reply notifications when the user enables them, enforce community safety, improve reliability, serve and measure ads, maintain Tier Coin balances and Korea Standard Time daily limits, verify signed ad completion, buy and equip cosmetic themes, prevent duplicate or altered reward and deduction requests, provide event notices and anonymous event measurement, issue friend-invite codes, verify the five-valid-game-session campaign requirement, show invitee profile nicknames and requirement progress to their inviters, finalize rankings, and deliver prizes when enabled, provide required-update notices, and answer support requests. We use Google Firebase, including App Check with Apple App Attest or DeviceCheck, optional Firebase Analytics when enabled by the user, Cloud Messaging only after community-notification opt-in, and Storage for event images and server-normalized profile images; Google Sign-In; Sign in with Apple; Google Mobile Ads and UMP; Unity Ads through mediation; the Google Play and App Store payment services; and the embedded YouTube player. Opening a quiz or community video loads the YouTube iframe and media resources and may autoplay the video. YouTube may process IP address, device and browser information, request referrer, playback and interaction data, and cookies or similar storage under the Google Privacy Policy and YouTube Terms of Service. These providers may process information in countries outside Korea.

The iOS app requests ATT permission before advertising SDK initialization. Only authorization permits IDFA access; denial or restriction causes every Google ad request to use explicit non-personalized treatment. Authorization may still result in non-personalized ads depending on UMP consent, region, age, and platform rules. Users can revisit ad privacy options in the app and ATT permission in iOS Settings. See Google's advertising data guidance for more information.

