개인정보처리방침

앱: 톡톡! 부스러기 (com.mallang.crumbpop)
개발자: 말랑컴퍼니
시행일: 2026년 8월 23일 · 개정일: 2026년 9월 20일

English privacy policy · 데이터 삭제 요청 / Data deletion

말랑컴퍼니(이하 "개발자")는 모바일 게임 톡톡! 부스러기(이하 "본 앱")를 제공하면서 이용자의 개인정보를 다음과 같이 처리합니다. 본 방침은 본 앱의 Android 및 iOS/iPadOS 버전에 적용됩니다.

1. 기기에 저장되는 정보와 서비스 이용

게임 진행도, 도감 기록, 아이템 보유 수, 음량·언어·진동 설정과 구매 권한 확인을 위한 영수증 또는 서명된 거래 정보 사본은 이용자의 기기에 저장됩니다. 개발자는 별도의 게임·결제 서버를 운영하지 않습니다. 진행도 연동을 지원하는 버전에서는 제3-3조에 따라 게임 저장 데이터가 Google 또는 Apple의 플랫폼 클라우드로 전송됩니다. 게임 이용 이벤트 및 광고·결제 관련 정보는 아래의 Google 및 Unity 서비스로 별도 전송됩니다. 문의를 보내시면 회신과 요청 처리를 위해 이메일과 문의 내용을 처리합니다.

본 앱은 별도의 CrumbPop 아이디·비밀번호 계정을 만들거나 이름·이메일·전화번호의 직접 입력을 요구하지 않습니다. 진행도 연동을 지원하는 버전에서는 기존 플랫폼 게임 계정에 연결할 수 있습니다(제3-3조). 인앱 구매는 이용 중인 플랫폼에 따라 Google Play 또는 Apple App Store 계정을 통해 이루어집니다. iOS/iPadOS의 구매 권한을 오프라인에서도 확인하기 위해 해당 기기의 보안 저장소(Keychain)에도 확인된 거래 정보 사본을 보관합니다. 자세한 내용은 제3-1조와 제5조를 참고해 주세요.

2. 광고를 위해 제3자가 수집하는 정보

본 앱은 무료로 제공되며, 운영을 위해 Google에서 제공하는 광고 서비스인 Google AdMob을 사용합니다. AdMob은 광고 제공, 분석 및 부정 이용 방지를 위해 다음 정보를 수집하고 공유합니다. 실제 처리 범위는 광고 동의와 기기 설정 등에 따라 달라질 수 있습니다.

항목목적
기기·앱 식별자 (Android 광고 ID·앱 세트 ID, iOS/iPadOS의 사용 가능한 기기·앱 범위 식별자 및 허용된 경우의 광고 식별자 IDFA)광고 게재 및 빈도 제어, 성과 측정
기기 정보 (모델, OS 버전, 언어, 화면 정보)광고 형식 최적화
네트워크 정보 (IP 주소 기반 대략적 위치, 국가)지역에 맞는 광고 제공
광고 상호작용 기록 (노출, 클릭)광고 성과 측정 및 부정 클릭 방지
진단 정보 (이용자와 연결된 성능 정보: 앱·SDK 시작 시간, 멈춤 비율, 에너지 사용 등; 이용자와 연결되지 않는 iOS SDK 충돌 로그)광고 제공·서비스 분석, 운영 및 부정 이용 방지

이 정보는 Google 광고 서비스를 통해 처리되며, 개발자는 AdMob에서 제공하는 집계 통계(노출 수, 수익 등)를 확인합니다. 일회성 상품을 구매하면 하단 배너 광고가 제거됩니다. 이용자가 선택하는 보상형 광고는 계속 제공되므로, 구매가 모든 광고 처리나 분석 SDK의 데이터 전송을 중단하는 것은 아닙니다.

Google의 데이터 처리 방식은 아래에서 확인하실 수 있습니다.
· Google 개인정보처리방침
· Google AdMob 정책
· Google Mobile Ads Android 데이터 수집·공유 안내
· Google Mobile Ads iOS 데이터 처리 안내

iOS/iPadOS에서는 광고 식별자(IDFA) 접근과 Apple의 추적 허용이 필요한 추적에 앞서 추적 허용 여부를 요청합니다. 허용하지 않은 경우 해당 IDFA 접근 및 추적을 하지 않습니다. 추적을 거부했다는 이유만으로 게임 진행이나 보상 이용 자격을 제한하지 않습니다. 보상은 선택형 광고를 정상적으로 완료하는 등 기존 제공 조건에 따르며, 광고 제공 여부는 지역별 동의 상태·네트워크·광고 재고 등에 따라 달라질 수 있습니다. 추적 거부가 모든 광고 표시나 모든 광고·분석 데이터 처리를 중단한다는 뜻은 아닙니다.

