Privacy Policy
For Slix.io: Cut & Conquer (Android package
com.slixio.game) and this website.
Effective 18 August 2026 · Last updated 18 August 2026 · Version 1.0
The game has no accounts, asks for no personal details, and never asks your phone where it is. What it does have is advertising, in-app purchases, analytics and crash reporting — and those send a small amount of technical data to Google. This page says exactly what, to whom, why, and how to stop it.
1. Who is responsible
The game and this site are made and operated by Andrii Posia, an independent app developer based in Ukraine (“we”, “us”). For the purposes of the EU and UK General Data Protection Regulation, we are the data controller for the processing described here.
Contact for anything on this page, including privacy requests: support@slixio.eazi.click.
2. The short version
| Question | Answer |
|---|---|
| Do I need an account? | No. There is no sign-up, no login and no profile. |
| Do you know my name or email? | Only if you write to us yourself. |
| Do you track my location? | No. The app never requests location permission. The temperature you see on a region card is the temperature of that city, from a list built into the app. |
| Where is my progress? | On your phone only. It is not uploaded anywhere. |
| Do you sell my data? | No. We do not sell personal data and never have. |
| What leaves the device, then? | Advertising, analytics and crash data handled by Google, plus purchase records handled by Google Play. Details in section 4. |
| Can I turn it off? | Ads: yes — see section 9. Everything else: uninstalling ends it, and you can ask us to delete what is left. |
3. What stays on your device
Most of what the game remembers never leaves your phone. It is kept in the app’s own private storage, which no other app can read:
- Campaign progress — which regions you have finished, stars, best percentages, current world.
- Currencies and unlocks — coins, gems, characters, trails, territory colours, backgrounds, boosts you own.
- Settings — sound, music, haptics, chosen cosmetics.
- Daily quests, ranks and codex entries you have discovered.
- Purchase bookkeeping — a note of which purchases have already been credited, so you are not credited twice or, worse, not at all.
- Your advertising consent choice — stored in the standard industry format (IAB TCF) so the ads SDK can read it back.
- Cached city photos and cached temperatures — so the same region does not re-download its background every time.
- Generated clips — written to the app’s temporary cache and deleted as it is cleared.
Deleting the app, or clearing its data from Android settings, deletes all of it. We keep no copy, because we never had one.
4. What is collected, and by whom
Four services in the app talk to the outside world. None of them receives your name, your email address or your location.
4.1 Advertising — Google AdMob
The game shows a short ad between some levels, and offers optional rewarded ads in exchange for a second try or an early return from pause. Ads are served by Google AdMob, which receives:
- your device’s advertising ID (a resettable identifier that Android provides for this purpose);
- your IP address, from which an approximate region such as a city or country can be derived — this is not GPS and is not precise location;
- device and app information: model, operating system version, language, app version, screen size;
- ad events: which ad was requested, shown, clicked or closed;
- your consent choice, as a standard TCF string.
Why: ads are what pays for a free game, and the same data is what stops the same ad repeating and detects click fraud.
Legal basis (EEA, UK, Switzerland): your consent, asked for by Google’s official consent form (the User Messaging Platform) before the ads SDK starts. If you decline, ads are shown without personalisation. Elsewhere, personalised advertising rests on our legitimate interest in funding the game, and you can opt out at any time using your device’s ad settings.
Google’s own terms: Google Privacy Policy, how Google uses data from apps that use its services, and the list of ad technology providers Google may involve.
4.2 Purchases — Google Play Billing
Every purchase in the game runs through Google Play. Google is the seller and the payment processor.
- We never see your card number, bank details, billing address or full name. That transaction happens between you and Google.
- What the app receives back from Google is the product identifier (for
example
slix_no_ads), a purchase token and the purchase state. That is stored on your device so your purchase is honoured. - Google keeps its own record of the order under its privacy policy. If you email us about a purchase, we may ask you for the order number that Google sent you so we can help.
Legal basis: performance of a contract — delivering what you paid for.
4.3 Analytics and crash reports — Google Firebase
To know whether the game actually works for people, and to fix it when it breaks, the app uses Firebase Analytics, Firebase Crashlytics and Firebase Remote Config (which lets us change balance and event settings without shipping an update). These receive:
- a pseudonymous app instance identifier generated on install — not your name, and it changes if you reinstall;
- device and app information: model, operating system version, app version, language, country and coarse region derived from IP;
- gameplay events: for example a level started, finished or failed, a shop screen opened, a rewarded ad watched, a purchase completed — with the numbers that make them meaningful, such as the region number or the percentage captured;
- crash and error reports: the stack trace, the state of the app in the seconds before the crash, device model, available memory and app version;
- your advertising ID, where Analytics is permitted to read it, to attribute installs and measure whether advertising works.
