Privacy Policy
Effective date:5 September 2026
Last updated:5 September 2026
1. Who we are
Mimiclock (“Mimiclock”, “we”, “us”) develops and publishes mobile games and this website.
For the purposes of the EU General Data Protection Regulation (GDPR) and the UK GDPR, the data controller is Isaac RF, as an individual trading as Mimiclock, inSpain. You can reach us at support@mimiclock.com.
This policy explains what personal data we and our service providers collect when you use our games and this website (together, the “Services”), why we collect it, and what rights you have over it.
2. Scope
This policy covers our mobile games published under the Mimiclock name and the website at mimiclock.com. It does not cover third-party services you reach from our Services, which have their own policies.
Our Services are general audience products. They are not directed to children, and we do not knowingly collect personal data from children. See section 11.
3. What we collect
We do not ask you to create an account, and we do not collect your name, email address or postal address unless you contact us yourself.
a) Information you give us. If you email support, we receive your email address and whatever you put in the message. We use it only to answer you.
b) Advertising identifiers and ad interaction data. Our games display advertising through Google AdMob. AdMob and its advertising partners receive your device’s advertising identifier (Android Advertising ID / Apple IDFA), IP address, coarse location derived from that IP, device and operating-system information, and data about which ads were shown, viewed or clicked.
c) Usage and device analytics. We use Google Analytics for Firebase to understand how our games are played. It collects app events (such as level starts and completions, session length, and in-app screens viewed), a Firebase-generated installation identifier, device model, operating system version, language and country, and basic diagnostic information such as app crashes and performance data collected automatically by the Firebase SDK.
d) Purchases. In-app purchases are processed by Google Play Billing. Google handles the payment. We receive a confirmation that a purchase occurred and what was bought — we never receive or store your card number, bank details or billing address.
e) Server logs. Our website records standard request logs (IP address, timestamp, requested URL, user agent) for operation, security and abuse prevention.
We do not collect precise GPS location, contacts, camera images, microphone audio, or the contents of your device storage.
4. Why we use it, and our legal basis
Under the GDPR we must have a lawful basis for each purpose:
| Purpose | Data | Legal basis (GDPR Art. 6) |
|---|---|---|
| Delivering the game and its features | device and app data | Contract — Art. 6(1)(b) |
| Processing in-app purchases | purchase confirmations | Contract — Art. 6(1)(b) |
| Showing personalised advertising | advertising ID, ad interaction data | Consent — Art. 6(1)(a) |
| Showing non-personalised advertising | limited ad-serving and frequency-capping data | Legitimate interests — Art. 6(1)(f), funding a free game |
| Analytics and product improvement | usage events, device info | Consent where required, otherwise legitimate interests — Art. 6(1)(f) |
| Security, fraud and abuse prevention | server logs, diagnostics | Legitimate interests — Art. 6(1)(f) |
| Answering support requests | your email and message | Legitimate interests — Art. 6(1)(f) |
Where we rely on consent, you may withdraw it at any time (see section 6). Withdrawal does not affect processing carried out before you withdrew.
5. Who we share it with
We do not sell your personal data for money. We share data with the following service providers, who process it on our behalf or as independent controllers for their own advertising purposes:
| Provider | Role | Their policy |
|---|---|---|
| Google AdMob and its advertising partners | serving and measuring ads | policies.google.com/technologies/ads |
| Google Analytics for Firebase | usage analytics | firebase.google.com/support/privacy |
| Google Play Billing | payment processing | policies.google.com/privacy |
A current list of the advertising partners Google may share data with is published by Google at support.google.com/admob/answer/9012903.
We may also disclose data where we are legally required to, or to establish, exercise or defend legal claims.
6. Advertising, consent and your choices
Our games are free and funded by advertising.
In the European Economic Area, the United Kingdom and Switzerland, we present a consent form before showing personalised ads, using Google’s User Messaging Platform. You can choose non-personalised ads, and you can change your choice at any time from the privacy or settings option inside the game.
On any device, you can limit ad tracking independently of us:
- Android: Settings → Privacy → Ads → Delete advertising ID or Reset advertising ID
- iOS: Settings → Privacy & Security → Tracking, and Settings → Privacy & Security → Apple Advertising
Choosing non-personalised ads does not remove ads; it makes them less relevant to you.
7. How long we keep it
We keep personal data only as long as needed for the purpose it was collected for:
- Support emails: up to 24 months after the conversation ends.
- Analytics data: retained according to our Google Analytics for Firebase configuration. Google’s default retention period for event data is 14 months.
- Advertising data: retained by Google under its own retention policies, not ours.
- Server logs: up to 12 months.
You can ask us to delete data we hold about you at any time (see section 9).
8. International transfers
Our service providers are based in the United States and process data in multiple countries. When personal data is transferred outside the EEA or the UK, the transfer is covered by the European Commission’s Standard Contractual Clauses and, where applicable, the EU–US Data Privacy Framework, to which Google is certified.
9. Your rights
If you are in the EEA or the UK you have the right to:
- access the personal data we hold about you
- rectify inaccurate data
- erase your data (“right to be forgotten”)
- restrict or object to processing, including objecting to processing based on legitimate interests
- data portability — receive your data in a machine-readable format
- withdraw consent at any time, where processing is based on consent
To exercise any of these, email support@mimiclock.com. We will respond within one month. We may ask for information to confirm the request relates to your device or data.
Because we do not operate accounts, we often cannot link data to a named individual. If you ask us to delete data, please include your device’s advertising ID so we can identify what to remove.
You also have the right to complain to a supervisory authority. In Spain this is the Agencia Española de Protección de Datos (AEPD), www.aepd.es. If you are elsewhere in the EEA or the UK, you may complain to your local authority.
10. United States privacy rights
If you live in California, Colorado, Connecticut, Virginia or another US state with a comprehensive privacy law, you have the right to know what personal information is collected, to request its deletion, to correct it, and to opt out of its sale or sharing.
We do not sell personal information for money. However, showing personalised advertising involves sharing identifiers with advertising partners for cross-context behavioural advertising, which the California Consumer Privacy Act (as amended by the CPRA) and similar laws treat as “sharing”.
To opt out, either choose non-personalised ads in the privacy option inside the game, or reset or delete your device advertising identifier as described in section 6. You may also email support@mimiclock.com. We will not discriminate against you for exercising these rights.
The categories of personal information we collect are: identifiers (advertising ID, IP address, installation ID), commercial information (purchase records),internet activity (app usage and ad interactions), and inferences drawn by advertising partners for ad targeting.
11. Children
Our Services are general-audience products. They are not directed to children, and we do not knowingly collect personal data from children under 13 (or under 16 where local law sets a higher age).
If you believe a child has provided us with personal data, contact support@mimiclock.com and we will delete it.
12. Security
We take reasonable technical and organisational measures to protect personal data against unauthorised access, disclosure, alteration and destruction. Our website is served over HTTPS. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
13. Changes to this policy
We may update this policy. When we do, we will revise the “Last updated” date at the top and, where the change is significant, give notice within our Services. Continued use after a change means the updated policy applies.
14. Contact
Questions, requests or complaints about this policy or your data:
support@mimiclock.com
Isaac RF, trading as Mimiclock — Spain