3. 앱 이용 통계 수집 (Firebase Analytics)

"톡톡! 부스러기"(영문명 CrumbPop, 패키지명 com.mallang.crumbpop, 이하 "앱")의 Android 및 iOS/iPadOS 버전은 Google LLC 가 제공하는 Firebase Analytics(Google Analytics for Firebase, 이하 "Firebase Analytics")를 사용하여 게임 이용 통계를 수집합니다.

1. 수집하는 정보

Firebase Analytics 통계 수집이 활성화된 경우 앱 이용 중 아래 정보가 자동으로 수집·전송됩니다. Android에서는 앱 실행과 함께 통계 수집을 시작합니다. iOS/iPadOS의 분석 선택과 적용 범위는 아래 제5항을 참고해 주세요.

Firebase 이용 통계를 위해 이름, 이메일 주소, 전화번호, 정밀 위치를 수집하지 않습니다. 플랫폼 계정의 진행도 연동은 Firebase 통계와 별도 기능이며, 게임 저장 데이터의 클라우드 전송은 제3-3조를 따릅니다.

2. 수집·이용 목적

게임 난이도 조정, 오류·이탈 구간 파악 및 품질 개선, 이용 현황 통계 분석. 위 목적 외에는 이용하지 않습니다. 광고 ID 를 이용한 맞춤 광고는 제2조(광고를 위해 제3자가 수집하는 정보)에 따릅니다.

3. 보유 및 이용 기간

Android의 Firebase 이용 통계는 Google Cloud BigQuery의 미국 리전으로 일별 내보내도록 설정되어 있습니다. 현재 iOS/iPadOS 스트림은 이 내보내기 대상에 포함하지 않습니다. 모바일 광고 ID 포함 옵션과 별도의 사용자 데이터 내보내기는 꺼져 있지만, 이벤트 내보내기에는 앱이 전송한 통계용 이용 식별자와 이벤트 정보가 포함될 수 있습니다. 내보낸 사본에는 Google Analytics의 보관 설정과 별도로 BigQuery의 데이터 세트·테이블 만료 및 삭제 설정이 적용되며, 실제 보관 기간은 해당 설정과 처리 상태에 따릅니다. 삭제 요청을 받으면 식별 가능한 관련 내보내기 사본의 존재 여부도 확인하여 필요한 별도 삭제 절차를 안내·처리합니다. Google Analytics에 대한 삭제 요청만으로 내보낸 사본까지 자동 삭제된다고 보장하지 않습니다.

4. 처리위탁 및 국외 이전

Firebase 이용 통계의 처리는 아래와 같이 Google에 위탁합니다(국외 이전 포함). 이 설명은 Firebase 통계 처리에 관한 것이며, 제2조의 광고 데이터 공유와 제3-1조의 결제 서비스 처리는 각각의 안내를 따릅니다.

5. 이용자의 권리와 행사 방법

6. 아동의 개인정보

앱은 만 14세 미만 아동을 대상으로 하지 않으며, 만 14세 미만 아동의 개인정보를 알면서 수집하지 않습니다. 만 14세 미만 아동의 정보가 수집된 사실을 알게 되면 지체 없이 삭제합니다.

3-1. 구매 및 구매 복원 (Google Play · Apple App Store · Unity IAP)

일회성 상품인 배너 제거 + 오프라인 플레이는 플랫폼에 따라 Google Play 또는 Apple App Store 결제로 구매합니다. 앱은 Unity In-App Purchasing(Unity IAP)을 통해 상품 ID, 구매 상태, 거래 식별자, 영수증·서명 또는 서명된 거래 정보를 처리하여 상품 소유권과 구매 복원을 확인합니다. 앱과 개발자는 카드 번호, 은행 계좌번호 또는 Google·Apple 계정 비밀번호를 직접 받거나 저장하지 않습니다. 이 상품은 선택형 보상 광고를 제거하지 않습니다.

Android: 앱은 Google Play 영수증을 기기에서 검증하고, 구매 복원 및 오프라인 권한 확인을 위한 영수증 사본을 기기에 저장합니다.

iOS/iPadOS: 앱은 Apple StoreKit이 검증한 현재 상품 소유권과 상품·거래 식별자를 확인한 후 권한을 부여합니다. 확인된 서명 거래 정보 사본을 해당 기기의 Keychain과 앱 저장소에 보관하여 오프라인 권한 확인에 사용합니다. Keychain 항목은 다른 기기로 동기화하지 않으며, 앱 저장소의 사본만으로는 구매 권한을 부여하지 않습니다. 구매 복원 버튼을 선택하면 Apple의 거래 동기화를 요청하며 Apple 계정 확인이 필요할 수 있습니다.

