Last update 28 — 8 — 2020
This Policy explains how Nanobit (referred to as “we” or “Nanobit” in this Policy) collects, stores, uses, or otherwise processes the personal data of end users of our Services as defined below (referred to as “you” in this Policy), and what rights you have if we are processing your personal data.
In this Policy, “Services“ refers to our Games, Websites, and any related services or properties we control; “Games” refers to our games (such as those provided on mobile platforms, for example iOS and Android), applications, and other products; and “Websites” refers to websites and other online properties we control, including www.nanobit.com. The expression “your data” is used when referring to personal data that relates to you as an identified or identifiable individual.
It is important that you read this Policy before accessing or using the Services so that you are aware of how and why we may use data relating to you. In addition to this Policy, we encourage you to carefully review our Terms of Service, which govern your use of our Services.
By “data controller”, we mean an entity that determines how and why personal data is processed. With regard to the activities described in this Policy, we are the data controller. Our company name is Nanobit Ltd. The seat of our company is at Slovenska 23, Zagreb, Croatia.
While operating the Services, we may share your data with partners we work with. Some of these partners are data controllers independently of us and, therefore, independently determine how and why they process your data. For more information on these partners and the ways in which they may process your data, please refer to section 6 of this Policy.
In matters related to this Policy, you can reach us by email at email@example.com.
Why do we process your data and on what basis?
To perform our contract with you, we may process your data as necessary to:
– create and maintain an account for you in our Games or other Services where applicable,
– enable you to play our Games or use our other Services,
– provide the correct version of our Games or other Services to you (for example, selecting an appropriate language version for you),
– identify and suggest connections with other Nanobit users,
– where available, enable you to communicate with other users in our Games or other Services (for example, by providing chat, forums, or other similar features),
– send you service-related communications (for example, technical notices, security alerts, or administrative messages), or
– verify your purchases or other transactions in our Games or other Services.
Based on our legitimate interest to make our Services the best they can be, we may process your data to:
– operate and maintain our Services (for example, by making sure our Services are secure and function as intended),
– troubleshoot or debug any bugs, errors, or other issues in our Services,
– measure and analyze the use of our Services or data we collect through our Services (for example, to discover trends or other insights or to inform our operations),
– create data that is not identifiable to you (for example, aggregate data), which we may then use and share freely,
– conduct surveys or other research to learn more about our users, or
– improve our current Services or develop new Services.
Based on our legitimate interest to make sure you have the best possible user experience in our Games, we may process your data to:
– personalize your gameplay experience in our Games based on your activity,
– provide you with offers and rewards in our Games based on your activity,
– where available, enable your gameplay across multiple devices (for example, by allowing you to connect a third-party account with our Games for that purpose),
– where available, provide social features (for example, clans, matchmaking, or leaderboards) or events in our Games or other Services,
– handle your support requests or otherwise manage our relationship with you, or
– send you service-related communications (for example, technical notices, security alerts, or administrative messages).
Based on our legitimate interest to make sure our Services are a fair and safe environment for all users, we may process your data to:
– moderate and monitor the use of our Games or other Services (including any messages sent through the Services), either automatically or manually, or
– ensure that our Terms of Service are followed.
Based on our legitimate interest to promote our Services and to make sure we reach interested audiences, we may process your data to:
– keep track of installations of our Games (including the source of each install),
– measure, analyze, and improve the effectiveness of our advertising (including our advertising outside of our Services),
– send you communications about offers, rewards, events, or other news related to our Services or other operations,
– request our advertising partners to show or not show our ads to you based on your activity (including by limiting the number of times you see our ads), or
– request our advertising partners to advertise our Games or other Services to audiences who they believe have interests similar to yours.
Based on our legitimate interest to provide you with relevant ads in our Games and to fund our Services so that we can keep providing them to you, we may process your data to:
– show ads to you in our Games, either from us or our advertising partners,
– keep track of your activity in our Games to learn about your interests and improve the advertising in our Games, or
– personalize, or allow our advertising partners to personalize, the ads you see in our Games to make them more relevant to you.