We look at this in aggregate — how many players reach region 20, which level kills everybody, which crash is the common one. We do not try to identify individuals from it, and we do not combine it with anything else to do so.
Legal basis: our legitimate interest (GDPR Article 6(1)(f)) in a game that works and does not crash, balanced against a design that deliberately avoids identifying anyone. You can object at any time — see section 10.
Google’s own terms: Firebase privacy and security.
4.4 Live temperature — Open-Meteo
Each region card shows the current temperature in that city. When you open the card, the app asks the free weather service Open-Meteo for one number.
The coordinates in that request are the city’s, not yours. They come from a table of sixty cities built into the app. The game never requests location permission, never reads GPS, and could not tell you where you are if it wanted to. Playing Marrakesh sends Marrakesh, wherever in the world you happen to be sitting.
As with any request to any website, Open-Meteo sees the IP address the request came from. Nothing else about you is included, no identifier travels with it, and the request only happens when you open a region card — never in the background. See Open-Meteo’s terms and privacy notice.
4.5 City backgrounds — our own image host
Region backgrounds are photographs, downloaded from assets.slixio.eazi.click
the first time you open a region and cached on your device afterwards. Like every web server,
it writes standard access logs: IP address, time, the file requested and the user agent. We
use those only to keep the host running and to spot abuse, we do not connect them to anything
else in this policy, and they are deleted on our hosting provider’s ordinary log
rotation.
5. What is never collected
Not “collected but protected” — never asked for in the first place:
- your name, email address, phone number or postal address (unless you write to us, and then only what you put in the mail);
- precise or GPS location, and no location permission of any kind;
- contacts, calendar, photos, files, camera or microphone;
- call or message logs;
- health, biometric, financial, racial, religious, political or any other special-category data;
- a list of the other apps on your device;
- anything you type, other than a challenge code you choose to paste in.
We also do not sell personal data, do not trade it, and do not run any advertising or tracking beyond what is described in section 4.
6. Permissions the app asks for
| Permission | What it is for |
|---|---|
INTERNET | Ads, purchases, city photos, the temperature lookup, analytics. |
ACCESS_NETWORK_STATE | To notice there is no connection and skip the request instead of hanging. |
VIBRATE | The short buzz when you die or bank a capture. Switchable off in settings. |
com.google.android.gms.permission.AD_ID | Required by Android 13+ for the advertising ID used by ads and install measurement. |
com.android.vending.BILLING | To offer in-app purchases through Google Play. |
There is no runtime permission prompt in the game, because none of the above needs one.
7. Clips you share
The game can turn your run into a short vertical video. Two things are worth knowing:
- It is made on your phone and stays there until you share it. We never receive a copy, and there is no upload step in the app.
- Sharing always goes through the Android share sheet, so you choose where it goes. The app never posts anything on your behalf. The video contains your score, the region, the game’s name and a challenge code — nothing about you.
Once you send it to another app, that app’s own privacy policy applies to it, not ours.
8. Children
Slix.io is a general-audience game. It is not directed at children under 13 (or the higher minimum age that applies where you live), it is not part of Google Play’s Designed for Families programme, and we do not knowingly collect personal data from children under that age.
If you believe a child has provided us with personal data — realistically, by writing to our support address — email support@slixio.eazi.click and we will delete it.
9. Your choices
Ads
- Personalised ads. On Android: Settings → Privacy → Ads, where you can reset the advertising ID or delete it entirely. Deleting it stops personalised advertising across every app, including this one.
- Your consent choice (EEA, UK, Switzerland). This version of the game has no in-app button to reopen the consent form; clearing the app’s data from Android settings resets your choice and the form appears again on the next launch. An in-app “privacy options” entry is planned for a future update.
- No ads at all between levels: the one-time Remove ads purchase. Rewarded ads remain available, because those are a trade you opt into.
Analytics and crash reports
Write to us to object — see section 10 — or uninstall the app, which stops all further collection.
Everything on the device
Clearing app data or uninstalling deletes local progress, cosmetics, cached photos and your consent record. Note that purchases are not deleted by this: Google Play keeps its own record so that Remove ads can be restored.