Google Play 또는 Apple은 결제와 구매 내역 조회를 처리합니다. Unity IAP SDK는 별도로 구매 시도·성공·실패·처리 완료 이벤트, 상품·거래 ID, 이용 가능한 영수증 원문·서명·서명된 거래 정보, 오류 사유·메시지, 시각 정보, 앱 버전과 기기 정보 및 사용 가능한 설치·세션 식별자를 Unity 서비스로 전송합니다. 이는 구매 기능 제공·운영 및 구매 서비스 분석에 이용됩니다. 연결은 암호화됩니다. 기기에서 구매 권한을 검증하거나 Keychain을 사용한다는 것은 SDK의 별도 전송이 없다는 뜻이 아닙니다. Firebase의 구매 이벤트 처리는 제3조의 분석 설명을 따릅니다.

구매는 선택 사항이지만, 앱은 실행 시 기존 구매를 자동으로 조회하며 구매 처리와 별도로 구매 SDK 전송만 끄는 설정은 제공하지 않습니다. iOS/iPadOS의 Apple 계정 확인을 수반하는 명시적 거래 동기화는 구매 복원 버튼으로 요청합니다. 재설치·기기 변경·앱 데이터 삭제 후에는 온라인 상태에서 같은 Google Play 또는 Apple 계정으로 소유권을 다시 확인해야 할 수 있습니다.

Google·Apple·Unity는 각 서비스 정책 및 해당 처리 역할에 따라 정보를 처리하며, 해외 서버에서 처리할 수 있습니다. Unity는 처리 목적에 따라 개발자의 수탁자 또는 독립적인 개인정보 처리자로 활동할 수 있습니다. Google Play와 Apple의 주문·거래 기록 및 Unity의 처리 기록은 앱의 로컬 저장 데이터와 별개입니다. 보관 기간과 삭제 방법은 제5조와 제7조를 참고해 주세요.

Google 개인정보처리방침 · Apple 개인정보처리방침 · Unity 개인정보처리방침 · Unity IAP 개인정보 처리 안내

3-2. 인터넷 연결 확인

오프라인 플레이 권한이 확인되지 않은 경우 앱 접속 및 스테이지 시작 시 Google의 HTTPS 연결 확인 서비스에 요청을 보냅니다. 연결 확인 과정에서 IP 주소 등 통신에 필요한 정보가 서비스에 전달됩니다. 이 요청에 게임 저장 파일, 영수증 또는 계정 정보를 첨부하지 않습니다.

3-3. 플랫폼 계정과 게임 진행도 연동

이 기능의 제공 여부는 앱 버전과 플랫폼 설정에 따라 다릅니다. 지원 버전은 Android에서 Google Play 게임즈의 저장된 게임, iOS/iPadOS에서 Game Center와 iCloud를 사용합니다. 플랫폼 계정이 이미 로그인되어 있고 서비스를 사용할 수 있으면 앱 실행 시 자동으로 연결과 백업을 시도합니다. 연결이 필요한 경우 앱 설정의 계정 연결에서 플랫폼 로그인 절차를 시작할 수 있습니다. 앱에는 현재 클라우드 연동을 끄거나 계정 연결을 해제하는 별도 스위치가 없습니다. 플랫폼 계정 연결이 되지 않아도 기기에 진행도를 저장하며, 기존 게임 이용 조건은 그대로 적용됩니다.

연동되는 게임 저장 데이터는 클리어 진행도, 도감 획득 수·확인 기록, 아이템 보유 수, 룰렛과 지급 대기 보상 상태, 보상 중복 지급 방지 기록 및 처음 제공되는 보상 이용 횟수입니다. 저장 시각과 저장본을 구분하는 식별 정보도 함께 전송합니다. 게임 기록의 백업, 재설치 후 복원, 같은 플랫폼의 같은 계정으로 다른 기기에서 이어 하기에 사용합니다. Android와 iOS 사이의 기록 이전은 지원하지 않습니다. iOS/iPadOS에서는 Game Center와 iCloud Drive를 사용할 수 있어야 하며, 네트워크·서비스 상태에 따라 동기화가 지연되거나 실패할 수 있습니다.

앱은 플랫폼에서 제공하는 플레이어 식별자와 프로필 표시 이름으로 계정을 구분하고 연결 상태를 표시합니다. iOS/iPadOS에서는 플레이어 식별자에서 만든 해시값을 클라우드 저장 이름에도 사용하여 계정별 기록을 구분합니다. 이 값은 계정에 연결되는 식별자이며 익명 정보로 취급하지 않습니다. 앱에 플랫폼 계정 비밀번호나 인증 코드를 직접 제공할 필요는 없습니다.