Based on our legitimate interest to safeguard our operations, we may process your data to:
– detect, investigate, or prevent fraud or fraudulent or otherwise unauthorized behavior,
– audit our operations or processes (for example, to verify that they function as intended and according to regulatory or contractual requirements), or
– establish, exercise, or defend our legal rights to the extent permitted by applicable laws and regulations.
With your consent, we may process your data:
– to send you newsletters or other similar communications if you have subscribed to them, or
– for other purposes explained to you when we ask for your consent (for example, using your IP address or GPS location to provide location-based experiences).
Finally, we may process your data as necessary to:
– comply with legal obligations which we believe apply to us (including accounting and tax requirements and requirements to provide information to competent authorities upon due request) or
– protect your vital interests or the vital interests of another person.
In addition, we may process your data for additional purposes which are compatible with any of the purposes listed above.
We do not use your data to make automated decisions which significantly affect you. By an “automated decision”, we mean a decision made by an information system without any human intervention.
Advertising is one of the ways of funding our Services and enables us to make our Games available free of charge. In our Games, we show our own ads and also ads from third parties. We also advertise outside of our Services on third-party properties such as websites or applications. This section provides more information on how we may use your data for advertising purposes, and how you can control the use of your data for these purposes.
Mobile advertising relies on the use of certain online identifiers, in particular Advertising IDs but also Internet Protocol (IP) addresses or other identifiers. An “Advertising ID” is an alphanumeric string of digits provided by the operating system of a device. It is consistent across applications from different publishers. The Advertising ID is known as the Identifier for Advertisers (“IDFA”) on iOS devices and Google Advertising Identifier (“GAID”) on Android devices.
Advertising IDs are used for interest-based advertising and other advertising related purposes. You can control the extent to which your Advertising ID is used for these purposes. Using the privacy settings on your device, you can typically reset and/or limit the use of your Advertising ID. For example, you can “limit ad tracking” on iOS devices or “opt out of interest-based ads” on Android devices. These settings are specific to each device, which means that you should set them to your desired state on each of your devices individually. It may take some time for your updated settings to take effect. Please consider that resetting or limiting the use of your Advertising ID will not stop you from seeing ads, but the ads you see may be less relevant to you.
When you see ads in our Games, we may share your Advertising ID and IP address with our advertising partners. Our advertising partners may also collect information directly from our Games through technologies such as software development kits (SDKs). In each case, they may use your data for a number of purposes, including to limit the number of times you see an ad or to personalize the ads you see to make them more relevant to you (for example, based on the past activity they have associated with your Advertising ID).
When you see our ads outside of our Services (for example, on third-party properties such as websites or applications), the ad network involved in delivering that ad to you may, based on information such as the past activity they have associated with your Advertising ID, have determined that you may be interested in our Services. Ad networks may also use your data to:
– limit the number of times you see our ads,
– inform users who have previously played our Games about new content, updates, or other news related to those Games, or
– refrain from showing our ads to users who already play the Game being advertised.
In addition, ad networks may provide services where they use Advertising IDs or other identifiers to find users who are likely to be interested in our Services because their past activity or interests are similar to those of others known by the ad network to use our Services.
For both ads in our Games and our ads outside of our Services, Advertising IDs or other identifiers are also used for ad measurement, which involves the collection of metrics such as total views, clicks, or installs generated by an ad. Measurement data may be directly or indirectly collected or received by multiple parties involved in ad delivery (including us and our advertising partners), for example through technologies such as web beacons inserted into ads. It is used for purposes such as to provide measurement services, to detect, investigate and prevent fraud or fraudulent behavior, or to settle payments between the parties involved in ad delivery.
A “cookie” is a small file your browser stores when told to do so by a website. Cookies can be set by either the website you visit (“first-party cookies”) or a third party involved in providing content, functionality, or services such as analytics or advertising for the website you visit (“third-party cookies”). Cookies are typically used to identify or “remember” your device, for example to enable functionality, facilitate audience measurement, improve performance, or store your preferences.
What data do we process?