Retention and deletion

Account-linked records are retained while the account is active or as needed to provide the service. In Android, use Delete Account below the profile card on Home; in iOS, open Settings → Delete Account. Review the scope and confirm. This removes the Firebase Auth user, profile, every profile-image Storage object and its private ownership/operation/cleanup indexes, owned nickname reservation, UID-linked leaderboard and play records, creator attribution, pending quiz clip suggestions, the complete owner-only quiz Suggestion history, the separate owner-only community My videos submission history, and reported pending, public, or hidden community-post content linked to the video submitter, the user's individual community ballots and reports, the user's block list, references to the user in other block lists, suspension and UID-keyed anti-duplicate records. Community review records are scrubbed of reporter, content-reporter, or reviewing-staff UIDs, review-staff email, nicknames, the reported video and game, free-form report notes, rejection explanations, and other report-source content linked to the deleted account. Because they are authored separately by the operations team rather than supplied by the reporter, the operations-team-authored public question, situation description, and side labels, together with non-identifying decision and processing timestamps, may remain as operational records. Operationally required review-staff fields in hidden-post or suspension records may be replaced with a fixed “[deleted]” marker that does not identify a person. If the submitter deletes their account, completed clip-suggestion reviews are scrubbed of submitter UID, nickname, optional submission note, and rejection explanation; if the reviewing staff member deletes their account, they are scrubbed of that staff member's UID, email, free-form review note, and rejection explanation. In-quiz video problem reports are scrubbed of the deleting reporter's UID and free-form detail, and their per-user duplicate-prevention, idempotency, and quota records are removed. UID-free game/video identifiers, fixed reason codes, status and timestamps, and anonymous reason aggregates may remain to improve video reliability. In the game-by-game free community, deletion removes the user's public and hidden posts and comments, private reported-content evidence, UID-to-author-key mapping and nickname, reports submitted by the user, report groups targeting that user's content or author identity, both directions of blocks, suspension state, guideline acceptance, quotas, idempotency records, and community-notification tokens. Self-deleted content disappears publicly immediately and is never restored. If it had already been reported, a private evidence copy may be retained only for the period needed to complete safety review; it is removed or de-identified after review, and author-linked evidence is removed immediately when account deletion completes. Only moderation records without a UID, email, or content snapshot may remain. Community-notification registration tokens are retained only while notifications are enabled. Disabling the setting unregisters the token, invalid tokens may be removed after a delivery response, and account deletion removes every notification token linked to the account. After a user casts a final vote on a published “Who was at fault?” case, the service may expose one server-owned announcement discussion for that case. Its title and body are derived only from the reviewed public case and do not include vote counts or voter identity. If the source case is hidden or deleted, the room becomes inaccessible immediately and its thread, report evidence, and reporter-linked indexes are removed by a serialized cleanup. Non-identifying video, decision, and timestamp metadata such as the YouTube ID or URL may remain. The deleted user's choice is subtracted from verifiable option and total vote counts. If an anonymous aggregate is missing or malformed and cannot be safely verified, the individual ballot is still deleted but that anonymous aggregate may remain to protect data integrity. Remaining anonymous aggregate answer, score, campaign, and community-vote counts, plus non-identifying moderation reason counts, decisions, and timestamps, may remain where needed for service integrity, safety, or dispute handling. Anonymous daily community-ad and community-event counts are retained for 90 days. Random operation records used only to prevent duplicate counting, together with non-identifying configuration-operation and audit records, are retained for 7 days. Expired records are removed in bounded batches during later metric-recording or private operations calls. None of these records contains a UID, email, nickname, game or content identifier, or content text. A current profile image is retained until replacement, direct deletion, or account deletion. Replacement and direct deletion remove the prior Storage object and private ownership/cleanup indexes. A temporary Storage failure may retain a private account-linked retry index until object deletion succeeds; full account deletion verifies image-object deletion before removing that metadata and Firebase Auth. Tier Coin balances, revisions, Korea Standard Time daily reward counts, purchased background, button, and panel theme SKUs and prices, and independently equipped background, button, and panel choices are retained while the account remains active and are removed on account deletion. An unused or reserved completed-game reward record is retained for up to 24 hours after game completion; a credited marker is retained for 14 days to prevent duplicate credit. Cosmetic purchase/equip request receipts are retained for 14 days to prevent duplicate processing. On the server, a raw one-time ad-start token and its begin-request record have a 30-minute validity window and are removed together by scheduled cleanup, normally within one hour of issuance. A verified callback's token hash and signed ad-transaction fields may be retained for up to 24 hours to retry a grant after a temporary server failure. A successful begin request becomes a raw-token-free reuse-prevention marker for 14 days; cancelled requests do not create separate cancellation receipts. Token hashes, verified ad-transaction replay receipts, and their private per-account cleanup index are retained for 90 days. Android's installation-only recovery record is removed immediately when grant, cancellation, or expiry is confirmed. On the next app launch, any record more than seven days old is removed before use; it is also removed with app deletion and is excluded from backup and device migration. Account deletion removes the account's wallet, daily counts, completed-game reward records, pending requests, operations, transaction index, cosmetic inventory, equipment, purchase records, and cosmetic operation indexes; a global replay receipt containing only a token hash and transaction ID, without UID, email, or nickname, may remain for up to 90 days from the transaction. Event images and settings; the accepted terms version; account-linked invite codes and relationships; valid game-session progress; provisional and final-review state; confirmation order; and abuse-prevention records are retained while needed to provide, review, and safely operate those features. Community posts are not tracked for referral qualification. An inviter receives the invitee's current profile nickname and requirement progress, but not the invitee's UID, email, content, or exact activity time. Account deletion removes or de-identifies the deleting account's invite code, relationship, progress, and request records. Deleting an account before prize fulfillment can cancel participation under the official rules because the service can no longer retain the account link needed for review and delivery. Minimum records required for fulfillment, disputes, or legal obligations may be retained for the applicable period, and UTC-day aggregates without a UID, email, or content identifier may remain for service quality and integrity. These features remain disabled until the applicable account-linked deletion process is available. An ad-removal purchase belongs to the Google Play or App Store account used to buy it, not to a TierSnap account. Deleting a TierSnap account does not automatically refund the purchase or delete the store's purchase record. The purchase can be restored on the same platform with the same store account that made it; Android and iOS purchases are not shared or restorable across platforms. Once the purchase is verified, all advertising formats, including banners, interstitials, and rewarded ads, are removed. Features such as nickname changes or revives that otherwise use an ad are made available without viewing one under the applicable app policy, but Tier Coin credit whose condition is actually watching an ad is unavailable. App notices and event information are not advertisements and may still appear. Optional Firebase usage analytics is off after a new install and is processed only while the user has expressly enabled it in Settings. Turning it off or deleting the account on the current device stops collection and resets local Analytics data and the pseudonymous app-instance ID. Previously uploaded events do not contain a TierSnap account UID and cannot be looked up or linked by that account; installation-level events and de-identified aggregates may remain or be deleted under the Google Analytics property's applicable retention and deletion settings. As a limited exception, a minimal deletion-safety marker containing the Firebase UID, deletion state, and request/completion times is retained for the life of the service so stale app requests or delayed server work cannot recreate deleted data. It contains no profile, post, ballot choice, or other usage content.

If in-app deletion is unavailable, email support@brainrottedgames.com from the account email. We may verify ownership and normally complete a valid request immediately or within 30 days after verification.

Your choices, children, and contact

You may request access, correction, deletion, restriction, or withdrawal of consent. TierSnap is not directed to children under 14. Firebase usage analytics is a separate, default-off choice in Settings and is not inferred from advertising, account, or notification consent. You can turn it off at any time without losing gameplay or account features. If you believe a child's information was processed without appropriate consent, contact us so we can investigate and take appropriate action. For privacy questions or requests, email support@brainrottedgames.com.

개인정보 관련 도움이 필요하신가요?

문의 내용과 사용 중인 앱 버전을 함께 보내주시면 확인이 빨라집니다.

이메일 문의