개발자는 별도 게임 저장 서버를 운영하지 않습니다. 게임 저장 데이터는 해당 플랫폼의 Google 또는 Apple 서비스로 전송됩니다. 이 저장 데이터에는 결제 영수증·구매 권한, Firebase 통계 기록, 음량·언어·진동 설정을 포함하지 않습니다. 플랫폼 로그인·저장 서비스는 기능 제공과 계정 관리 등을 위해 정보를 처리하며, Google Play 게임즈 SDK는 플레이어 정보와 서비스 이용·진단 정보도 처리합니다. 서비스 제공자는 각 정책과 계정 설정에 따라 국내외 인프라에서 처리할 수 있습니다. 이는 광고·분석·구매 서비스의 별도 데이터 처리를 중단한다는 뜻이 아닙니다.

Google Play 게임즈 데이터 처리 안내 · Google 개인정보처리방침 · Apple 개인정보처리방침 · iCloud 앱 데이터 안내

계정 로그인 및 앱별 iCloud 사용 여부는 플랫폼 설정에서 관리할 수 있습니다. 로그아웃이나 동기화 중지는 이미 저장된 클라우드 기록을 지우지 않습니다. 앱에는 현재 클라우드 기록 전용 삭제 버튼이 없으며, 플랫폼별 관리·삭제 방법은 제7조를 참고해 주세요.

4. 이용자의 선택권

맞춤 광고를 원하지 않으시면 기기 설정에서 직접 제어하실 수 있습니다.

Android: 설정 → Google → 광고 → 광고 ID 삭제 또는 맞춤설정 광고 선택 해제

기기 설정 변경으로 광고 맞춤설정이 달라질 수 있지만, 모든 광고 표시나 SDK의 모든 데이터 처리가 중단되는 것은 아닙니다.

iOS/iPadOS: 설정 → 개인정보 보호 및 보안 → 추적에서 앱의 추적 허용 상태를 관리할 수 있습니다. 허용을 거부하거나 나중에 철회할 수 있으며, 추적 허용은 게임 이용이나 보상 이용 자격의 조건이 아닙니다. 광고는 추적을 허용하지 않은 상태에서도 표시될 수 있습니다.

지역과 적용되는 동의 요건에 따라 Google의 광고 동의 메시지가 표시될 수 있습니다. 광고 개인정보 옵션이 필요한 경우 앱 설정에서 해당 옵션을 열어 선택을 변경할 수 있습니다. iOS/iPadOS에서는 양식에서 제공되는 분석 선택도 Firebase 통계 수집 설정에 반영합니다(제3조 5항). ATT만 거부하는 것과 분석 수집을 거부하는 것은 다르며, 이러한 선택이 구매 서비스의 모든 처리를 끄는 것은 아닙니다. Android의 통계 수집 및 거부 방법은 제3조를 참고해 주세요.

5. 보유 및 파기

Android의 게임 데이터와 영수증 사본은 기기 설정에서 앱의 저장 데이터를 삭제하거나 앱을 삭제하여 제거할 수 있습니다. iOS/iPadOS의 일반 앱 저장소 데이터는 앱을 삭제하여 제거할 수 있습니다. ‘앱 정리하기’는 데이터가 남을 수 있어 앱 삭제와 다릅니다. 기기 백업 설정에 따라 재설치 시 일부 앱 데이터가 복원될 수 있습니다. 로컬 데이터를 삭제해도 Google Play·Apple의 상품 소유권이나 Google·Apple·Unity가 이미 보유한 서비스 기록이 자동으로 삭제되지는 않습니다.

앱 삭제나 기기 데이터 삭제는 Google Play 게임즈·iCloud의 저장 게임을 삭제하지 않습니다. 남아 있는 클라우드 기록은 같은 계정으로 재설치했을 때 복원될 수 있습니다. 클라우드 기록에는 Firebase 통계의 14개월 보관 기간을 적용하지 않으며, 각 플랫폼의 정책·계정 설정과 삭제 절차를 따릅니다. 로컬 기록이 남은 상태에서 나중에 다시 동기화하면 해당 기록이 재업로드될 수 있습니다. 관리·삭제 방법은 제7조를 참고해 주세요.

iOS/iPadOS의 구매 권한용 Keychain 정보는 앱 삭제 후에도 해당 기기에 남을 수 있으므로, 앱 삭제가 이 보안 저장소 항목까지 제거한다고 보장하지 않습니다. 이 항목은 기기 밖으로 동기화하지 않습니다. 앱은 스토어 조회에서 더 이상 소유권이 없음을 확인하면 로컬 권한 저장을 해제합니다. 개발자는 기기의 Keychain을 원격으로 삭제할 수 없으며, 기기 저장 정보 관련 요청은 제7조로 문의할 수 있습니다.

