← Back to Legal & Policies
Privacy Policy
Last Updated: September 9, 2026
Adisoft operates the mobile application Charon Express (the
"Application"). This page explains what data the Application and its servers collect, why, how long it is
kept, and what you can do about it.
1. Data We Collect and Store
You are not asked for a name, an email address or a phone number to play. An account is created for you the
first time you open the game. The following is stored on our servers:
1.1 Account identifiers
- Device identifier: an identifier your device provides, used to recognise your account
when you play as a guest. Without it a reinstall would lose your progress.
- Display name and avatar: a name is generated for you (for example "Guest123456") and
you may change it. Both are shown to other players — see section 3.
- Linked account identifier: if you sign in with Google or Apple, we store the account
identifier that provider issues for our app, and when you linked it. We do not receive or
store your Google or Apple password, and we do not store your email address.
- Device information: where the game reports it, the device model, platform and
operating system version. This is used for support and to understand which devices to test on.
1.2 Game progress
- Your high score, souls and coin, the vehicles and skins you own and have selected, your power-up stock
and levels, permanent upgrades, and which souls you have collected.
- Your settings, including the language you play in.
- The scores you set on the weekly leaderboard.
1.3 Purchases
- For each in-app purchase: the store it came from, the transaction identifier that store issued, the
product, when it was credited, and whether it is currently active, refunded or revoked. We do
not receive or store your payment card, billing address, or any other payment
details — those stay with Google or Apple.
- A record of every change to your souls, coin and entitlements, so that a support question about a
missing balance can be answered.
1.4 Technical logs and crash reports
- For each request the game makes: the time, which endpoint was called, whether it succeeded, how long it
took, your IP address, and your device's user-agent string. Logs identify your account
by a one-way hash, never by your account identifier.
- If the game crashes, a crash report is sent to Google Firebase Crashlytics containing the error, the
device model and operating system version, and what the app was doing beforehand. See section 4.
2. How We Use This Data
- To run the game: to keep your progress, apply your purchases and rank you on the
leaderboard.
- To keep it fair: to detect and refuse results that could not have been produced by
playing, and to rate-limit abusive traffic.
- To support you: to answer questions about a missing balance or a purchase.
- To keep it working: to diagnose errors, crashes and outages.
We do not sell your data, and we do not use the data above to build advertising profiles. Advertising is
handled by the third parties in section 5, under their own policies.
3. What Other Players Can See
The weekly leaderboard shows the display name and avatar of the top 100 players to everyone
who opens it, including players who are not signed in. Nothing else is published: no identifier, no device
information, and no purchase history. If you would rather not appear, change your display name to something
that does not identify you.
4. Third-Party Services
The game uses services provided by other companies. These collect and process data under their own privacy
policies, and that data does not pass through our servers unless stated otherwise above.
- Google Play Games Services and Sign in with Apple — used to sign
you in and to link your account.
- Firebase Authentication (Google) — issues the sign-in tokens the game uses.
- Firebase App Check (Google) — checks that requests come from a genuine,
unmodified copy of the app. It sends a device integrity signal, not your identity.
- Firebase Analytics (Google) — used to understand how players move through the
game. Collects an app instance identifier, device model, operating system and approximate country.
- Firebase Crashlytics (Google) — used to find and fix crashes. Collects the error
itself, the device model, the operating system version and what the app was doing beforehand.
- Firebase Remote Config (Google) — used to change game settings without shipping
an update. Collects an app instance identifier and device information.
- Unity LevelPlay / ironSource (Unity) — used to deliver and mediate
advertisements. See section 5.
- Google Play Billing and the App Store — handle the purchase
itself, including all payment details.
Their policies:
Google,
Unity,
Apple.
5. Advertising
Advertisements are delivered through Unity LevelPlay / ironSource and the ad networks it
mediates. They may collect your Advertising ID (GAID on Android, IDFA on iOS) and device
information to select and measure ads, including personalised ones. This happens inside the game, and that
data does not pass through our servers.
You can reset or limit your Advertising ID at any time in your device settings — on Android under
Settings › Privacy › Ads, and on iOS under Settings › Privacy & Security ›
Tracking. Players who buy the ad-free product are not shown advertisements.
6. Children’s Privacy
The Application does not address anyone under the age of 13, and we do not knowingly collect personal data
from children under 13. If you are a parent or guardian and believe your child has provided us with
personal data, contact us and we will delete the account.
7. Your Rights
Depending on where you live — including under Thailand's Personal Data Protection Act (PDPA) and the
EU/UK General Data Protection Regulation (GDPR) — you may have the right to access, correct, delete
or restrict the use of your personal data, and to object to its processing.
- Access and correction: your display name, avatar and language can be changed in the
game at any time.
- Deletion: see section 9.
- Advertising: reset or limit your Advertising ID in your device settings.
- For anything else, contact us at the address in section 11.
8. Data Retention
- Your account is kept for as long as it exists. Deleting it starts the process in
section 9.
- Weekly leaderboard scores expire with the week they were set in.
- Sign-in sessions are short-lived and expire on their own.
- Purchase records are kept after deletion, with no link to you, so that an old store
receipt cannot be redeemed a second time.
9. Deleting Your Account
You can delete your account and the data attached to it at any time. Deleting it from inside the game takes
effect immediately; an emailed request is completed within 14 business days. In both cases the account is
kept for 30 days in case you change your mind, after which it is erased permanently and
cannot be recovered.
How to delete your account:
Open Settings in the game and choose to delete your account, or email
support@adisoft.io and we will do it for you. See
Account Deletion Request for exactly what is removed, what is kept, and
what to put in the email.
10. Security
Traffic between the game and our servers is encrypted in transit. Sign-in tokens are short-lived, and
server-side records identify your account by a one-way hash wherever the full identifier is not needed. No
system is perfectly secure, and we cannot guarantee absolute security.
11. Changes to This Privacy Policy
We may update this policy. Significant changes will be reflected in the date at the top of this page, and
your continued use of the Application after that constitutes acceptance of the revised policy.
12. Contact Us
If you have any questions about this Privacy Policy, or wish to exercise any of the rights in section 7,
contact us at:
Email: support@adisoft.io
Website: https://adisoft.co