Privacy Policy
Switch Under Pressure
This policy explains how this application handles information and how to contact us about privacy.
Information we process
Switch Under Pressure stores game progress, paused rounds, selected trains, scores, daily challenge history and preferences locally on your device. An automatic random installation identifier and secret are stored in iOS Keychain. When daily results are synchronized, the server receives the installation identifier and secret for authorization, challenge date, correct-route count, error count and duration. PostgreSQL stores the identifier, a bcrypt hash of the secret, creation timestamps and the best daily result with update timestamps; it does not store the plain secret. Requests to the API or public website expose network and request information to the hosting infrastructure. Application logs contain request IDs, route patterns, status and response timing, without credentials, bodies or installation IDs. In-memory rate limiting uses hashed network-address keys. No names, email addresses, precise location, contacts or payment details are requested.
How we use information
Local data supports gameplay, progression, collection unlocks, records and restoring paused shifts. The backend publishes a deterministic daily configuration, stores and returns results only for the authorized installation, and deletes that installation on request. Request information supports service operation, readiness, security and abuse prevention. Optional local notifications remind you of the daily challenge; no remote notification token or email delivery is used.
Service providers and sharing
The backend and PostgreSQL are hosted on Railway, which processes network requests, infrastructure logs and stored service data as the hosting provider. The app uses Apple operating-system services for local Keychain storage and optional local notifications. There are no advertising, analytics, social sign-in or payment SDKs and no public leaderboard. Results are not exposed to other installations. We do not sell your information. Hosting infrastructure may retain operational records according to its configuration and provider practices; this policy does not promise an unverified provider log duration.
Data retention
Local progress and preferences remain until reset, removal of app data or device changes. Keychain credentials can remain after app removal, so uninstalling alone does not delete server records. Server installation records and daily best results remain until authenticated deletion; no automatic expiry is implemented. Pending results are kept locally for retry; the server accepts submissions for the current UTC day and the preceding seven days. In-memory rate-limit entries expire with their bounded request window. Railway log and any infrastructure backup retention depend on provider configuration; no fixed backup or log retention period is asserted. When a submission falls outside that seven-day window, the app removes it from the upload queue while retaining its result in local history.
Deleting your information
Settings offers Reset progress for local gameplay data and Delete server data for the installation. Server deletion requires the device’s secret and removes the live installation record and related daily results; on success the app removes its credential and local daily history and queued results. A future challenge submission creates a new installation. Local reset alone does not delete server records. Deletion of live records does not guarantee immediate removal from infrastructure backups or logs, which remain subject to provider retention. Losing the installation secret prevents the app from accessing or deleting its old private server record; restoration or transfer through an account is not available.
Permissions and your choices
Notifications are optional and requested only when you enable the daily reminder. You can disable the reminder in the app or withdraw notification permission in iOS Settings; core gameplay still works. The app does not request camera, microphone, contacts, photos or location access. Internet access is needed for daily challenges, synchronization and server deletion; ordinary levels and training work without it.
Your privacy rights
You can inspect local records, reset local progress and request deletion of the installation’s server data using Settings. For privacy questions or requests, contact Benedict4Thornwick@icloud.com. Depending on applicable law, you may have rights to access, correct, erase, restrict or object to processing and complain to a relevant authority. We may need enough information to verify a request without exposing another installation’s private results. The contact address is for privacy correspondence only; the app has no email sending or support form.
Security
The client uses HTTPS, keeps a unique random secret in device-only Keychain storage, and never embeds a shared server credential. The server verifies the installation identifier and bcrypt-hashed secret before private operations. Database queries are parameterized, records are scoped by installation, and request sizes, timeouts and rate limits are bounded. Local saves use atomic writes and iOS file protection. These measures reduce risk but no storage or transmission system can guarantee absolute security. Keep your device and its passcode secure.
Children’s privacy
The game is intended for players aged 14 and older and is not specifically directed to children under 13. It does not ask for age, names or contact details. If you believe a child has provided information that requires attention, contact Benedict4Thornwick@icloud.com. The app does not verify age or create child accounts.
Changes to this policy
This policy may be updated when the application’s processing or hosting practices change. The effective date identifies the current version. Updated policy text will be published at this public Privacy Policy link, which is accessible from Settings. Material changes will be reflected in the policy before new processing is introduced.