1. Who is responsible for your data
Cuberix personal data controller is FOP Tkachuk V. O. This policy applies to the website, account, launcher, internal messenger, game modes, support requests, and related Cuberix services.
For privacy, cookie, access, correction, or account-deletion questions, write to [email protected]. Do not send a password, complete card details, or identity documents unless we separately and lawfully ask for them to verify a request.
2. Data we may keep
When you register and use an account, we process the data needed to operate it: email, login or nickname, internal account ID, password only in protected hashed form, profile settings, avatar, interface language, authentication tokens, and access-recovery data.
When you use the website or game, technical data can be generated: IP address, browser and device type, operating system, access time, pages and actions, errors, sessions, cookies, security logs, and abuse-prevention signals. We collect only data needed for the relevant function.
- Game data: nickname, identifiers, mode and server, statistics, events, inventory or progress, quests, settings, reports, and moderation decisions.
- Communications: internal messenger messages, support requests, replies, attachments, and request history.
- Payment records: order number, amount, currency, status, and issued digital item or bonus. Cuberix does not store complete card details, CVV/CVC, or banking passwords.
- Public content: username, avatar, materials, or messages you choose to publish in features visible to other users.
3. Why and on which legal bases we process data
We use data to create and maintain an account, provide access to the online game and launcher, retain progress, display a profile, process a payment or bonus, answer a request, and enforce service rules.
For EEA users, the legal basis depends on the situation: performance of a contract with you, consent (for example, for non-essential cookies), legitimate interest in protecting the service from fraud and attacks, or compliance with a legal obligation. We do not use data for incompatible purposes or sell personal data.
4. Game, profile, and community data
To run online modes, Cuberix may process your account identifier, nickname, server, game events, progress, statistics, settings, in-game items, and moderation records. Some of this information can be visible to other players where the game mechanics or profile require it.
Messages, reports, and materials you send to support or publish in the service may be reviewed automatically and manually to answer you, moderate content, and keep the service secure. Do not publish another person’s personal data without their permission.
6. Payments and digital items
When you choose to pay, the payment is processed by the relevant external provider. Cuberix receives limited order and status information to issue a digital item, confirm the transaction, provide support, prevent fraud, or resolve a dispute.
We do not store complete card numbers, CVV/CVC, or banking passwords. Applicable payment-record retention is determined by accounting, refunds, security, and legal requirements.
8. Transfers outside the EEA
Depending on infrastructure and provider location, certain data may be processed outside the European Economic Area. In those cases, we use transfer mechanisms permitted by law and assess the protection safeguards needed.
You may request general information about the safeguards in use by writing to [email protected]. We will provide it to the extent that it does not disclose security-sensitive or confidential third-party information.
9. Retention periods
We retain data no longer than necessary for the account, game operation, support, security, contractual obligations, dispute handling, and legal compliance. When it is no longer needed, data is deleted, anonymized, or minimized unless retention remains necessary.
Retention varies by category: sessions last until they end, are revoked, or expire; security logs and violation records may be retained longer to prevent repeated abuse; order records are retained as needed for accounting and disputes.
10. How we protect data
We apply organizational and technical measures including access controls, protected password storage, HTTPS/TLS in transit, session tokens, critical-event logging, anti-spam and anti-attack protections, backups, and verification of account-data requests.
No internet service can guarantee absolute security. Protect your password and email access, do not share codes or tokens, and contact [email protected] if you suspect unauthorized access.
11. User rights, including rights in the EU
Users in the EU/EEA have the GDPR rights that apply to their personal data. Their application depends on the legal basis and circumstances of processing; certain data may be temporarily retained when needed for security, legal compliance, or the establishment, exercise, or defence of legal claims.
You may withdraw consent to non-essential processing at any time. This does not affect processing already carried out before withdrawal. If you believe processing breaches the GDPR, you may also complain to the competent supervisory authority in your EEA country.
- the right to be informed and access your data;
- the right to correct inaccurate or incomplete data;
- the right to request erasure, restriction, or object to processing in applicable cases;
- the right to data portability where processing is automated and based on consent or contract.
12. How to make a data request
Email [email protected] from the email linked to your account and briefly state whether you seek access, correction, deletion, restriction, portability, or objection. To help us verify the request, include your login, nickname, account ID, or order number when relevant.
Before disclosing or changing data, we verify that the request concerns the account owner. We do not disclose other users’ data, internal security mechanisms, or information affecting third-party rights. Detailed instructions are available on the Data Requests page.
13. Children and policy changes
Where your country requires a certain age or a parent’s or legal representative’s permission to consent to an online service, use Cuberix only with that permission. Parents or representatives may contact [email protected] about a child’s data.
We may update this policy when functions, providers, processing methods, or legal requirements change. The current version is always available on this page and its update date is shown above.