Trust center

Privacy at Numter.

This notice explains what the service records, why it is needed, and the choices available to users.

Information Numter processes

Account information includes your email address, chosen display name, starting-placement choice, authentication provider, verification state, profile image and preferences, and secure session records. New uploaded profile images are decoded, resized, re-encoded as WebP, and stripped of unnecessary embedded metadata before an opaque object key and limited technical metadata are stored with the account; older data-URL avatars remain available during the backward-compatible migration period. Learning information includes answers, response times, curriculum levels, ratings, match results, daily usage, and moderation status. When billing is enabled, Numter stores subscription status, plan, renewal or expiration dates, and Paddle customer, subscription, transaction, checkout, notification, and event identifiers. Numter does not receive or store complete card numbers. If you use Numter messaging, the service stores public-chat posts and participant-only private-message text so the conversation can be delivered and preserved. Basic technical records may include IP address, browser information, timestamps, and security logs.

Why it is processed

Numter uses this information to authenticate accounts, preserve progress and preferences, adapt difficulty, enforce daily limits, operate live matches and messaging, prevent abuse, respond to support requests, and improve reliability. Numter does not sell personal information.

Messages and privacy

Global chat is public, is limited to text, and the user-facing feed resets each day. Staff can search and remove public chat when enforcing safety rules. Private messages are also text-only, and conversation retrieval is restricted to the two participants. If a participant submits a safety report, the report and exact message snapshot they chose to report become visible to authorized moderation staff; staff cannot browse the rest of that private conversation. Do not share passwords, payment information, identification documents, or other sensitive information in any Numter message.

Competitive fair play

After a Duel, Numter may evaluate server-authoritative answer timing, aggregate duplicate-request counts, repeated-opponent results, rating movement, and forfeit patterns for competitive-integrity signals. The fair-play system does not collect raw answers again, IP addresses, device fingerprints, browser identity, player credentials, or accessibility settings for this evaluation. Authorized staff see only minimized match aggregates, confidence and severity labels, and their review history.

A signal is not proof and does not automatically change account access, rating, or matchmaking. Staff must review context before escalating an indicator, and accessibility tools must not be treated as adverse evidence. Review records may be retained for integrity, appeals, dispute resolution, and legal obligations.

Product analytics

Numter uses minimized first-party product events to understand acquisition, navigation reliability, activation, retention, and competitive-product quality. These events may include a pseudonymous visitor identifier, a templated route without query parameters or room/event/club identifiers, campaign labels you arrived with, referrer hostname, broad device/browser/platform category, and coarse application timings. Authenticated events may be linked to your immutable internal player ID. Ordinary analytics do not contain your email address, public display name, answers or problem prompts, private-message text, passwords, player tokens, payment details, or moderation-report content. Training, match, queue, rematch, series, tournament, season, challenge, subscription, and safety totals shown internally are derived as aggregates from their existing server-authoritative records rather than copied into untrusted client events.

Product-event and pseudonymous visitor records have a 400-day maximum retention period. Global Privacy Control and browser Do Not Track signals stop collection, and registered players can stop new account-linked product events in Profile Settings. Turning analytics off never disables training, competition, billing, messaging, or account access. Voluntary written feedback is stored separately, is visible only to authorized internal reviewers, and is deleted with the player account unless a limited safety or legal retention obligation applies.

Service providers

Cloudflare provides application hosting, D1 database storage, private R2 object storage for normalized avatars, image processing, security, caching, and network delivery. Google may provide optional sign-in. Resend delivers verification, password-reset, and account-notice email. Paddle acts as Merchant of Record and processes subscription checkout, applicable consumption tax, payment, renewal, and self-service billing information when billing is enabled. Each provider processes information under its own terms and privacy commitments.

Retention and choices

Records are kept while needed to provide the service, maintain security, resolve disputes, and meet legal obligations. Product-event retention is described above; core account, learning, billing, and safety records follow their operational or legal need. You may ask to access, correct, or delete your account information through the contact path above. Some limited records may be retained when necessary for fraud prevention, safety, disputes, or legal compliance.

Children and changes

Numter is currently intended for users aged 13 and older. A parent or guardian should contact support if they believe a younger child submitted information. Material changes to this notice will be dated and displayed here before public release.