Privacy
Last updated 2026-09-22
What we collect
When you connect GitHub, we receive your GitHub login, numeric user id and the email address GitHub shares with the sign-in. We then read your public GitHub events feed to count pushes. We never read repository contents, private repositories or anything that needs more than the public feed.
Playing creates game data: a byte ledger, the rooms you build, the Daily Events you resolve and a sync cursor. Errors are reported to Sentry with a technical trace and your user id, never your email.
Why
To run the game. Your GitHub activity is the game's only input. We do not sell, share or use any of it for advertising.
Where it lives
Supabase (database and sign-in) and Vercel (hosting), both under the maintainer's accounts. Sentry receives error reports. No other third party receives your data.
What is public
Your public profile page shows your GitHub login, your byte balance, when you joined and the rooms in your bunker. Nothing else is visible to other players.
Cookies
Only the session cookie that keeps you signed in. There is no analytics cookie and no tracking pixel.
Your rights (LGPD, GDPR)
From Settings you can download everything we hold about you as JSON, or delete your account. Deletion is immediate and permanent: it removes your sign-in, your ledger, your bunker and your event history. We keep a one-line audit entry (an internal id and a timestamp) as proof the deletion happened.
Revoking Git Shelters in your GitHub settings stops any future reads of your public feed. It does not delete game data; use the delete button for that.
Contact
Questions and requests: open an issue on the public repository or write to the maintainer at the address listed there.