Privacy Policy
Effective 22 April 2026 · Last updated 29 September 2026
This policy describes how Persistent World Games ("we", "us") handles personal data when you play EDGE: Survive or visit pwg.studio. We aim for the minimum data needed to run the game, credit your progress, and pay on-chain rewards.
EDGE: Survive is a devnet alpha. You are playing an early build and some behaviour described here may change before a full release. Material changes will bump the "Last updated" date and, where required, will surface an in-game notice.
- We store your Solana wallet address, your run history, and a session token so you can play from any device.
- We do not ask for or store email, real name, phone, seed phrase, or private key. Ever.
- Third parties we use: Supabase (hosting), Cloudflare (DDoS, CDN and visit counts), Solana RPC providers (on-chain reads), Unity Technologies (hard crash reports). Each sees only what it needs to do its job.
- You can ask us to delete your server-side data at any time by emailing privacy@pwg.studio.
1. Who is the data controller?
Persistent World Games is the controller for data collected through EDGE: Survive and pwg.studio. For any privacy question, data subject request, or complaint, contact: privacy@pwg.studio.
2. What we collect
2.1 Account identifier: your Solana wallet address
When you connect a Solana wallet, we store its public address as your account identifier. This is a public blockchain address. It is not a government ID, not an email, and not tied to your legal identity unless you separately disclose it. We never request or accept your seed phrase, private key, or device unlock code.
2.2 Game state
- Permanent stats (STR, VIT, SPD, DEX, INT, PER, DEF, EVA, FAVOR) and credited level.
- Run history: start time, end time, wave reached, kills, cores earned, whether you extracted or died, client version.
- Inventory held server-side (per item + currency tender).
- Monster Core (MC) and Crystal Core (CCORE) balances, and ledger entries for every earn, spend, sell, and conversion event.
- Stat-gem reset counter and cooldown timestamp.
2.3 Session + device context
- A session token (ES256 JWT, 2-hour lifetime) that you get back after signing an auth challenge with your wallet. Rotated every time you authenticate, so only one device is active at a time.
- Your client version string (e.g.
0.11b) on every request, so we can gate stale builds. - Your IP address is visible to our hosting and CDN providers during each request (Cloudflare, Supabase) for security, DDoS mitigation, and rate limiting. We do not store IPs in the game database ourselves.
2.4 Website visits (pwg.studio)
The marketing site is served by Cloudflare. Cloudflare receives your IP and User-Agent each time it serves a page. The site serves its own typefaces, so no font host receives them.
We count visits with Cloudflare Web Analytics. Cloudflare adds a small script to each page that measures the visit and how fast the page loaded, and reports it back through this site. It sets no cookie, and Cloudflare states that it does not collect or use visitors' personal data. We see totals only, never who visited.
The browser game keeps its save data in your browser's storage (IndexedDB), and the website keeps your sign in session in localStorage. Both are strictly necessary.
2.5 Crash and error reports
When the game hits an error it writes a report on your device and sends it to our server when there is a network, whether or not you are signed in. The report holds: what went wrong and the last lines of the game's log, with keys and addresses removed; the game's version and build; your device's model, operating system, processor, graphics device and interface, memory, screen and refresh rate; what the game was doing (screen, run, wave, time in the run, enemies, frame rate, quality setting); the last request to our server and its answer; your device's clock; and your wallet address if you are signed in.
3. Why we process each category (lawful basis)
- Contract (Art. 6(1)(b) GDPR): running the game you signed up to play. Storing your wallet, progress, runs, and balances so the game actually works.
- Legitimate interest (Art. 6(1)(f) GDPR): anti-cheat (rejecting impossible runs), abuse prevention (rate limiting, IP controls at Cloudflare), and cryptographic session rotation. Your interest in fair play is assumed to align.
- Legal obligation (Art. 6(1)(c) GDPR): any record retention we must keep for tax or regulatory reasons tied to on-chain payouts.
4. Who we share data with
We use the following processors. Each only sees the data needed for its function.
- Supabase: managed Postgres + Edge Functions. Stores everything in section 2.2 and 2.3. EU or US region. Supabase privacy policy.
- Cloudflare: CDN + DDoS protection for
pwg.studioanddownload.pwg.studio. Sees IP + User-Agent per request, and counts visits to the site without cookies. Cloudflare privacy policy. - Solana RPC providers: read-only blockchain queries (token balances, transaction confirmations). Providers vary; we log only the signatures we sign, never the request payloads.
- Helius and the Solana Foundation's public devnet node: receive your IP address when the browser game reads the chain.
- Unity Technologies: its crash service receives reports of hard crashes. Unity is our processor, and we are the controller. It collects an installation ID unique to your copy of the game, and keeps personal data for 90 days by default. You can ask us to delete it. Unity Diagnostics privacy overview.
5. On-chain data is permanent
Crystal Core (CCORE), a working name, is today a temporary test token on Solana's practice network (devnet). It has no monetary value and cannot be sold. Every send from the treasury to your wallet, and every pull from your wallet to the treasury (for CC purchases), is recorded publicly and cannot be deleted, even by us. Your wallet address is not linkable to your legal identity unless you choose to publish that link.
6. How long we keep data
- Run history and ledger rows: retained indefinitely to support replay detection, anti-cheat forensics, and your lifetime progression display.
- Session tokens: invalidated after 2 hours or on the next auth, whichever comes first.
- Nonces: pruned from the auth table once past their 5-minute validity window.
- Inactive accounts: we may archive or delete accounts inactive for more than 24 months. On-chain balances are not affected by any server-side deletion.
7. Your rights (GDPR / UK-GDPR)
Because your wallet address is the sole identifier we hold, requests that touch your data must be accompanied by a signed message from that wallet so we can verify you control it. You have the right to:
- Access the data we hold about you.
- Rectification of inaccurate data.
- Erasure of server-side data ("right to be forgotten"). On-chain data is out of our control. See section 5.
- Data portability: export of your progression and run history as JSON.
- Object to processing based on legitimate interest. In practice this means we stop processing your data for those purposes, which generally ends your ability to play.
- Lodge a complaint with your local supervisory authority.
To exercise any of these, email privacy@pwg.studio from a channel you control, and include a signed auth challenge from your wallet. We aim to respond within 30 days.
8. Children
EDGE: Survive is not directed at children under 13 (or the equivalent minimum age in your jurisdiction). We do not knowingly process data from children. If you believe a child has connected a wallet to the game, contact us and we will delete associated server-side data.
9. International transfers
Our processors operate in the United States and the European Union. Where data is transferred outside your region, processors rely on Standard Contractual Clauses or equivalent transfer mechanisms.
10. Security
We sign session tokens with ES256 (elliptic curve) and rotate your active session on every authentication. Database access is restricted to service accounts; every sensitive table has row-level security policies that ensure you only see your own rows. Treasury private keys used to sign on-chain payouts are not stored in application code. If the token ever moves beyond the test network, treasury custody moves to a multi-signature wallet first.
11. Changes to this policy
We will update the "Last updated" date at the top when this policy changes. For material changes we will surface an in-game notice on your next hub load.
12. Contact
Email:
privacy@pwg.studio
Controller: Persistent World Games
Website: pwg.studio