Privacy Policy

Last updated 6 June 2026

Daily Cryptic ("we", "us") runs the website dailycryptic.coand its companion iOS app (together, the "Service"). This policy explains, plainly, what we collect and why. By using the Service you agree to it.

What we collect

  • Account. When you sign in with Google we receive your name and email address.
  • Your play. Puzzle progress, scores, streaks and preferences, so your game syncs across web and iOS.
  • Payments. If you subscribe to Plus, Stripe processes your card. We never see or store your card details — only that a subscription is active.
  • Product analytics. We use PostHog (EU-hosted) to understand how the Service is used so we can improve it: events like page views, puzzles played and Plus interactions, tied to your account, plus basic attribution (which site referred you). We honour your browser's "Do Not Track" setting and don't record your screen or keystrokes.
  • Advertising.We promote Daily Cryptic through Google Ads and Meta (Facebook / Instagram) Ads. To measure whether an ad led to a sign-up or subscription, we send a small amount of conversion data to those platforms through our analytics provider (PostHog) — including a one-way hashed version of your email and the ad-click identifier from the link you arrived on. We don't load Google or Meta tracking pixels on this site. You can opt out at any time: just — opting out stops this ad measurement. You can also adjust your Google and Meta ad settings directly.

How we use it

To run and improve the Service, sync your progress, process Plus payments, keep accounts secure, measure our marketing, and answer support requests.

Who we share it with

We don't sell your data. We share only what's needed with the providers that run the Service: Google (sign-in), Stripe (payments), PostHog (analytics), and Google and Meta (advertising measurement). We may disclose data if the law requires it.

Your rights

Wherever you live, you can ask us to access, correct, export or delete your data, or object to a use of it. EEA/UK (GDPR) and California (CCPA) residents have these rights explicitly; we don't sell personal information. Email privacy@dailycryptic.co and we'll action it.

Keeping it

We keep account and progress data while your account is active. Delete your account and we remove it within 30 days (payment records are retained for as long as the law requires).

Security

Data is encrypted in transit and at rest, and access is restricted. No system is perfectly secure — tell us at once if you suspect a problem.

Children

The Service isn't intended for children under 13, and we don't knowingly collect their data.

Changes

We may update this policy and will change the "last updated" date above when we do.

Contact

Questions or requests: privacy@dailycryptic.co.