MazeDIY App Privacy Policy

Effective date: 12 May 2026

中文

MazeDIY ("the App", "we", "us", or "our") is a fully offline creative tool that turns images into playable mazes. The current version of the App ships without any account system, without analytics, and without server-side storage of your content. This policy lays out exactly what happens — and what does not happen — when you use it.

1. Scope

This Privacy Policy applies to the MazeDIY mobile application distributed via the Apple App Store and Google Play. It does not apply to the MazeDIY website, third-party websites, third-party services that may be linked from the App, or any future products that publish their own separate policy. Where this policy and the App Store / Google Play data-disclosure listings disagree, the more privacy-protective disclosure controls.

2. The data we handle

2.1 Images and source files. When you tap "upload image", the photo or file you pick is read into the App's memory and converted into a black-and-white silhouette. The original image and the derived silhouette are processed entirely on your device. They are not uploaded to our servers or to any third party. If you remove the App or clear its storage, those copies are removed with it.

2.2 Generated mazes and project history. Mazes you create, together with the seed, grid size, difficulty preset, and decoration choices, are saved in the App's local sandbox so you can reopen them. This history lives only on your device.

2.3 Accounts. The App does not offer or require an account. We collect no email address, no user identifier, and no profile information.

2.4 Device and diagnostic data. The App does not contain a third-party analytics SDK and does not transmit usage telemetry. The App requests only the permissions it needs to function (for example, photo library access so you can pick an image, write access so you can save the finished maze to your album, and camera access if you choose to scan a maze QR shared by a friend). If a future release introduces crash reporting or analytics, we will surface a fresh in-app consent prompt and update this policy before the change applies to you.

2.5 Payments. Any paid feature is processed by Apple's App Store or Google Play. We do not receive your full card details, only the receipt and entitlement information returned by the platform.

2.6 Network requests. The only network endpoint the App reaches in normal operation is the read-only public maze gallery feed at mazediy.com. The request contains no personal data; we receive only the IP-level metadata your network provider exposes to any HTTP request.

3. How we use the data

We use the data described above to operate the App's core function — turning your image into a maze and letting you edit, save, export, share, and play it — and to remember your in-app preferences such as language and difficulty. We do not sell your personal data, we do not share it with advertising networks, and we do not use it to train third-party machine-learning models.

4. Legal basis

Where the EU General Data Protection Regulation, the United Kingdom GDPR, or comparable laws apply, our legal bases are: performance of the contract you enter into by installing and using the App; your consent, which you provide via the first-launch consent screen and which you can withdraw at any time by uninstalling the App or by tapping "delete my data" in Settings; and our legitimate interest in operating a safe, working product.

5. Retention

Image data and derived silhouettes are retained for the duration of the editing session and any local history you choose to keep. Local history persists until you delete the relevant project, use the "delete my data" action in Settings, clear the App's storage, or uninstall the App.

6. Children

MazeDIY is suitable for general audiences, including children, when used with appropriate supervision. The App does not knowingly collect personal information from children. If account features become available in a future release, they will be gated behind age-appropriate sign-up flows in line with the applicable jurisdiction (for example, COPPA in the United States and the GDPR's minimum-age rules in the EU). Parents or guardians who believe a child has provided personal information may contact us using the address in section 10 and we will delete it.

7. Security

Because the App stores your data only on your device, the primary security boundary is your device itself: keep its operating system up to date, use a screen lock, and avoid installing the App on a device you do not trust. No method of electronic storage is perfectly secure and we cannot guarantee absolute security.

8. Your rights

Depending on where you live, you may have the right to access, correct, delete, restrict, or port the personal data we hold about you, and to object to certain processing. Because the App does not transmit personal data to us, these rights can be exercised locally — by deleting a project, by using the "delete my data" action in Settings, or by uninstalling the App. You can also contact us at the address in section 10 for any other request.

9. Changes

We may update this policy from time to time. The "Effective date" at the top reflects the latest revision. If a change is material — for instance, if we introduce a new category of data collection — we will surface a fresh consent prompt inside the App before the change applies to you.

10. Contact

Questions, requests, or complaints about this policy can be sent to support@mazediy.com. We aim to acknowledge messages within five business days.

support@mazediy.com