Firebase 이용 통계의 보관 기간은 제3조 3항과 같습니다. 이 기간은 Google Play·Apple 결제 기록이나 Unity IAP 기록에 적용되지 않습니다. 해당 서비스의 기록은 각 제공자의 정책과 거래 처리·보안·법적 의무에 필요한 기간에 따라 보관되며, 일부 기록은 삭제가 제한될 수 있습니다. 문의 이메일은 요청 처리에 필요한 동안 보관하고, 관련 법령상 보존 의무가 있는 경우 그 기간을 따릅니다.

이미 전송된 데이터의 확인·삭제는 아래의 통합 요청 절차를 이용할 수 있습니다. 앱 삭제는 이후 앱에서 발생하는 전송을 중단하지만 과거 서버 기록을 자동으로 삭제하지 않습니다.

6. 아동의 개인정보

본 앱은 만 14세 미만 아동을 대상으로 하지 않으며, 아동의 개인정보를 고의로 수집하지 않습니다. 만 14세 미만 아동의 정보가 수집된 것을 인지한 경우 지체 없이 삭제 조치하겠습니다.

7. 데이터 삭제 요청 · 권리 행사 및 문의

톡톡! 부스러기(CrumbPop, 개발자 말랑컴퍼니)는 별도의 CrumbPop 아이디·비밀번호 계정을 만들지 않습니다. 지원 버전은 기존 플랫폼 게임 계정을 사용합니다. 별도 계정 생성 없이도 게임 저장 데이터, Firebase 이용 통계, 구매 관련 데이터 및 문의 내역의 열람·정정·삭제·처리정지를 문의할 수 있습니다. English deletion instructions

이메일: alsk1597@gmail.com

  1. 이메일 제목에 “CrumbPop 데이터 삭제 요청”을 쓰고, 삭제를 원하는 정보(플랫폼 게임 저장 기록, Firebase 통계, 구매 관련 기록 또는 문의 내역)를 알려 주세요.
  2. 앱 이름과 이용 플랫폼(Android 또는 iOS/iPadOS)·사용 기기·대략적인 이용 시기를 적어 주세요. 구매 관련 요청에는 확인 가능한 Google Play 주문 ID 또는 Apple 거래 식별자와 구매 시기를 선택적으로 첨부할 수 있습니다. 기기별 Firebase 기록을 찾는 데 추가 식별 정보가 필요하면 확인 가능한 정보의 범위를 함께 검토합니다. 앱에는 현재 통계 식별자를 표시하는 기능이 없으므로 특정 설치의 기록을 확인하지 못할 수 있으며, 이 경우 확인된 제한과 가능한 후속 절차를 안내합니다.
  3. 요청 처리에 필요한 최소 정보만 확인합니다. 카드 번호, 은행 계좌번호, Google·Apple 계정 비밀번호나 인증 코드를 보내지 마세요. 영수증을 첨부할 때도 요청과 무관한 개인정보는 가려 주세요.

요청을 확인한 뒤 관련 법령에 따른 기한 내에 처리하거나 진행 상황과 필요한 추가 절차를 안내합니다. 외부 제공자 확인이 필요한 경우 그 사실과 결과를 알려드립니다.

플랫폼 클라우드 데이터는 Google 또는 Apple의 관리 절차가 필요할 수 있습니다. 개발자가 이용자의 플랫폼 계정이나 클라우드 저장소에 직접 접근하여 원격으로 지운다고 약속하지 않습니다. 관리 항목을 찾기 어렵다면 위 연락처로 문의해 주세요. 로그아웃·동기화 중지·기기 사본 삭제·클라우드 사본 삭제는 서로 다른 조치이며, 남아 있는 기기 사본이 이후 다시 업로드될 수 있습니다.

법령상 보존해야 하거나 거래·보안상 필요한 일부 기록의 삭제가 제한되면, 확인 가능한 범위에서 대상과 이유를 안내합니다. 삭제 요청 접수 사실을 남겨야 하는 정보도 필요한 범위와 기간에 한해 보관합니다.

개인정보 침해에 대한 신고·상담이 필요하신 경우 아래 기관에 문의하실 수 있습니다.
· 개인정보침해신고센터 (privacy.kisa.or.kr / 국번없이 118)
· 개인정보보호위원회 (pipc.go.kr)

8. 변경 고지

본 방침이 변경되는 경우 이 페이지를 통해 공지하며, 변경된 내용은 게시일부터 적용됩니다.

Privacy policy — CrumbPop

App: CrumbPop (톡톡! 부스러기), com.mallang.crumbpop
Developer: Mallang Company (말랑컴퍼니)
Effective: August 23, 2026 · Revised: September 20, 2026

This policy covers the Android and iOS/iPadOS versions of CrumbPop and explains how the app processes information when you play, view ads, make purchases or contact us.