We may process the following data relating to you:
– your name, email address, username, password or other contact information only if you have provided them to us (for example, when registering an account, subscribing to our communications, or using a community forum),
– online identifiers such as your in-game alias, IP address, identifiers we assign to your account such as the unique user ID (“Nanobit ID”), or hardware or operating system based identifiers,
– technical information about the device you use to play our Games or use our other Services (for example, information about its hardware type, device name, unique device ID, international mobile equipment identity (“IMEI”), media access control (“MAC”) address, model, manufacturer, operating system, language, display, processor, or memory),
– other information relating to your device, such as device and app history, contacts, storage, Wi-Fi connection information, photo/media/files,
– your approximate location (for example, country, state, or city), inferred from your IP address,
– information about your use of the Services (for example, how often you use the Games or other applications, the events that occur within the application, aggregated usage, performance data, and where the application was downloaded from),
– information about your visits to our Websites (for example, access times, browser type and language and referring website addresses), or your interactions with ads in our Games,
– information about your interactions with our ads outside of the Services (for example, on third-party websites or applications), including information on how you were referred to our Games or other Services,
– crash logs or other information related to bugs, errors, or other issues in our Services,
– inferences we make based on your activity in our Services,
– messages or other communications you send to us or through the Services (for example, your chat messages in our Games or emails you send to our support team),
– if you choose to connect a third-party account (for example, a social media account) with our Services, information we receive from the third-party account provider (for example, an account name, identifier, or email address to enable cross-device gameplay or a profile name, picture, or friends information to provide social features),
– if you make purchases in our Games, in-app purchase info or information we receive from third-party payment service providers to validate those purchases,
– if you have subscribed to our communications, your content preferences or other information you submit to us when subscribing to our communications,
– if you participate in our surveys or other research, any comments, feedback, responses, or other information you provide to us when doing so (for example, information about your background or experience with our Games),
– any other information you choose to submit to us through our Services or otherwise, and
– with your consent, other information explained to you when asking for your consent (for example, your GPS location for location-based experiences).
We do not expect or intend to collect or otherwise process any special categories of data relating to you. By special categories of data, we mean genetic, biometric or health information, information revealing racial or ethnic origin, sex life or sexual orientation, political opinions, religious or philosophical beliefs or trade union membership, or information about your criminal offences or convictions. Please do not provide this kind of information to us or use the Services to make it available to others.
Where do we collect your data from?
We may collect data relating to you from the following sources:
– directly from you when you submit it to us (for example, when registering an account with us, subscribing to our communications, sending support enquiries to us, or responding to our surveys),
– directly from you and/or your device by automatic means when you use our Services or interact with our ads outside of our Services (for example, on third-party websites or applications), including through cookies or similar technologies or software development kits (SDKs),
– if you interact with ads in our Games or our ads outside of our Services (for example, on third-party websites or applications), from our advertising partners involved in the delivery and measurement of those ads,
– if you choose to connect a third-party account (for example, a social media account) with our Services, from the third-party account provider,
– if you make purchases in our Services, from the third-party payment service provider involved in those transactions, or
– with your consent, from other sources explained to you when asking for your consent.
Providing data to us is not mandatory. However, we may be unable to provide the Services, or some parts or features of the Services, without processing your data. If you use our Services, we will collect data relating to you for some or all of the purposes described in this Policy, depending on the Services you decide to use and your choices when using them. You have a number of options to limit or control the extent to which your data is processed. For example, you can choose to not connect your third-party accounts with our Games, use your device settings to reset or limit the use of your Advertising ID, or disable some or all cookies from your browser settings.
Who do we share your data with?
We may share your data with third parties to achieve the purposes described in this Policy. This may include sharing data with the following types of recipients:
– other companies in the Nanobit group (which includes our subsidiaries), for example where they help us develop or operate our Games or other Services,
– persons or companies outside of the Nanobit group that provide services to us and process data on our behalf when providing those services (for example, providers of hosting services, analytics services, services that add functionality to the Services, or other services that help us develop and operate our Services),
– other partners we work with while providing the Services (who may process your data independently of us), including advertising partners,
– prospective or actual buyers (including their agents or advisors) in the context of a planned or actual acquisition, merger, or other business restructuring,
– competent courts of law or other government authorities where we believe disclosure is necessary as a matter of applicable law or regulation,
– any person or entity where we believe disclosure is necessary to exercise, establish or defend our legal rights or to protect your or another person’s vital interests, or
– with any other person or entity with your consent.
