Privacy Policy
This Privacy Policy explains how Push Thru (“Push Thru,” “we,” “us”) collects, uses, and shares information when you use pushthrugame.com and related apps. It is designed to be transparent for users in the United States (including California) and other regions with strong privacy expectations. This is not legal advice. Your local consumer rights that cannot be waived still apply.
We never sell your data. In our view, opt-out of sale is always on — we do not run a data-selling business. Read the short version: Our Privacy Stance.
1. Who we are
Push Thru is a casual online game (tap challenges, scores, cosmetics, friends/groups, optional social features). The service is operated by the publisher of pushthrugame.com (the account holder who ships and maintains the site/app).
Privacy requests (access, deletion, correction, do-not-sell/share): use the contact form and choose topic Privacy / data deletion, or see Your Privacy Choices.
2. Information we collect
We collect information in these categories (CCPA/CPRA-style groupings):
A. Identifiers
- Account ID (from our auth provider)
- Player code and optional synthetic login address used only for code+password accounts
- Optional real email if you link one for recovery
- Display name you choose
- IP address and basic request metadata as processed by our hosting/auth providers (not used by us for ads)
B. Account & commercial-style records (game economy)
- Token balance and ledger of cosmetic purchases / rewards (in-game currency only)
- Owned cosmetic skins and equipped look
- Support messages you send via the contact form (name, email, message content)
C. Internet / electronic activity
- Gameplay metrics: high score, 10s best, lifetime pushes/XP, sessions, PvP outcomes, territories
- Friends, friend requests, group memberships
- Device-side storage of progress and preferences (see Cookies)
- Age-gate confirmation and privacy preference flags stored on your device
D. User content (only if chat features are enabled in your build)
- Community board posts and private friend messages you choose to send
Current App Store–oriented web build ships with chat UI off by default.
E. Inferences
- Level derived from lifetime pushes; leaderboard rank derived from scores — for gameplay only, not advertising profiles
We do not intentionally collect
- Precise geolocation, government IDs, financial account numbers, or payment card data in the free web game
- Health, biometric identifiers, or contacts/photos/microphone access
- Third-party advertising IDs or cross-app tracking SDKs in the current web build
- “Sensitive personal information” as defined under CPRA for purposes of targeted advertising
Sources
- You — account creation, gameplay, settings, contact form
- Your device — local storage for offline play and preferences
- Service providers — auth/database/hosting that process data to run the service
3. How we use information
- Provide the service — accounts, scores, cosmetics, friends, groups, PvP
- Security & integrity — abuse prevention, session limits (one device at a time), score guards
- Support — respond to contact-form requests and privacy rights requests
- Legal compliance — respond to lawful requests; enforce Terms
- Improve the product — fix bugs and balance the game (not for selling personal data)
We do not use your data for cross-context behavioral advertising in the current build.
4. Cookies, local storage & similar technologies
Push Thru is primarily a static site plus authenticated APIs. We use browser storage (similar to cookies) rather than third-party ad cookies.
| Type | Examples | Purpose | Required? |
|---|---|---|---|
| Strictly necessary | Auth session; game progress; age confirmation; privacy choice record | Sign-in, scores, legal gates, remember your privacy choice | Yes — service cannot work without these |
| Functional / preferences | Theme, UI flags | Remember looks and settings | Yes for full experience; clearable in browser |
| Analytics / advertising | None in current web build | N/A | Not used |
On first visit we show a privacy & storage notice so you can acknowledge essential storage and review choices. See also Cookie & Storage Notice and Your Privacy Choices.
You can clear site data in your browser settings at any time. Clearing data signs you out and may remove local-only progress that was never synced.
5. When we share information
- Other players — display name, friend code, scores/level, cosmetics you equip, group presence (normal multiplayer visibility)
- Service providers — e.g. Supabase (auth/database), GitHub Pages or equivalent host, contact-form email relay. They process data under contracts/terms to provide infrastructure, not to sell your data for their own ads.