1. Information stored on your device

Game progress, collection entries, item quantities, sound/language/vibration preferences and a purchase receipt or signed-transaction copy are stored on your device. We do not operate a separate game or payment server. In versions that support progress synchronization, game-save data is also sent to Google's or Apple's platform cloud as described in Section 3-3. Gameplay events and advertising/purchase information are sent separately to the Google and Unity services described below. If you contact us, we process your email and message to respond to the request.

The app does not create a separate CrumbPop username/password account or require you to enter a name, email address or phone number. Versions that support progress synchronization can connect to an existing platform game account (Section 3-3). In-app purchases use your Google Play account or Apple Account, depending on the platform. On iOS/iPadOS, a copy of confirmed transaction information is also stored in the device's secure Keychain for offline entitlement checks. Sections 3-1 and 5 explain this storage.

2. Advertising — Google AdMob

AdMob collects and shares advertising/device identifiers, IP-based general location, interactions with the app and ads, and technical diagnostics for advertising, analytics and fraud prevention. Diagnostics may include user-associated performance data such as startup time, hangs and energy use, and non-user-related iOS SDK crash logs. Device/app information helps deliver suitable ads. Actual processing can vary with consent and device settings. We receive the aggregate reporting provided by AdMob.

Identifiers may include the Android advertising ID and app set ID, available device- or app-scoped identifiers on iOS/iPadOS, and the iOS advertising identifier (IDFA) when permission is granted.

The one-time purchase removes the bottom banner. Optional rewarded ads remain available. Buying this product does not turn off every advertising or analytics data flow.

See the Google Privacy Policy, AdMob policies, Mobile Ads Android data disclosure and Mobile Ads iOS data disclosure.

On iOS/iPadOS, the app requests permission before IDFA access and tracking that require Apple's authorization. That IDFA access and tracking do not occur without permission. Denying tracking alone does not block gameplay or change your eligibility for rewards. Rewards still depend on their normal conditions, such as completing an optional rewarded ad; ad availability can depend on regional consent, connectivity and ad inventory. Denying tracking does not necessarily stop all ads or every form of advertising and analytics processing.

3. Usage statistics — Firebase Analytics

The Android and iOS/iPadOS versions use Firebase Analytics, provided by Google LLC. When analytics collection is enabled, it automatically sends app-instance identifiers, a randomly generated analytics user identifier created by the app, and advertising identifiers available under the platform, configuration and permission settings; device model, OS/app version, language and time zone; approximate country/region; and app activity. The app's analytics identifier is not created from a name, email address or game login account. IDFA is available only with the required permission. Activity includes level starts/ends, completion time, retries, collection unlocks, screen/session events and automatic installation/update/removal events. Google Analytics derives location from the IP address and then discards the IP address rather than storing it. We do not collect GPS location.

Analytics also includes the highest completed stage, cumulative play time, completed rewarded-ad counts and event identifiers. On iOS/iPadOS, in-app purchase events may be measured through StoreKit and include product ID, name and price.

Google may provide aggregated estimates of age, gender and interests derived from advertising identifiers. The reports do not provide these estimates for named individuals. We do not collect names, emails or telephone numbers for gameplay analytics.

We use these statistics to adjust difficulty, identify errors or drop-off points, improve the game and understand usage. Advertising use is covered in Section 2. The Google Analytics retention period for identifier-linked event/user data is currently set to 14 months. Data that reaches the end of that period is processed through Google's monthly deletion procedure. If reset on new activity is enabled, a new event can renew the retention period for the user identifier; this reset applies only to user-level data. Estimated age/gender/interest data is retained for 2 months. Reports without identifiers can be retained without a fixed expiry.

Android Firebase usage statistics are configured for daily export to Google Cloud BigQuery in the United States region. The iOS/iPadOS stream is currently excluded from this export. The options to include mobile advertising IDs and to create a separate user-data export are off, but event exports may still contain the app's analytics user identifier and event information. Exported copies follow BigQuery dataset/table expiration and deletion settings separately from the Google Analytics retention setting; their actual retention depends on those settings and processing status. For a deletion request, we also check for identifiable related export copies and explain and carry out any necessary separate deletion procedure. A deletion request to Google Analytics is not a guarantee that exported copies are automatically deleted.

Google processes Firebase statistics on our behalf. The recipient is Google LLC, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. Data is transmitted as events occur over encrypted connections and may be processed in the United States and other countries where Google operates infrastructure. See Firebase privacy and security, the Google Privacy Policy and Google's privacy enquiry form. This service-provider description is specific to Firebase; it does not override the separate advertising and purchasing disclosures.

