Narva Mari privacy policy
ANIMIST OÜ (registry code 14092388, Estonia) provides this app. This policy explains its information handling and our support contact. Questions or privacy requests can be sent to appstore@animist.ee.
Scope and platforms
Narva Mari is a multiplayer party-card game. This policy describes its shared online game service and current iOS version. This is also the intended policy address for Android. The Android version is planned; Android-specific permissions, sign-in methods, purchases and SDKs will be confirmed and this policy updated before its release. Features described below apply only where available in the version you use.
The current app is a development version. This page does not announce an App Store or Google Play release. ANIMIST OÜ is responsible for the personal information it processes to operate Narva Mari.
Accounts and identification
Online play creates a guest account through Firebase Authentication. It has a persistent user identifier used to associate games, votes, submitted cards and access to card packs. Guest play does not require you to enter your real name, email address or password, but its records are pseudonymous rather than anonymous to the service. You choose a nickname for play.
On iOS, optional Sign in with Apple can link your guest account to an Apple sign-in identity or reconnect an existing account. Apple and Firebase process authentication identifiers and tokens. Your Apple password is not provided to ANIMIST, and the app does not request your real name for display in the game.
Multiplayer games and card ratings
The online service stores game and player identifiers, nicknames, join codes, game settings, connection presence, timestamps, dealt cards, selected answers, round results and scores. These records let players join and reconnect, enforce the rules and deadlines, and keep the same game state across devices.
Players in the same game can receive its public state, including player identifiers, nicknames, presence, scores and revealed answers. Other players are not given direct access to your private hand. Answers may be presented without a player's name during a round, but the server keeps the ownership needed to run the game. A join code or link can allow others to join, so share it only with intended players.
Card votes are associated with your user identifier. The service also maintains card play, win, like and dislike totals. These are game-functionality statistics, not advertising profiles.
Submitted cards and manually selected locations
If you submit a card, we receive its text, type, explanation, chosen author nickname, county, selected map coordinates, user identifier and submission time. Moderators review submissions and store their status, reasons and review timestamps.
Approved cards are distributed to players who can access the relevant pack. Published card data can include the card text, county, map coordinates, author nickname and creator identifier, even when author attribution is not displayed on screen. The explanation and moderation feedback remain in the submission records available to you and authorized moderators. Do not submit private addresses, identifying information about other people, confidential material or sensitive personal information.
The current iOS app lets you place a pin manually; it does not request access to your device's GPS location. A pin can nevertheless identify a precise place. Its maps use Apple MapKit, which may contact Apple for map content and process requests under Apple's privacy practices.
Camera and notifications
On iOS, camera permission is used to read a game-joining QR code. Scanning is processed on the device; camera images are not recorded or uploaded by the app. You can enter the game code manually instead and can revoke camera access in device settings.
Firebase Cloud Messaging and Apple's push-notification service support notifications about moderation results. The service can store a device-registration identifier, messaging token, associated user identifier and update time. Notification display requires your device permission. Turning alerts off controls their display; it does not by itself delete the messaging identifiers or account records already held by the service.
Purchases where available
The iOS app supports optional one-time card-pack purchases through Apple's StoreKit. Availability depends on store configuration and the version you use. Apple handles payment. The app and backend process product and transaction identifiers, signed purchase information, an app-account token, entitlements and refund or revocation status to verify, restore and manage access.
ANIMIST does not receive your payment-card details or Apple Account password. Removing the app does not delete store purchase records or itself request a refund. Android purchase handling is not yet implemented or described as available by this policy.
Local storage and technical service data
The iOS app stores downloaded cards and pack versions, your nickname, preferences, the last game identifier and a notification-device identifier locally. Firebase maintains sign-in state and may cache service data. System backups or device transfers may retain local app information according to your device settings.
Google Firebase provides authentication, Cloud Firestore, Realtime Database, Cloud Functions, messaging and App Check. Network services process technical data such as IP addresses, request and device information, identifiers, timestamps and errors to deliver, secure and troubleshoot the service. App Check uses integrity checks, including Apple's App Attest on supported iOS devices. Backend request limits and error logs help prevent abuse and diagnose failures.
The current iOS app has no advertising SDK, advertising-identifier access, cross-app tracking, Google Analytics or Firebase Crashlytics integration. This does not mean the online game operates without technical logs or service identifiers.
