Privacy Policy
Disclaimer: PhasmoSync is an unofficial, fan-made companion app for Phasmophobia. It is not affiliated with, endorsed by, or sponsored by Kinetic Games. Phasmophobia is a trademark of Kinetic Games.
PhasmoSync ("we", "us", or "the app") is an unofficial, ad-free companion app for the game Phasmophobia. This policy explains what information the app handles, what it does not, and the choices you have. We aim to collect as little as possible — and we never sell data.
Summary in plain English: No ads, advertising trackers, or account signup. We do not sell data. The app uses a random device identifier and device authentication to support online features. It processes multiplayer sessions, purchase checks, feedback you submit, and crash and error diagnostics as described below. Purchase checks and diagnostics can occur even when you only use single-player features. If you email us, we also receive your email address and the information you choose to send.
1. Information we do not collect
- No name, email address, or phone number is required to use the app. Information you voluntarily include in feedback or support email is described below.
- No user accounts — the app has no login system.
- No advertising identifier, IDFA, or ad tracking.
- No advertising or marketing analytics services. Crash and error diagnostics are described below.
- No GPS location collection or request for device location permissions.
- No access to contacts, photos, microphone, or camera.
- No cross-app advertising tracking.
2. Information we do collect
2.1 Device identifier and authentication
The app generates a random identifier and stores it locally using the platform's secure storage. The identifier is not derived from your name, email, Google account, Apple ID, or advertising ID. For multiplayer, it is used to:
- Identify your device within a multiplayer lobby so markers and room states stay in sync.
- Reconnect you to your own room state if you drop and rejoin.
The app also generates a random authentication secret, stores it securely on your device, and sends it to our server over an encrypted connection to prove ownership of the device identifier. The server stores the corresponding authentication record in Redis. This happens automatically and does not require an account or a password you choose.
On Android, uninstalling the app removes its secure-storage identifier and secret. On iOS, secure-storage data may survive uninstalling and reinstalling, so reinstalling is not a guaranteed reset.
2.2 Multiplayer session data
If you choose to host or join a multiplayer room, the following data is sent to our server during the session:
- The random device identifier described above.
- Room state: markers, room clearance states, crossed-out hiding spots, and similar gameplay data.
- A short, shareable room code.
Multiplayer session data is stored in Redis, a server-side data store shared by our server instances. Room records are removed when the server closes or cleans up a room. Each room record also has a 12-hour expiry that is refreshed when it is updated. A temporary disconnection may keep a room available for rejoining rather than deleting it immediately.
2.3 Feedback submissions
If you submit feedback through the in-app feedback form, our server receives your message, device identifier, and diagnostics. These include app and build versions, platform and device details, current screen, selected mode, map and difficulty, Pro status, and app icon and runtime settings. The server forwards your message and selected diagnostics to a private Discord channel used by the developer, with only the first eight characters of the device identifier. Our server does not maintain a separate feedback database. Only submit feedback you are comfortable sharing.
2.4 In-app purchases
The optional Pro one-time in-app purchase is handled by the Apple App Store (iOS) or Google Play (Android), and by RevenueCat (a purchase-management service). The app checks purchase availability and entitlement status during startup, before you choose whether to buy. Purchase management processes:
- Purchase receipts and entitlement information from Apple or Google.
- RevenueCat's own app-user identifier, which is separate from the multiplayer device identifier. The app also sends this RevenueCat identifier to our server to verify Pro access.
Restore Purchases uses the platform store and RevenueCat to look up your entitlement. We do not receive your payment information, billing address, Apple ID email, or Google account email through this purchase flow. RevenueCat's privacy policy is available at https://www.revenuecat.com/privacy.
2.5 App integrity check
To reduce piracy of paid features, the app verifies it is a genuine, unmodified PhasmoSync binary running on a genuine device before connecting to the multiplayer server:
- iOS: uses Apple's App Attest framework. The app generates a hardware-backed cryptographic key and sends Apple's attestation to our server for verification. The server stores the resulting public key linked to your random device identifier, with a 90-day expiry after storage, so later connections can be verified. This record is not linked by our app to your Apple ID, name, or email.
