Legal
Last updated: April 2026
The entity responsible for processing your personal data under the General Data Protection Regulation (GDPR) is:
AUTH.GAMES
AUTH.GAMES
Business address available on request
Germany
E-Mail: privacy@auth.games
We process the following personal data:
We process your data exclusively for the following purposes:
Processing is based on Art. 6(1)(b) GDPR (contract performance) and Art. 6(1)(f) GDPR (legitimate interests). Where consent is required, processing is based on Art. 6(1)(a) GDPR.
Your data is stored only as long as necessary. After account deletion, personal data is removed within 30 days, unless legal retention obligations apply.
We retain your data only as long as legally required or operationally necessary:
Personal data is only shared where necessary for contract performance, you have consented, or a legal obligation exists. Third-party OAuth apps only receive data you agreed to during the authorization flow.
We engage the following sub-processors who may process your personal data on our behalf:
Some of our sub-processors (Stripe, Vercel) are based in the United States. Data transfers to these providers are carried out on the basis of Standard Contractual Clauses (SCCs) pursuant to Art. 46 GDPR, ensuring an adequate level of data protection.
You have the right to:
To exercise your rights, contact: privacy@auth.games
AUTH.GAMES uses essential cookies for sessions and preferences. With your consent, we additionally use analytics cookies (Vercel Analytics, Google Analytics) to understand platform usage. You can manage your cookie preferences at any time via the Cookie Settings button.
You have the right to lodge a complaint with a data protection supervisory authority.
We reserve the right to update this privacy policy. The current version is always available at /privacy. You will be notified of significant changes by email.