Step-by-step instructions are on the data deletion page.
10. Your rights (GDPR / UK / Switzerland)
If you are in the European Economic Area, the United Kingdom or Switzerland, you have the right to:
- access the personal data we hold about you;
- rectify it if it is wrong;
- erase it (“right to be forgotten”);
- restrict or object to processing based on legitimate interests, including analytics and crash reporting;
- withdraw consent for personalised advertising at any time, without affecting anything done before you withdrew it;
- data portability, where processing is based on consent or contract;
- lodge a complaint with your national data protection authority.
To use any of them, email support@slixio.eazi.click. We answer within 30 days. Please tell us which country you are in and, if your request is about a purchase, the Google Play order number.
An honest limit. Because the game has no account and stores no identifier we control, we usually cannot find data belonging to a specific person — there is nothing to look you up by. That is a privacy feature, but it means an access request may truthfully come back as “we hold nothing that identifies you”. Where the data sits with Google under a pseudonymous identifier, we will tell you exactly how to reach it through Google’s own controls, which is the only route that actually works.
11. California and other US states
Under the California Consumer Privacy Act as amended (CCPA/CPRA), and comparable laws in other US states, the categories of personal information involved are:
| Category | Example here | Disclosed to |
|---|---|---|
| Identifiers | Advertising ID, app instance ID, IP address | Google (ads, analytics) |
| Internet or network activity | Ads shown and clicked, in-game events, crash reports | |
| Commercial information | Which in-app product was bought | Google Play |
| Geolocation (coarse) | Country or region inferred from IP — never GPS | |
| Inferences | Ad interest categories, created by Google, not by us |
We do not sell personal information for money. When personalised ads are switched on, the use of the advertising ID counts as “sharing” for cross-context behavioural advertising under the CPRA. To opt out, delete or reset the advertising ID in Settings → Privacy → Ads, or email us and we will confirm it in writing.
You also have the right to know, to delete, to correct, and not to be discriminated against for using any of these rights — the game behaves identically either way. We do not knowingly sell or share the personal information of anyone under 16. We collect no sensitive personal information.
12. How long anything is kept
| What | Kept for |
|---|---|
| Progress, cosmetics, settings on your device | Until you clear the app’s data or uninstall it |
| Cached city photos and temperatures | Temperatures 30 minutes; photos until the cache is cleared |
| Generated clips | In the app cache until Android clears it, or you delete it |
| Analytics events (Firebase) | No longer than 14 months, then deleted by Google |
| Crash reports (Crashlytics) | Up to 90 days |
| Advertising data (AdMob) | Per Google’s own retention policy |
| Purchase records (Google Play) | Per Google’s policy, plus the tax-record periods Google is obliged to keep |
| Support emails | Up to 24 months, so a returning problem has its history |
| Website and image-host access logs | Our hosting provider’s ordinary log rotation |
13. International transfers
Google, which provides the advertising, purchasing, analytics and crash-reporting services above, is based in the United States and processes data on servers around the world. Where data leaves the EEA, the UK or Switzerland, Google relies on the European Commission’s Standard Contractual Clauses and its own supplementary measures — see Google’s data transfer terms. Open-Meteo is operated from Germany. Our own site and image host are with a European hosting provider.
14. Security
- Every network request the app makes uses HTTPS. Plain-text connections are blocked outright by the app’s configuration.
- On-device data sits in app-private storage, unreadable by other apps on a normal device.
- We handle no payment data, so there is none of it to lose.
- There are no accounts and no passwords, so there is no credential database to breach.
No system is perfect. If something does go wrong that affects you, we will say so here and notify the relevant authority where the law requires it.
15. This website
This site is plain HTML. It sets no cookies, runs no analytics, embeds no social widgets and loads nothing from a third party — which is why there is no cookie banner to dismiss. Our hosting provider keeps standard access logs, as described in section 4.5.
16. Changes to this policy
If the app changes what it collects, this page changes first. The version number and both dates at the top always say which text you are reading. For anything material — a new service receiving data, a new purpose — we will also flag it in the app on the next update. Previous versions are available on request.
17. How to reach a human
One address, read by the person who wrote the game:
Andrii Posia, independent developer, Ukraine. Postal address available on request for formal correspondence. If you are unhappy with our answer you can complain to your national data protection authority; in Ukraine that is the Ukrainian Parliament Commissioner for Human Rights.