- Android: uses Google's Play Integrity API. The app sends the integrity token to our server, which asks Google to verify it. Our server does not maintain a database of these tokens. Integrity verification also produces server diagnostics, whose retention is separate from the token verification process.
2.6 Crash and error diagnostics
Sentry receives crash and error diagnostics, including some errors the app handles without crashing. Reports can include app and OS versions, device details, technical error information, the current screen, diagnostic breadcrumbs (recent technical events), and an SDK installation identifier. We disable Sentry's default personal-information sharing, performance tracing, session replay, screenshots, and view-hierarchy capture. Error messages and breadcrumbs can still contain contextual information, so these settings are not a guarantee of anonymity. Sentry's privacy policy is available at https://sentry.io/privacy/.
2.7 Support email
If you contact us by email, we receive your email address and the information you include so we can respond to your request. You do not need to send your Apple ID or Google account email for initial purchase support; your platform, app version, approximate purchase date, and a description of the problem are enough to start.
3. Third parties and service providers
We use a small number of third parties to run the app. Each is used only for the purpose described:
- Apple App Store — iOS app distribution, in-app purchases, App Attest framework.
- Google Play — Android app distribution, in-app purchases, Play Integrity API.
- RevenueCat — managing entitlements for the Pro one-time purchase.
- Sentry — receiving crash and error diagnostics.
- Fly.io — hosting our multiplayer and feedback server.
- Upstash — hosting the Redis data store used by our server.
- Cloudflare — DNS, delivery of this website, and support-email forwarding.
- Google Fonts — delivering this website's fonts.
- Gmail — receiving and replying to support email.
- Discord — receiving feedback you choose to submit via the in-app feedback form.
When you connect to these services, their providers process connection information such as your IP address and request metadata to deliver the service. Our server also records operational diagnostics, including some device and room identifiers and connection errors. The providers apply their own privacy and retention policies. We do not sell, rent, or trade data with third parties.
4. Data retention
- Multiplayer rooms: stored in Redis and removed when the server closes or cleans up a room. Room records expire after 12 hours without an update. Pending disconnection records are removed by server cleanup and do not have the same automatic expiry. These are application-level retention rules; they do not describe hosting-provider backup retention.
- Device authentication: server-side device authentication records expire 90 days after their last registration or refresh. Continued use can refresh this expiry.
- Feedback: forwarded to a private Discord channel and retained there per Discord's own retention policy. We do not store it separately.
- Support email: correspondence is received in our support inbox. You can request deletion by contacting privacy@phasmosync.com.
- Purchase entitlements: retained by Apple, Google, and RevenueCat per their policies, for as long as required to restore purchases.
- Integrity data: the iOS App Attest public key is linked to the random device identifier and expires 90 days after storage. This is an application-level expiry, separate from provider backups and diagnostic logs.
- Crash, error, and server diagnostics: retained according to the applicable Sentry and hosting-provider retention settings. Diagnostic logs can outlast a multiplayer session.
5. Security
All network traffic between the app and our server uses HTTPS/TLS. The device identifier and authentication secret are stored locally using the platform's secure storage. The server checks the device authentication record to help prevent another device from impersonating it.
6. Children's privacy
PhasmoSync is a companion for a game rated Mature and is not directed at children under 13. We do not knowingly collect information from children under 13. If you believe a child has submitted information to us, please contact us and we will delete it.
7. Your choices
- You can use single-player features without joining a multiplayer room. Purchase checks and crash or error diagnostics can still occur as described above.
- You can choose not to join multiplayer, submit feedback, or make a purchase.
- Uninstalling removes the secure-storage identifier and secret on Android. On iOS, these may survive reinstalling; contact us if you need help with a data deletion request.
- You can request deletion of any feedback you sent by emailing us with the text you submitted.
8. International users
Our multiplayer server and primary Redis data store are hosted in the United States. Our service providers may process the information described above in other countries as well, including outside your country of residence.
9. Changes to this policy
If we materially change what data is collected or how it is used, we will update the "Last updated" date at the top of this page and, where appropriate, surface a notice inside the app. Continued use of the app after a change means you accept the updated policy.
10. Contact
Questions, concerns, deletion requests, or general feedback can be sent to privacy@phasmosync.com.