This policy explains how slop.game ("Slop", "we", "us") handles information when you use the app, website, AI game-creation tools, hosted games, and community features.
Scope and age
Slop is a 13+ service and is not directed to children under 13. Residency information is optional demographic information and is not used to decide whether someone may create an account. If we learn that an account belongs to a child under 13, we will close it and delete associated personal information, subject to legal-preservation duties.
Information we collect
- Account information, such as email address, username, profile details, age band, optional US-residency response, guardian-permission attestation, and sign-in provider identifiers.
- Creator and community information, including prompts; game source and bundle files that are generated, pasted, or imported; published or unlisted games; comments and GIF URLs; scores, likes, saves, follows, blocks, reports, and remix relationships.
- Circle information, including conversation membership, messages, attachments, and message-report records. Messages are visible to conversation participants and reported messages may be reviewed by authorized safety personnel.
- Progression and account-state information, including game credits, Slop Coins, virtual items, and relevant purchase or entitlement records.
- Usage and device information needed to operate and secure the service, including plays, app version and build, platform, operating-system and WebView major versions, game-runtime and SDK versions, selected and actual model identifiers, IP address, operational error categories and machine codes, sampled game-session milestones, crash and performance measurements, and Firebase installation identifiers and Cloud Messaging device tokens used to provide optional notifications.
Automatic operational diagnostics are separate from product analytics. They may include random trace and event identifiers, a support code, an error stage and machine code, exception class, a one-way signature made from normalized Slop-owned stack frames, and the exact public game release and bundle digest involved. Authenticated Studio Preview diagnostics may include an owner-linked random diagnostic game identifier, a random preview-release identifier, and the exact private bundle digest, but never the private game slug, storage path, link capability, prompt, or source. Rollout-included launches may retain minimal account or anonymous-session, exact-release, and cohort receipts for idempotency, abuse prevention, and error binding. Lifecycle milestones and environment details are retained only for a deterministic 10% cohort; errors are captured at 100%, with failure rates calculated from that same cohort. Signed-out diagnostics use short-lived sessions without creating a persistent diagnostic device identifier.
Automatic diagnostics do not send or derive fingerprints from raw exception messages or stacks, prompts, generated source, provider responses, URLs, text you type, private-game capabilities, or screenshots. If you explicitly consent when making a technical report, you may separately send a scrubbed error of up to 1 KB and up to 20 normalized lifecycle or gesture summaries. The app shows the report before you submit it.
Raw profile-photo, banner, and custom-cover uploads are currently disabled.
How we use information
We use information to operate accounts; generate, review, host, rank, and recommend games; apply Slop's platform-wide 13+ content standard; provide community and Circle features; maintain progression and virtual balances; prevent fraud and abuse; enforce our rules; maintain security and reliability; communicate with you; and meet legal obligations.
Every game submitted for public discovery is held off public feeds and search until an authorized reviewer approves it against Slop's 13+ content standard. Review may use automated systems and authorized human reviewers. Unlisted private games may be accessible to anyone who receives their exact link. Pending-review games are not accessible through external play links unless their status later becomes published or private. All games remain subject to safeguards, review, reporting, restriction, and removal.
AI and service providers
Prompts, relevant game source, generated or imported bundle files, and request metadata may be sent through Slop's authenticated server proxy for generation, diagnosis, moderation, refinement, metering, routing, and abuse prevention. Managed AI requests may be routed to OpenAI, Moonshot AI (Kimi), or another provider identified in the app. Do not include confidential or sensitive personal information in prompts.
The current app offers managed AI model choices and does not accept a user-supplied AI-provider API key. On upgrade from an older release, the app attempts to delete known legacy provider keys stored locally without reading or transmitting them.
We use Supabase for authentication, database, storage, and realtime features; OpenAI and Moonshot AI for managed AI requests; Google for sign-in on supported non-iOS platforms, optional Android speech recognition, and Firebase Cloud Messaging delivery; Apple for Sign in with Apple on iOS, app distribution, device services, and optional iOS speech recognition; ElevenLabs for optional spoken Slop replies; and other processors needed to operate the service. Providers process information under their own terms and our applicable agreements.
If you choose a microphone control, iOS or Android speech-recognition services process your microphone audio and return a transcript. Slop places that transcript in the same editable game-idea, conversation, or refine field used for typed text. Slop does not activate the microphone unless you tap a voice control and grant permission. When spoken Slop replies are enabled, the short reply text and your selected Slop voice are sent through Slop's authenticated server to ElevenLabs to generate audio under ElevenLabs' applicable privacy terms. Slop plays that reply from memory and does not intentionally save it to your device or a public storage bucket.
GIPHY provides the comment GIF picker and GIF media. Picker discovery and search requests go through Slop's authenticated GIF proxy; Slop processes account or session metadata, standard request information, search terms, and request-quota state, while GIPHY receives the proxied search or trending request. Your device connects directly to GIPHY to render GIF preview or comment media, at which point GIPHY may receive your IP address, device identifiers, and standard media-request information. If you post a GIF, Slop stores the selected GIPHY media URL with your public comment, and viewers' devices connect to GIPHY to load it. GIPHY processes this information under its privacy policy.
On Android, Firebase Cloud Messaging initializes at app startup and may generate an installation identifier and messaging registration token, and process app/device metadata, before sign-in or notification permission. If you enable notifications while signed in, Slop registers the device token with your account to deliver Crown, message, and social activity alerts, plus operational reliability alerts for administrators. Slop rotates or removes its account-linked token registration when the provider changes it or you sign out. A notification may identify the activity that occurred, but Slop does not include private Circle message bodies in lock-screen push payloads. Reliability pushes also exclude raw diagnostic details; you open the app to inspect them.
The current release does not initialize product analytics or create a product-analytics install identifier, request tracking permission, or load third-party advertisements. Operational diagnostics are used only to provide support and detect, investigate, and fix reliability or security problems; they are not used for advertising, cross-app tracking, or marketing profiles. We do not sell personal information. If these practices change, we will update this policy and the applicable store privacy disclosures before enabling them.
Public and private information
Published games, creator handles and profiles, public comments, scores, and remix relationships are public. Drafts remain creator-only. Unlisted private games stay off public discovery surfaces but may be accessed through their exact links. Pending-review games stay off public discovery surfaces and external play links unless their status later becomes published or private. Circle messages are visible to conversation participants; authorized personnel may access reported messages for safety review or information when needed to secure, operate, or comply with law.
Retention, choices, and deletion
We retain information while needed to provide and secure the service and to comply with law. Automatic error occurrences, runtime sessions, and authenticated Studio Preview attestations (including their opaque identifiers and private bundle digest) are retained for up to 30 days; non-identifying daily diagnostic counts for up to 180 days; explicitly consented diagnostic details for up to 30 days; and an unresolved error group's machine fingerprint and aggregate history until it is resolved. You can update profile information, report games or chat messages, block creators, control optional marketing email, and delete your account in the app. You can also request account and associated-data deletion on the web if you no longer have the app. After deleting an Apple-authenticated account, the app directs you to iPhone Settings to revoke the remaining Sign in with Apple authorization. US residents may request access, correction, or deletion without discrimination.
Contact
Privacy requests and reports concerning an under-13 account: privacy@slop.game
App support: support@slop.game
Safety reports: safety@slop.game