SPRINTRAY STUDIO

Privacy policy

Effective September 11, 2026

This policy explains how the SprintRay Studio team ("we," "us") handles information for apps and services at sprintraystudio.com and its subdomains that link to this policy, including Studio Brain and Mecha. It also applies to Studio desktop apps that reference this policy. It does not replace a separate notice or agreement for another SprintRay product or your organization's systems.

Questions or privacy requests: mark@sprintray.com.

Information we handle

How this works in our apps

Mecha: Google sign-in is optional. After verifying your login, the game stores a derived Google account identifier, a separate random player ID, your chosen nickname, ranking, kills, deaths, and account permissions. The game does not store your Google email, name, or photo in its player profile database. Other players and the public leaderboard can see your nickname, player ID, and game statistics, but not your Google email or account identifier. Administrators can moderate nicknames and account permissions.

Studio Brain: Desktop settings and workflow artifacts may be stored on your computer. When you use connected workflow, replay, or QA features, relevant inputs and results pass through the configured services and your organization's access controls. Those features can process technical logs, reports, screenshots, and other content needed for the task; they are not necessarily local-only. Access to work systems remains subject to your organization's policies.

Other Studio apps that link here use information for the features described in their interface. A new feature that uses Google data in a materially different way will be explained before use, with additional consent where required.

Why we use information

We use information to provide the feature you request, authenticate you, save settings or progress, operate multiplayer and rankings, troubleshoot problems, respond to support requests, enforce account permissions, and prevent fraud or abuse. We do not sell Google user data or use it for advertising.

When information is shared

Service providers process information as needed to operate the apps, including Google for sign-in and Cloudflare for hosting, storage, and access security. Connected work tools may exchange the information required for your requested task with the services configured for that tool. Authorized administrators may access records needed for support, security, or moderation. We may also disclose information when required by law or to protect users and the service.

Your sign-in provider and connected services have their own privacy policies. App-specific public information, such as a multiplayer nickname and leaderboard statistics, is visible to other users as described above.

Cookies and local storage

Apps use cookies or local storage for sign-in, security, and preferences. Mecha's sign-in cookie can keep you logged in for up to 30 days; signing out revokes that session. Other services, including Cloudflare Access, have their own session periods. Blocking required storage can prevent sign-in or saved preferences from working. The shared homepage and this privacy page do not set application cookies or load advertising trackers.

Retention and your choices

We keep account and app records while they are needed to provide the service. A session expiring or signing out does not delete your account or saved statistics. Operational records may be retained as needed for troubleshooting, abuse prevention, and legal obligations; local desktop artifacts remain until removed from your device.

You can change available profile settings, sign out, clear browser storage, or remove local desktop data. You can revoke Google access through your Google Account connections; revoking access does not itself delete records already saved by an app. To request access, correction, or deletion of your Studio app information, email mark@sprintray.com with the app name and your nickname or account details. We may need to verify your identity. Limited records may need to remain for security or legal reasons, and copies in systems controlled by your organization or another provider must be managed there.

Security and service locations

We use HTTPS and access controls appropriate to each service. No storage or transmission method is completely secure. Our providers may process information in countries other than your own.

Children

These apps are not directed to children under 13. If you believe a child has provided personal information, contact us so we can review and remove it as appropriate.

Updates

We may update this policy as our apps change. The effective date above identifies the current version. We will provide additional notice or request consent when required for a material change, including a new use of Google user data.