Android: analytics collection starts when the app runs, and there is no in-app analytics opt-out. Uninstalling stops subsequent app transmissions; it does not remove data already sent.

iOS/iPadOS: the app is configured to use Firebase analytics when Google's consent result indicates that analytics is granted or that consent mode does not apply. When analytics denial is recorded, the app applies it by turning off subsequent Firebase analytics collection. Where Google's privacy options are available, you can reopen them in the game settings and change the choices offered, including analytics. Users to whom consent mode does not apply may have analytics collected without an analytics consent form; there is no separate analytics on/off switch available in every region. Apple's tracking permission is a separate choice. Denying analytics does not block gameplay and does not disable all Apple, Google Play or Unity IAP purchase processing. Changing a choice does not delete previously transmitted records.

You can request deletion using Section 7. We may need the app-instance ID to locate the relevant installation. Uninstalling stops subsequent app transmissions but does not remove data already sent.

3-1. Purchases and restoration — Google Play, Apple App Store and Unity IAP

The one-time banner-removal and offline-play product uses Google Play or Apple App Store billing, depending on the platform, through Unity In-App Purchasing (Unity IAP). The app handles product/purchase status, product and transaction identifiers, and receipts/signatures or signed transaction information to confirm ownership and restore purchases. Neither the app nor the developer directly receives or stores card numbers, bank account numbers or Google/Apple Account passwords. This product does not remove optional rewarded ads.

Android: the app verifies the Google Play receipt locally and keeps a receipt copy for restoration and offline entitlement checks.

iOS/iPadOS: before granting access, the app checks current ownership verified by Apple StoreKit and the matching product and transaction identifiers. A copy of confirmed signed-transaction information is kept in that device's Keychain and app storage for offline checks. The Keychain item is not synchronized to other devices, and the app-storage copy alone cannot grant entitlement. Choosing Restore Purchases requests transaction synchronization with Apple and may require Apple Account authentication.

Google Play or Apple processes checkout and purchase-history queries. Separately, the installed Unity IAP SDK transmits purchase attempts/outcomes, product and transaction identifiers, available receipt content/signatures or signed transactions, error details, timestamps, app/device information and available installation/session identifiers to Unity. These support purchasing operations and purchase-service analytics. Transport is encrypted. Local entitlement verification and Keychain storage do not prevent this separate SDK transmission. Firebase purchase-event processing is described in Section 3.

Purchasing is optional, but the app automatically queries existing purchases at startup and has no independent switch to disable purchase-SDK transmission. On iOS/iPadOS, explicit transaction resynchronization that may require Apple Account authentication is requested through Restore Purchases. After reinstalling, changing devices or clearing app data, you may need an internet connection and the same Google Play or Apple Account to confirm ownership again.

Google, Apple and Unity process information under their respective policies, potentially outside your country. Unity's role can be a processor for the developer or an independent controller, depending on the processing. Google Play and Apple purchase records and Unity service records are separate from your local app data. See the Google Privacy Policy, Apple Privacy Policy, Unity Privacy Policy and Unity IAP privacy overview. Retention and requests are explained in Sections 5 and 7.

3-2. Connectivity checks

Unless offline entitlement is confirmed, the app checks internet access when entering the app and starting a stage through Google's HTTPS connectivity service. The service receives network information such as your IP address. The check does not attach a game save, receipt or account information.

3-3. Platform accounts and game-save synchronization

Availability depends on the app version and platform settings. Supported versions use Google Play Games Saved Games on Android, or Game Center and iCloud on iOS/iPadOS. When a platform account is already signed in and the service is available, the app automatically attempts connection and backup at startup. If connection is needed, Account Connection in the game settings starts the platform sign-in process. The app currently has no separate switch to disable cloud synchronization or disconnect the account. Progress is still saved locally when the platform account is unavailable; existing gameplay access conditions continue to apply.

The synchronized save contains cleared-level progress, collection counts and viewed status, item quantities, roulette and pending-reward state, duplicate-reward markers, and introductory reward usage. Save timestamps and identifiers that distinguish save revisions are also transmitted. This supports backup, restoration after reinstalling, and continuation on another device using the same account on the same platform. Transfers between Android and iOS are not supported. Game Center and iCloud Drive must be available on iOS/iPadOS. Synchronization can be delayed or fail depending on connectivity and service availability.

The app uses the platform-provided player identifier and profile display name to distinguish accounts and show connection status. On iOS/iPadOS, a hash derived from the player identifier is also used in the cloud save name to separate accounts' records. This remains an account-linked identifier, not anonymous data. You do not provide platform passwords or verification codes directly to the app.

