Privacy policy

This policy describes the data Durna Ludo processes to provide accounts, Ludo, social features, virtual items, communication and media, support, security, and reliable operation.

Delete your Durna Ludo account

You can request permanent deletion of your account and its associated data from Settings while signed in.

To request account and associated-data deletion without installing or opening the app, email: [email protected]

State that you want to delete your Durna Ludo account and include your account name and sign-in email. Do not send passwords or tokens. We may ask you to verify account ownership.

Read the retention and security details.

Data we process

  • Account data: guest, Google, or demo account identifiers, email supplied during sign-in, display name, a Google or uploaded profile image, authentication records, birth year required for new account setup and used for self-declared age-based access, chosen country and a coarse country hint inferred from network location, preferred language, and optional gender/profile choices. If you choose Apple sign-in, this also includes your Apple provider identifier and any name or email Apple supplies, including a private-relay email address.
  • Account contact data: a provider-supplied email is stored in encrypted form with its verification and private-relay status. It can be viewed only by separately authorized Durna Ludo support administrators for account support and future communication readiness; it is not sent to product analytics providers.
  • Uploaded profile images: when this feature is enabled and you choose an image, Durna Ludo stores server-generated 128px and 512px WebP renditions plus lifecycle and moderation metadata. The active image is publicly retrievable through an unguessable URL. Replaced or reset images can remain public for the configured match-history retention period (currently 31 days); images removed by moderation or account deletion are quarantined immediately.
  • Apple authorization data: when Apple sign-in is enabled, Durna Ludo encrypts and retains a server-side refresh credential only to validate or revoke the Apple authorization. It is never placed in browser or app storage and is not used by Google sign-in.
  • Profile discovery data: social search uses a one-way hash of the normalized email address for exact-email lookup and can match text against public display names. Search results never return email addresses. New writes do not persist the normalized address; older profile records may retain it until the documented operational cleanup is completed.
  • Gameplay data: game choices, match state, results, history, room membership, invitations, and private-room moderation records.
  • Social and communication data: profile settings and images, friends and close friends, direct messages including pictures or GIFs you choose to send, chat, reactions, invitations, reports, and connection and participation data for live rooms and calls. Durna Ludo does not record live voice, video, or call media. Community features and stored Club voice notes are unavailable in this release.
  • Virtual economy data: account-bound Gold, Diamonds and other virtual balances, cosmetic ownership, loadout, progression, virtual transactions and receipts, grants, and reconciliation records. Virtual value can be granted, earned, or spent, but is not cash and has no prize value. Google Play purchases and subscriptions are unavailable in this release.
  • Technical data: IP and request records handled by hosting infrastructure, device and browser details, logs, security signals, and approved performance or product events.
  • Account activity data: Durna Ludo can retain coarse server-side times for sign-in, matchmaking, match outcomes and duration, reconnects, purchases, and profile or moderation-summary changes. This activity does not include moves, cards, message contents, private social graphs, room credentials, provider subjects, or authentication tokens.

How we use data

  • Authenticate accounts, preserve sessions, run matches, reconnect players, and deliver owned cosmetics.
  • Operate matchmaking, rooms, social tools, moderation, abuse prevention, support, and service diagnostics.
  • Provide an access-controlled support directory and aggregate game dashboards. Low-priority activity collection is best effort and may be incomplete during overload or service interruption.
  • Measure pseudonymous in-app product usage only after the player opts in. Optional public-page measurement likewise waits for the required choice.

Services involved

This release uses Google sign-in and Apple sign-in where offered; Cloudflare and the application host for delivery and protection; Azure Cosmos DB for application data; configured media infrastructure for optional live voice, video, and calls; DiceBear for generated robot avatar images; and configured alert infrastructure for sanitized operational alerts. Push notifications, native purchases and subscriptions, Community features and stored voice notes, optional public-page analytics, and external PostHog export are disabled in this release. Providers process data under their own terms and Durna Ludo’s configuration.

Retention and security

Records are retained for the period needed to provide the service, meet configured operational or legal requirements, resolve disputes, and prevent abuse. Retention differs by record type. Durna Ludo uses technical and organizational safeguards, but no online service can promise absolute security.

The encrypted account contact and captured account activity are retained while the account exists. Account deletion removes this identifiable data and requests deletion of the corresponding PostHog identity. Anonymous daily game aggregates can be retained without an expiry, and privacy-safe administrative security records can be retained for up to three years. Backup copies expire under the backup schedule and deletion is reapplied before a restored system serves data.

Direct messages are retained for no more than 90 days and only the newest 500 messages in a conversation are available. Removing a friend makes retained history read-only. Blocking in either direction hides the conversation and prevents reads and sends; unblocking does not restore sending unless the friendship is accepted again. Message operations are measured without storing message text, previews, or participant identifiers in operational telemetry.

Stored Club voice notes are unavailable in this release. If older voice-note records exist, their audio and metadata normally expire together 90 days after creation. A moderation-evidence reference can extend retention for the configured evidence period, and a separately authorized legal hold can suspend ordinary deletion. Reads remain subject to current access controls. Live voice, video, and calls are not recorded or retained as media by Durna Ludo.

Your choices and requests

The following deletion rules also cover any stored voice notes or purchase records from an earlier configuration, if those records exist. Signed-in players can permanently delete their Durna Ludo account in Settings. Once the request is durably accepted, every account session is fenced and background cleanup removes profile and social data, including every direct-message conversation involving the account, coins, virtual items, loadout, progression, and other mutable account data. Owner-scoped Club voice notes are deleted unless an authorized evidence or legal-hold policy requires a retained-by-policy result; purchase-receipt replay fences can remain only with account ownership anonymized. Removing a conversation also removes its retained history from the other participant. Active matches and rooms may be modified so play or settlement can continue. Direct identity is removed from completed shared-match and required audit records. Where integrity requires a non-empty reference, a random alias remains pseudonymous while its deletion mapping exists; when deletion completes, that mapping is scrubbed so the alias is no longer linkable to the deleted account. A limited one-way deletion receipt expires after 90 days.

Deleting your Durna Ludo account does not delete your Google or Apple account or records controlled by those providers. Durna Ludo offers no native purchases or subscriptions in this release. If you have a Google Play subscription from another or earlier service configuration, manage or cancel it in Google Play; deleting an app account does not cancel it. For Apple sign-in, account deletion also requests revocation of Durna Ludo’s Apple authorization. Revocation runs separately and continues if new Apple sign-ins are disabled.

You can change language, media permissions, privacy-related profile settings, and optional analytics choices where offered. Applicable law may provide rights to access, correct, delete, restrict, or object to processing. Use the verified contact route shown on this site to make a request.

Verified contact route

Email: [email protected]

View the contact page