Privacy Policy

How we protect your information

Last updated: October 2025

Introduction

This Privacy Policy explains how MazeDIY collects, uses, and protects information when you use our services. We only process the content you upload to generate mazes and never store the original files.

Information We Collect

🖼️ Images

Original Images: Uploaded files are processed in volatile memory to generate mazes and are discarded immediately after processing. We never persist original uploads on our servers.

🧩 Generated Mazes

Generated Maze Data: When you publish a maze to the community, we store the generated maze layout, metadata, and preview thumbnail so that other players can browse and play it.

📊 Usage Data

Usage Data: We collect aggregated analytics such as page views, feature engagement, device type, and error events to improve performance and reliability.

🍪 Cookies

Cookies: We use essential cookies to keep you signed in and optional cookies for analytics and advertising that you can opt out of at any time.

👤 Account Information

Account Information: When you create an account we store your email address, display name, and authentication tokens provided by our identity service; we never store raw passwords.

How We Use Your Information

We use collected information to operate MazeDIY, keep your account secure, and deliver relevant features and communications.

Specifically, we use your data to render mazes, surface community recommendations, troubleshoot issues, combat abuse, comply with legal obligations, and respond to support requests.

Information Sharing

We do not sell or rent personal information. We only share limited data with trusted processors when it is necessary to provide the service.

Service providers such as hosting, analytics, payment, and email partners receive only the data required to perform their duties and are bound by confidentiality agreements.

Third-Party Services

📢 Google AdSense

Google AdSense: Ads may be personalised using cookies or local storage identifiers managed by Google. MazeDIY does not receive raw advertising identifiers.

You can manage personalised advertising at https://adssettings.google.com or disable third-party cookies in your browser.

📈 Analytics

Google Analytics 4: We use Google Analytics with IP anonymisation enabled to understand aggregated traffic patterns. Data is retained for 14 months and never linked to individual maze content.

You can opt out by installing the Google Analytics opt-out add-on or by disabling analytics cookies in your browser preferences.

🔐 Authentication

Authentication: We use Supabase for user authentication and account management.

Data Security

We implement industry-standard technical and organisational safeguards to protect generated maze data and account information.

Measures include HTTPS everywhere, encryption at rest, role-based access controls, audit logging, automated monitoring, and regular security reviews.

How Long We Keep Information

We retain generated maze data only while it remains published or while we are legally required to maintain a record.

Community mazes can be unpublished or deleted at any time from your dashboard. Support requests are stored for up to 12 months, and analytics data is automatically purged after its retention window.

Your Rights

You have the right to access, update, export, or delete your personal information. Contact us at privacy@mazediy.com for any privacy-related request.

You can request data access, correction, or deletion; opt out of marketing emails; and withdraw consent for optional analytics or advertising cookies.

You may also disable analytics and advertising cookies in your browser, use the Google Analytics opt-out add-on, or contact us to remove published maze data.

Children's Privacy

MazeDIY is family friendly. We do not knowingly collect personal information from children under 13 without parental consent and encourage parents to supervise publishing activity.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the 'Last updated' date.

How Long We Keep Information

We retain generated maze data only while it remains published or while we are legally required to maintain a record.

Community mazes can be unpublished or deleted at any time from your dashboard. Support requests are stored for up to 12 months, and analytics data is automatically purged after its retention window.

International Data Transfers

Your data may be transferred to and processed in countries other than your country of residence.

For EU residents, we ensure adequate protection through Standard Contractual Clauses and other GDPR-compliant mechanisms.

California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act.

You have the right to know what personal information we collect, request deletion of your data, and opt-out of the sale of personal information.

Contact Us

If you have questions about this Privacy Policy or our data practices, please email privacy@mazediy.com.

Email: privacy@mazediy.com

We typically respond within 24 hours during business days.