1. Information we collect
Account data includes username, email, password hash, plan, profile details, selected avatar and banner, verification status, security settings, phone fields when provided, and timestamps.
Project data includes project names, descriptions, app names, templates, builder state, canvas settings, target platform/device, publication status, share codes, publication update notes, and timestamps.
Security data includes session token hashes, device identifiers, browser, device, platform, user agent, IP address, site origin, online status, blocked device state, passkeys, two-factor status, backup codes, QR login sessions, verification codes, and password reset records.
Interaction data includes notifications, friendships and friend request state, connected account provider identifiers, provider profile data, scopes, support/form submissions, data export requests, and cookie preferences.
Game-player data includes provider account identifiers, display names, avatars, game session records, per-project activity and saved game data. A provider-verified email is associated with a specific project only when that project's sign-in flow requests it and the player explicitly agrees to the displayed purpose.
Monetization data includes Stripe connected-account identifiers and status, payout eligibility and currency, advertising provider and reconciliation event identifiers, project attribution, gross and allocated revenue amounts, availability dates, withdrawal amounts and statuses, Stripe transfer identifiers, failure codes, and related timestamps or metadata.
Game analytics data includes a pseudonymous visitor identifier, project and session identifiers, approximate device category, broad referral source, country code when supplied by infrastructure, page-view counts, active visible-play time, and session timestamps. Morgames does not store the visitor's raw IP address in the game analytics session record.