We do not operate a separate game-save server. Saves are sent to the relevant Google or Apple platform service. This gameplay upload excludes payment receipts and purchase entitlements, Firebase analytics records, and sound, language and haptics preferences. Platform sign-in and storage services process information for functionality and account management; the Google Play Games SDK also processes gamer identity, service-use and diagnostic information. Providers may process information on infrastructure in and outside your country under their policies and account settings. This does not stop the separate advertising, analytics or purchase-service processing.

See the Google Play Games data disclosure, Google Privacy Policy, Apple Privacy Policy and iCloud app-data guidance.

You can manage platform sign-in and app-specific iCloud use through platform settings. Signing out or disabling synchronization does not erase existing cloud saves. The app currently has no dedicated cloud-save deletion button. Platform-specific management and deletion instructions are in Section 7.

4. Your choices

You can reset/delete the advertising ID or adjust personalised ads in Android Settings > Google > Ads (the path varies by device). This can change ad personalisation without removing all ads or all SDK processing. Uninstalling stops future transmissions by the app. Previously transmitted information is subject to the retention and request procedures below.

iOS/iPadOS: manage the app's tracking permission in Settings → Privacy & Security → Tracking. You can decline or later revoke permission. Tracking permission is not a condition of gameplay or reward eligibility, and ads may still appear without it.

Google consent messages may be shown depending on your region and applicable consent requirements. When advertising privacy options are required, an entry in the game settings lets you reopen them and change your choices. On iOS/iPadOS, any analytics choice offered in the form is also applied to Firebase analytics collection as described in Section 3. Denying ATT alone is different from denying analytics, and these choices do not disable all purchasing-service processing. Android analytics collection and its opt-out limitations are described in Section 3.

5. Retention and removal

On Android, clearing app storage in settings or uninstalling removes local progress, settings and receipt copies. On iOS/iPadOS, deleting the app removes its ordinary app-storage data; offloading the app can leave data behind and is different from deleting it. Device backup settings may restore some app data on reinstallation. Deleting local data does not automatically remove Google Play or Apple ownership or service records held by Google, Apple or Unity.

Uninstalling or clearing device data does not delete saves held by Google Play Games or iCloud. A retained cloud save may be restored after reinstalling with the same account. Cloud saves follow each platform's policies, account settings and deletion procedures; Firebase's 14-month analytics retention does not apply to them. If local progress remains, synchronizing later may upload it again. See Section 7 for management and deletion.

The iOS/iPadOS entitlement Keychain item may remain on the same device after uninstalling, so uninstalling does not guarantee its removal. It is not synchronized off the device. The app clears its local entitlement when a store query confirms that the product is no longer owned. We cannot remotely delete the device's Keychain. You can contact us about device-storage requests using Section 7.

Firebase retention is described in Section 3. That Analytics retention setting does not apply to Google Play, Apple or Unity IAP records. Those providers retain records under their policies and transaction, security or legal requirements; some records may be exempt from deletion. We keep support messages for the time needed to handle the request and any legally required retention period.

6. Children

The game is not directed at children under 14. We do not knowingly collect their personal information and will take prompt deletion action if we learn that such information has been collected.

7. Request data deletion or exercise your rights

CrumbPop, provided by Mallang Company, does not create a separate CrumbPop username/password account; supported versions use existing platform game accounts. You can contact us about access, correction, deletion or suspension of processing for game saves, Firebase statistics, purchase-related information or support messages without creating a separate account.

  1. Email alsk1597@gmail.com with the subject “CrumbPop data deletion request” and state which information you want deleted.
  2. Include the app name, platform (Android or iOS/iPadOS), device and approximate period of use. For a purchase request, you may include a Google Play order ID or Apple transaction identifier and purchase date. If additional identifiers are needed to locate installation-specific Firebase records, we will review what information can be established. The app currently has no analytics-identifier display, so we may be unable to identify a particular installation's records; we will explain the verified limitations and any available next steps.
  3. Provide only the minimum necessary information. Do not send card/bank details, passwords or authentication codes. Redact unrelated personal information from any receipt you attach.

After reviewing your request, we will process it within the timeframe required by applicable law or explain progress and any additional steps needed. If a provider must act on the request, we will explain that process and relay the result.

Platform cloud data may require Google's or Apple's management procedures. We do not promise direct access to your platform account or remote deletion from your cloud storage. Contact us if you cannot locate the relevant controls. Sign-out, disabling sync, local-copy deletion and cloud-copy deletion are different actions; a surviving local copy may be uploaded again later.

If deletion is restricted by retention obligations or necessary transaction/security records, we will explain the affected information and reason as far as we can establish them. We retain request-handling records only as necessary. For privacy complaints in Korea, you may contact the Privacy Infringement Report Center (privacy.kisa.or.kr, 118) or the Personal Information Protection Commission (pipc.go.kr).

8. Changes and contact

Changes are announced on this page and apply from publication. Contact: alsk1597@gmail.com.