- Legal — if required by law, valid legal process, or to protect users/safety/service
- Business transfer — if the project is transferred, data may move with it under continued protections where required
6. “Do Not Sell or Share” (California & similar laws)
Under the CCPA/CPRA, “sell” and “share” have specific meanings (including sharing for cross-context behavioral advertising).
We do not sell personal information — full stop. We do not share personal information for cross-context behavioral advertising in the current Push Thru web build (no ad networks, no third-party ad cookies, no data brokers). See Our Privacy Stance: we treat privacy as the default, and in our view opt-out of sale is always on.
We still provide a Do Not Sell or Share My Personal Information control so the law’s notice-and-choice path is obvious. That page records your preference; it is not a sign that we sell data. We honor browser Global Privacy Control (GPC) signals as an opt-out of sale/share where that signal is present.
7. Your privacy rights & choices
All users
- Access / know — request categories and specific pieces of personal information we hold about you
- Delete — request deletion; you can also use Settings → Account → Delete account when signed in
- Correct — update display name/themes in-app; request correction of account errors via contact form
- Portability — request a copy of account/gameplay data we hold in a usable format where feasible
- Opt out of sale/share — Privacy Choices (even though we do not sell/share for ads)
- Limit use of sensitive PI — we do not use sensitive PI for inferring characteristics or ads; contact us with questions
- Non-discrimination — we will not discriminate against you for exercising privacy rights
California (CCPA/CPRA)
California residents have the rights above, including the right to know, delete, correct, and opt out of sale/share. You may use an authorized agent with proof of authority; we may need to verify your identity (e.g. confirming control of the account email/player code) before fulfilling requests.
We do not currently have actual knowledge that we sell or share personal information of consumers under 16. The App is not directed to children under 13 (see Children).
“Shine the Light” (Cal. Civ. Code § 1798.83): we do not disclose personal information to third parties for their direct marketing in exchange for money.
Other U.S. states
Residents of states with consumer privacy laws (e.g. Colorado, Virginia, Connecticut, Utah, and others as enacted) may have similar rights to access, delete, correct, and opt out of targeted advertising / sale. Use the contact form; we will apply the rights available in your state.
How to submit a request
- Prefer in-app Delete account for full account wipe when possible
- Or contact form → topic Privacy / data deletion
- Or Your Privacy Choices for sale/share opt-out preferences
We aim to respond within 45 days (or sooner where required), with extensions when allowed by law.
8. Children
Push Thru is a general-audience game and is not directed to children under 13 (COPPA). You must confirm you are at least 13 (or older if your region requires) before playing. We do not knowingly collect personal information from children under 13. If you believe a child under 13 created an account, contact us and we will delete it.
Parents/guardians: use the contact form with topic Privacy / data deletion.
9. Security & retention
We use reputable infrastructure (HTTPS, hosted auth/database with access controls and row-level security for user data). No method of transmission or storage is 100% secure.
Retention: we keep account and gameplay data while your account is active. After deletion, we remove or de-identify personal data from active systems within a reasonable period (typically within 30–45 days), except limited records retained for security, fraud prevention, dispute resolution, or legal compliance (e.g. abuse logs, transaction records for cosmetics if applicable).
10. International users
Servers may be located in the United States (or regions used by our providers). If you access Push Thru from another country, you understand your information may be processed in the U.S. with different data-protection rules. Where required, we rely on appropriate transfer mechanisms used by our providers.
EEA/UK users: the current build focuses on essential processing to provide the game you request. You may contact us to exercise access/erasure rights similar to those above.
11. Automated decision-making
We do not use automated decision-making that produces legal or similarly significant effects about you (e.g. credit, employment). Game systems may auto-reject invalid scores or throttle abuse as integrity measures.
12. Changes
We may update this Policy. The “Last updated” date will change when we do. Material changes will be highlighted on this page and/or via an in-app notice when practical. Continued use after the effective date means you acknowledge the updated Policy, except where consent is required by law.
13. Contact
Privacy questions, rights requests, and complaints: Contact form (topic: Privacy / data deletion) · Your Privacy Choices