dothewrongthing-legal

Privacy Policy — Do The Wrong Thing

Effective date: April 19, 2026 Last updated: May 16, 2026

1. Summary

Do The Wrong Thing is a single-player narrative adventure game. It does not require an account, does not ask for any personal details, and does not sell or trade your data. This page explains what data is handled, why, and your rights.

2. Who we are

The app is developed and distributed by:

For the purposes of the EU General Data Protection Regulation (GDPR), this person is the “data controller”.

3. What the app does

You create a character, make story choices, and see the consequences. Your progress is saved on your device. There is no sign-in, no cloud save, no friends list, no messaging, and no game server.

4. Data stored on your device only

The following data is stored locally on your device — in your web browser’s local storage on the web version, and in the Android system’s app storage on the mobile version. It never leaves your device unless you explicitly export it via the in-game Settings screen:

You can export your save (JSON file) from the in-game Settings screen. To delete all local data, either use your Android device’s Settings → Apps → Do The Wrong Thing → Storage → Clear storage, or uninstall the app.

5. Data sent to third parties

The web version of the app does not transmit any data to any third party. Everything stays in your browser.

The Android version uses the following Google services:

5.1 Google Play Billing

If you buy the “Unlimited Replay” in-app purchase, Google Play handles the transaction end-to-end. The app never sees your payment card, billing address, or Google account details — it only receives a signed receipt confirming the purchase. Google’s privacy policy applies: https://policies.google.com/privacy.

5.2 Firebase Analytics (a Google service)

This is off by default. Firebase Analytics is only active if you have explicitly enabled it — either by tapping “Sure” on the one-time prompt shown on the title screen, or by turning on Settings → Privacy → Share anonymous analytics. You can turn it off again at any time in the same place. If you never enable it, nothing is ever transmitted to Firebase.

When enabled, the Android version mirrors the same anonymous gameplay events listed in Section 4 to Firebase Analytics. This helps the developer understand aggregated player behavior (e.g. which story routes players reach, where players drop off) to improve the game.

What is sent per event:

The character name and any other free-text input you type are not transmitted.

Data automatically collected by the Firebase SDK:

The app does not collect the Android Advertising ID (the AD_ID permission is not declared in the app manifest).

Firebase processes this data on the developer’s behalf under Google’s data processing terms: https://firebase.google.com/terms/data-processing-terms.

5.3 Google Play Store (the platform itself)

Google Play — independent of this app — collects installation and basic diagnostics for any app installed from the Play Store. This is governed by Google’s own policies, not by this app.

6. What is not collected

Data Purpose Legal basis
Game saves & preferences (local) Let you play and keep your progress Contract — Art. 6(1)(b)
Error logs (local) Diagnose crashes Legitimate interests — Art. 6(1)(f): app stability
Purchase state Deliver the feature you paid for Contract — Art. 6(1)(b)
Firebase Analytics events (Android) Understand aggregate player behavior to improve the game Consent — Art. 6(1)(a). Off by default; activated only by your explicit opt-in. Withdrawable anytime in Settings → Privacy.

8. Data retention

9. Your rights (GDPR — applies to EU / EEA / UK residents)

You have the right to:

How to exercise these rights

10. Children

The app is not directed at children under 13 (or under 16 in the EU). It does not knowingly collect data from children. If you believe a child has provided data through the app, email probablyfinegames@gmail.com and the data will be deleted.

11. International transfers

Data processed by Firebase Analytics and Google Play is handled on Google’s infrastructure, which may process data in the United States and other countries. Google is self-certified under the EU-US Data Privacy Framework and uses Standard Contractual Clauses for transfers from the EU / UK. Details: https://business.safety.google/privacy/.

12. Security

Local data is protected by your device’s operating system sandbox. Data in transit to Firebase is encrypted over TLS (HTTPS). Because there is no account system, there are no passwords or login credentials at risk.

13. Changes to this policy

Material changes will be announced on this page and, where practical, in-app on first launch after an update. The effective date at the top will be updated.

14. Contact

Questions? Email probablyfinegames@gmail.com.