Privacy Policy
Last updated September 9, 2026
This policy explains what we collect, why we hold it, and what you can ask us to do with it.
Written to describe what the product actually stores. It has not been reviewed by a lawyer and is not legal advice.
What we collect
Account data. Your name, email address, and — if you enable two-factor authentication — a shared secret and hashed recovery codes. Sign-in itself is handled by our identity provider; we never store your password.
Organization data. The organizations you belong to, your role in them, and the invitations you have sent or received.
Content you upload. Artwork, audio, fonts, 3D models and the text and configuration of your playables.
Usage records. Activity logs of significant actions (who exported what, who changed a member's role), the credit ledger, and ordinary server logs.
Payment records. Handled by our payment provider. We store the resulting credit movements and a payment reference, never your card details.
Payments and credits
Payments are handled by our payment provider. We receive a payment reference and the credit movement that resulted from it. Your card details never reach us and we never store them.
What a payment buys is credits — a prepaid balance spent inside PlayableGO on unlocking templates, exporting playables and bespoke orders. Credits are for use in the product only: they cannot be withdrawn, cashed out, or transferred to another organization or person. What is and is not refundable is set out in the top-up policy, and the contractual position in the Terms of Service. What everything currently costs is published on the pricing page.
Credits belong to the organization, not to the person who paid. The balance and every movement in the credit ledger — who topped up, what was spent and on what — are therefore visible to members of that organization who have billing access.
We keep the credit ledger and payment references as a financial record for as long as we are required to. That record outlives the content it paid for: deleting a game does not remove the ledger entry showing that an export was charged.
Why we hold it
To run the service, to bill accurately, to show an organization what happened inside it, and to investigate abuse or a support request. We do not sell your data, and we do not use your uploaded content to train models.
Who else sees it
Only the processors the service needs: our hosting and object storage provider, our identity provider, our payment provider, and our email provider. Each is given the minimum required to do its job.
Members of your organization can see the organization's content and activity, at the level their role allows.
How long we keep it
Content stays while your organization exists. Deleted items go to Trash and are removed permanently after the retention period shown there. Activity logs and the credit ledger are kept longer, because they are the record of what was charged. Closing an account starts deletion of its content.
Your choices
You can edit your profile, change your language, and turn two-factor authentication on or off at any time from your account settings. You can export or delete your organization's content, and you can ask us for a copy of the personal data we hold about you or ask us to delete it.
Cookies
We use cookies for what the product needs to function — keeping you signed in and remembering your language. We do not use advertising cookies.
Contact
To make a request about your data, contact us through the address in your organization's billing settings.