Purposes, legal bases and recipients
We process the information needed to provide the game and the features you request, including account access, multiplayer play, content submissions and purchase verification. Where applicable, this processing is necessary to perform our agreement with you. Service security, abuse prevention, moderation and troubleshooting rely on our legitimate interests, balanced against your rights. Consent applies where required for optional permissions or processing, and legal obligations may require particular records.
Information is made available to authorized ANIMIST personnel and moderators, service providers such as Google Firebase, relevant Apple services, and other players as described above. Support messages are handled by our email providers. We may disclose information when legally required or necessary to protect rights and service security. The described app does not share data with advertisers.
European hosting regions are used for the configured game databases and functions, but this does not mean all authentication, messaging, support or provider processing is confined to Europe. Providers may process information internationally under their applicable terms and transfer safeguards. Contact us for details relevant to your information.
Retention
Game sessions use an inactivity expiry, with a default period of six hours. Scheduled cleanup removes expired session records, join codes, presence and round audit records; a non-playable revision marker can remain to prevent old game state reappearing. Cleanup is not an immediate deletion guarantee and may be delayed by service availability.
Accounts, card votes, submissions, moderation notices, device tokens and purchase-entitlement records do not currently have a single automatic expiry period. They remain for the relevant account, content, delivery or purchase purpose until removed through administration or a verified deletion request, subject to any applicable legal or security retention. Approved cards can remain in distributed card packs and device caches. Provider logs, backups and purchase records follow their respective retention processes rather than the game-session expiry.
Support correspondence is retained as needed to resolve the request and related issues or legal obligations. You can ask us about the retention or deletion of particular records.
Request account or data deletion
To request deletion of your Narva Mari account and associated data, email appstore@animist.ee with the subject Narva Mari account deletion. You can also request removal of particular submitted cards, votes or other personal information without requesting removal of every record. This route is available without opening the app.
Describe the request and provide information that helps us identify the relevant account, such as the nickname, approximate dates of use and account or submission identifier if available. Nicknames alone may not uniquely identify an account. We may ask for proportionate ownership verification before acting. Do not send passwords, sign-in tokens, payment-card information or unnecessary identity documents.
A verified account-deletion request covers the authentication account and associated information we control, including votes, submissions, notification registrations and account-linked purchase access. We will explain any information that must be retained for legal obligations, security or disputes, or any limitations on identifying a guest account. Store transaction records are controlled separately by the store provider. Copies already downloaded by other players or retained in provider backups may not disappear immediately.
The current development app does not yet have an in-app account-deletion control. Clearing its local card cache only clears downloaded cards and may immediately download them again; uninstalling the app does not request deletion of the cloud account. Contact us before uninstalling if you need help identifying a guest account.
Age suitability
Narva Mari is a mature-audience party game, not a service intended for children. The current app displays a 17+ strong-language notice; the applicable store rating may differ by country and release. If you believe a child has provided personal information, contact us so we can assess the situation and any appropriate removal.
Support and your rights
If you contact ANIMIST, we receive your email address, message and any attachments you choose to send. We use them to respond to your request, investigate problems and handle related legal obligations. Our email providers process correspondence to deliver and store it. Do not send passwords, account credentials or unnecessary personal information.
Where applicable, support processing is based on providing the assistance you request and our legitimate interest in resolving issues; legal obligations may require some records. Ask us about retention or deletion of correspondence. A parent or guardian may contact us about information a child has sent to support.
Depending on applicable law, you may request access, correction, deletion, a copy of personal data, or restriction of or objection to processing. You can withdraw consent for future optional processing without changing the lawfulness of earlier processing. ANIMIST can act on information it holds, not private device data or records independently controlled by another provider.
Service providers and international processing
Apple, advertising providers where used, and other services identified above process information under their own privacy notices. Hosting and email services also process data needed to deliver their services. Processing may take place outside your country or the European Economic Area; the applicable service notice describes its arrangements. Contact ANIMIST for questions about providers involved in handling information we hold.
This website and policy changes
This policy page contains no advertising, analytics scripts or tracking cookies of its own. Hosting systems may process IP addresses and ordinary access logs to deliver and secure the page. Website privacy describes statistics used elsewhere on animist.ee.
We will revise this policy when the app or its data practices change and update the date above. Publishing a policy does not mean that every platform version is already available.