In addition, please consider that some information you submit or make available through the Services may be visible to other users of our Services. This typically applies to, for example, your public profile information in our Games (such as your in-game alias), your chat messages in our Games, and information used to provide social features such as clans or leaderboards.
In connection with the processing activities described in this Policy, your data may be transferred to and/or processed in countries outside of the European Union (“EU”) and the European Economic Area (“EEA”). For example, your Nanobit ID, IP address or device ID, as collected via server log files, may be stored within Amazon Web Services in the USA. USA and other countries may have data protection laws that differ from the laws of your country. In these cases, we will provide appropriate safeguards to protect your personal data. These safeguards may include compliance with the European Commission’s standard contractual clauses for transfers of personal data or reliance on the appropriate legal framework.
How long do we keep your data?
We will keep your data for as long as necessary to achieve the purpose(s) for which it was collected, including to provide you with the Services or to comply with any legal, accounting, or reporting requirements. We may periodically delete or de-identify inactive accounts or other data in our Games or other Services. After the applicable retention period, we will either delete or de-identify your data or, if neither deletion or de-identification is possible (for example, due to data being stored on a backup server), isolate your data from further processing until deletion or de-identification is possible. We may continue to use data that is not identifiable to you (for example, aggregate data).
How do we keep your data secure?
We have adopted measures to provide your data a level of security appropriate for the degree of risk involved with the processing activities described in this Policy. These measures are designed to protect your data against accidental or unlawful destruction, loss, or alteration as well as unauthorized disclosure or access. The specific measures we employ vary, but typically include, for example, encryption in transit, pseudonymization of identifying data where feasible, controls to limit access to services or systems that contain personal data, and maintaining procedures to handle any suspected security incidents.
If we are processing your data, you have the right to:
– access, correct, or request the deletion of your data,
– request us to restrict our processing of your data,
– object to our processing of your data to the extent our processing is based on our legitimate interests or the legitimate interests of a third party, or
– where technically feasible, request a copy of the personal data you have provided to us in machine-readable format.
Where our processing of your data is based on your consent, you also have the right to withdraw your consent at any time. Please be aware that we may continue processing your data despite your withdrawal of consent, if we have a lawful basis for doing so.
To access your data in our Games or to request its deletion, please contact us at firstname.lastname@example.org. To unsubscribe from our marketing communications, please use the unsubscribe link provided in the messages we send. The unsubscribe link is typically found at the end of the message.
To exercise any of your rights, you may also contact us at email@example.com, or by mail to our address at Slovenska 23, 10000 Zagreb, Croatia. To fulfill requests submitted by email, we may need to confirm your identity to verify your right to make the request, which may involve requesting additional information from you. For example, we may ask you to provide sufficiently detailed information about the account to which the request relates to enable us to confirm that you are the account holder or acting on their behalf. While we will usually not do so, we reserve the right to charge you an appropriate fee for the exercise of your rights where permitted by applicable laws and regulations.
Finally, you always have the right to lodge a complaint with your local data protection authority regarding our processing of your data. For more information, please contact your local data protection authority.
Note for California residents
If you are a California resident, please be aware that under the California Consumer Privacy Act of 2018 (“CCPA”), you are entitled to receive specific information on how we process your data. You also have specific rights to your data, including the right to opt out of the sale of your personal information. To review this specific information and familiarize yourself with your rights under the CCPA, please review our Supplemental Privacy Notice for California Residents.
Under our Terms of Service, you represent that you are at least 13 years of age. However, we do not know the specific age of individual users of our Services. If you are under 13 years of age, please do not provide your personal data (including your name, address, telephone number, or email address) to us or use the Services to make your personal data available to others.
If we discover that we hold personal data relating to a user under 13 years of age, we will take appropriate measures to ensure that we process that data according to the requirements of applicable laws and regulations or promptly delete the data from our records. If you have reason to believe we hold personal data relating to a user under 13 years of age, please contact us.
We may update this Policy from time to time, for example due to changes in our operations or the legal obligations that apply to us. Updates will be made available on this page. We may also inform you of any changes by other means that are appropriate to the significance of the changes.
10 000 Zagreb
If you have any questions about this policy, please contact us at firstname.lastname@example.org.