• Features
  • Demo
  • Pricing
  • FAQs
  • Changelog
Current as of 29/09/2025

Privacy Policy

Your privacy is important to us. We respect your privacy regarding any information we may collect from you across our website.

1. Introduction

This Privacy Policy describes how Initiative Tracker ("we", "us", or "our") collects, uses, and protects your information when you use our web application. We are committed to protecting your privacy and ensuring the security of your personal data.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Email address, password (encrypted), and profile details
  • Game Data: Campaign information, party members, creatures, and combat logs
  • Payment Information: Billing details processed securely through Stripe
  • Communication: Messages sent through our support channels

2.2 Automatically Collected Information

  • Usage Data: How you interact with the application, features used, and session duration
  • Device Information: Browser type, operating system, and device identifiers
  • Analytics Data: Page views, user journey, and feature adoption metrics
  • Technical Data: IP address, cookies, and local storage data

3. How We Use Your Information

We use your information for the following purposes:

  • Service Provision: To provide and maintain the Initiative Tracker service
  • Account Management: To create and manage your account, process payments, and provide customer support
  • Data Synchronization: To sync your game data across devices (for subscribed users)
  • Analytics: To understand usage patterns and improve our service
  • Communication: To send important updates, security notifications, and support responses
  • Legal Compliance: To comply with applicable laws and regulations

4. Your Rights (GDPR)

Under the General Data Protection Regulation (GDPR), you have the following rights:

4.1 Right of Access

You have the right to request a copy of the personal data we hold about you.

4.2 Right to Rectification

You have the right to request correction of inaccurate or incomplete personal data.

4.3 Right to Erasure

You have the right to request deletion of your personal data, subject to certain exceptions.

4.4 Right to Data Portability

You have the right to receive your personal data in a structured, commonly used format.

4.5 Right to Object

You have the right to object to processing of your personal data for certain purposes.

4.6 Right to Withdraw Consent

Where we rely on consent, you have the right to withdraw consent at any time.

4.7 Exercising Your Rights

To exercise any of these rights, please contact us at [email protected]. We will respond within 30 days.

5. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

5.1 Right to Know

You have the right to request information about the personal data we collect, use, and disclose about you.

5.2 Right to Delete

You have the right to request deletion of your personal data, subject to certain exceptions.

5.3 Right to Opt-Out

You have the right to opt-out of the sale of your personal data (though we do not sell personal data).

5.4 Right to Non-Discrimination

You have the right not to receive discriminatory treatment for exercising your privacy rights.

5.5 Exercising Your Rights

To exercise your California privacy rights, please contact us at [email protected]. We will respond within 45 days.

6. Data Retention

We retain your data for the following periods:

  • Account Data: Until you delete your account or request deletion
  • Game Data: Until account deletion (for subscribers) or browser data clearing (for free users)
  • Payment Data: As required by financial regulations (typically 7 years)
  • Analytics Data: Up to 26 months (Google Analytics)
  • Logs: Up to 12 months for security and debugging purposes

7. Data Breach Notification

In the event of a data breach that poses a risk to your rights and freedoms, we will:

  • Notify the relevant supervisory authority within 72 hours of becoming aware of the breach
  • Notify affected individuals without undue delay when the breach is likely to result in a high risk to their rights and freedoms
  • Document all data breaches, including the facts, effects, and remedial action taken
  • Take appropriate measures to address the breach and prevent future occurrences

8. Data Storage and Security

7.1 Data Storage

  • Local Storage: Free tier users’ data is stored locally in their browser
  • Cloud Storage: Subscribed users’ data is stored securely in our cloud infrastructure
  • Backup: Regular backups are performed to prevent data loss

7.2 Security Measures

  • All data is encrypted in transit using HTTPS/TLS
  • Passwords are hashed using industry-standard algorithms
  • Database access is restricted and monitored
  • Regular security audits and updates are performed

9. Data Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:

  • Service Providers: With trusted third-party services (e.g., Stripe for payments, Google Analytics for usage tracking)
  • Legal Requirements: When required by law or to protect our rights and safety
  • Business Transfers: In the event of a merger, acquisition, or sale of assets
  • Consent: With your explicit consent for specific purposes

10. Cookies and Tracking

We use cookies and similar technologies to enhance your experience, analyze usage, and provide personalized content. For detailed information about our use of cookies, please see our Cookie Policy.

11. Third-Party Services

Our service integrates with the following third-party services:

  • Google Analytics: For usage analytics and performance monitoring
  • Stripe: For payment processing and subscription management
  • Supabase: For database and authentication services
  • Discord/Google: For social authentication (optional)

Each of these services has their own privacy policy, and we encourage you to review them.

12. Children’s Privacy

Our service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.

13. International Data Transfers

Your data may be transferred to and processed in countries other than your own. We ensure that such transfers comply with applicable data protection laws and implement appropriate safeguards.

14. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.

15. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us:

Email: [email protected]
Website: https://initiative-tracker.app
Address: United Kingdom

Initiative Tracker

Modern initiative tracking for D&D 5e. Design amazing digital experiences that create more happy at your table.

  • Features
  • Demo
  • Pricing
  • FAQs
  • Changelog
Privacy PolicyTerms of UseCookie Policy

© 2025 Initiative Tracker. All rights reserved.