Privacy Policy
Last updated: January 2025

1. Introduction

LaughTaleOP ("we," "our," or "us") operates laughtaleop.com (the "Service"). This Privacy Policy informs you of our policies regarding the collection, use, and disclosure of personal data when you use our Service and the choices you have associated with that data.

We use your data to provide and improve the Service. By using the Service, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Information You Provide

When you create an account or use our Service, we may collect:

  • Account Information: Email address, name, and profile picture (when using OAuth providers)
  • Deck Data: Deck builds, card selections, deck names, and other content you create
  • Authentication Data: Information provided when signing in via email/password or OAuth providers (Google, Discord)

2.2 Information Collected Automatically

When you access and use the Service, we automatically collect:

  • Usage Data: Information about how you interact with the Service, including pages visited, features used, and time spent
  • Device Information: Browser type, device type, operating system, and IP address
  • Log Data: Server logs, error reports, and performance metrics

3. How We Use Your Information

We use the collected information for various purposes:

  • To provide and maintain our Service
  • To authenticate and manage your account
  • To save and retrieve your deck builds and preferences
  • To improve, personalize, and enhance your experience
  • To analyze usage patterns and optimize the Service
  • To detect, prevent, and address technical issues
  • To comply with legal obligations

4. Authentication Providers

We offer multiple authentication methods:

4.1 Email/Password Authentication

When you create an account using email and password, we store your email address and a securely hashed version of your password. We do not store your password in plain text.

4.2 Google OAuth

When you sign in with Google, Google provides us with:

  • Your Google account email address
  • Your name and profile picture (if available)
  • A unique identifier for your Google account

This information is used solely for authentication and account management. We do not access or store any other data from your Google account. Your use of Google's services is also governed by Google's Privacy Policy.

4.3 Discord OAuth

When you sign in with Discord, Discord provides us with:

  • Your Discord account email address
  • Your Discord username and avatar (if available)
  • A unique identifier for your Discord account

This information is used solely for authentication and account management. We do not access or store any other data from your Discord account. Your use of Discord's services is also governed by Discord's Privacy Policy.

5. Analytics and Tracking

5.1 PostHog Analytics

We use PostHog, a product analytics platform, to understand how users interact with our Service. PostHog helps us:

  • Analyze user behavior and feature usage
  • Identify and fix technical issues
  • Improve user experience and service performance
  • Make data-driven decisions about product development

PostHog may collect the following information:

  • Page views and navigation patterns
  • User interactions (clicks, form submissions, etc.)
  • Device and browser information
  • IP address (which may be anonymized)
  • Session recordings (if enabled)

PostHog's data processing is governed by their Privacy Policy. You can learn more about PostHog's privacy practices at posthog.com/privacy.

6. Cookies and Similar Technologies

We use cookies and similar tracking technologies to track activity on our Service and hold certain information. Cookies are files with a small amount of data which may include an anonymous unique identifier.

Types of cookies we use:

  • Essential Cookies: Required for the Service to function properly (e.g., authentication sessions)
  • Analytics Cookies: Used by PostHog to collect usage statistics and improve the Service
  • Preference Cookies: Remember your settings and preferences

You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.

7. Data Storage and Security

We implement appropriate technical and organizational measures to protect your personal data:

  • Encryption of data in transit using HTTPS/TLS
  • Secure password hashing (passwords are never stored in plain text)
  • Regular security assessments and updates
  • Access controls and authentication requirements

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal data, we cannot guarantee its absolute security.

8. Data Sharing and Disclosure

We do not sell your personal data. We may share your information only in the following circumstances:

  • Service Providers: With trusted third-party service providers who assist us in operating our Service (e.g., PostHog for analytics, hosting providers)
  • Legal Requirements: When required by law, court order, or governmental authority
  • Business Transfers: In connection with any merger, sale of assets, or acquisition
  • With Your Consent: When you have given us explicit permission to share your information

9. Your Rights and Choices

Depending on your location, you may have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you
  • Correction: Request correction of inaccurate or incomplete data
  • Deletion: Request deletion of your personal data
  • Portability: Request transfer of your data to another service
  • Objection: Object to certain processing of your data
  • Withdrawal of Consent: Withdraw consent where processing is based on consent

To exercise these rights, please contact us using the information provided in the Contact section below. We will respond to your request within a reasonable timeframe.

10. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law. When you delete your account, we will delete or anonymize your personal data, except where we are required to retain it for legal purposes.

11. Children's Privacy

Our Service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us so we can delete such information.

12. International Data Transfers

Your information may be transferred to and maintained on computers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ. By using our Service, you consent to the transfer of your information to our facilities and those third parties with whom we share it as described in this Privacy Policy.

13. Changes to This Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.

14. Third-Party Services

Our Service may contain links to third-party websites or services that are not owned or controlled by us. We have no control over, and assume no responsibility for, the privacy policies or practices of any third-party services. We encourage you to review the privacy policies of these third-party services:

15. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights regarding your personal data, please contact us through the appropriate channels on our website.