1. About this policy
This Privacy Policy describes how Vizlume (“Vizlume”, “we”, or “us”) collects, uses, and shares information when you use the Vizlume mobile app, the Vizlume organizer portal, or any related service (together, the “Service”). Vizlume operates in Canada and intends to comply with the federal Personal Information Protection and Electronic Documents Act (PIPEDA) and, where applicable, Quebec Law 25.
This document is a draft. A final version will be reviewed by counsel and posted before the platform’s public launch.
2. What information we collect
Account information
When you create an account, we collect your email address, chosen display name, and a one-time confirmation that you are at least 18 years of age. We do not collect or verify exact date of birth.
Profile information
We store your username and your role (player, organizer, or administrator) so that the right features and permissions are available to you.
Hunt activity
When you start a hunt, complete stops, or finish a hunt, we record the timestamps and outcomes needed to drive the leaderboard and to track completion. These records are linked to your account so the hunt experience is continuous.
Location data
When you scan a QR code at a stop, the Vizlume app sends your current GPS coordinates so that our server can verify you are physically present at the stop. We do not collect continuous location pings outside of an active check-in. Raw GPS coordinates submitted for check-in verification are used to resolve the check-in and are not retained beyond resolution.
Reports submitted through the in-app reporting feature
If you submit a report about a hunt, we record the report contents (category, optional notes, urgency flag), the hunt the report is about, and your account identifier so we can respond if needed. See Section 7 below for how we handle reporter identity.
Organizer identity documents
Organizers are required to upload a government-issued photo ID at signup. ID documents receive special handling: they are stored in a restricted-access bucket, accessible only to Vizlume administrators, and are retained for [TBD with counsel] days after the organizer leaves the platform, after which they are deleted.
3. How we use information
We use the information described above to:
- operate the Service (run hunts, score leaderboards);
- verify that check-ins are real (location data);
- verify organizer eligibility before approving an organizer account;
- respond to safety and conduct reports;
- enforce our Terms of Service and the Organizer Terms Addendum;
- communicate with you about your account, hunts you have joined or organized, and material changes to the Service;
- improve the Service in aggregate (e.g., understanding which neighbourhoods produce the most hunts); and
- comply with applicable law.
4. Who we share information with
Organizers
Organizers see check-ins on their own hunts. The information an organizer sees about a player is limited to the player’s chosen username and the player’s check-in timestamps for that organizer’s hunt. Organizers do not see the contents of any report submitted about their hunt (see Section 7).
Service providers
We rely on the following service providers, who process information on our behalf and under contract:
- Supabase — database hosting, authentication, file storage, and edge function execution.
- Mapbox — mapping and geocoding.
- Stripe — payment processing for organizer fees and (when enabled) payouts.
Law enforcement
We may disclose information when legally required, for example in response to a valid subpoena, court order, or other lawful request. We will challenge requests we believe to be overbroad.
Reports
Reports submitted through the in-app reporting feature are visible to Vizlume administrators only. The organizer being reported does not see who filed the report.
5. Data retention
- General account data is retained while your account is active and for [TBD with counsel] days after the account is closed, after which identifying fields are scrubbed. Anonymous historical records (e.g., leaderboard rows linked to a tombstoned identity) may persist.
- Reports are retained for audit purposes for a period of [TBD with counsel].
- Organizer ID documents are retained for [TBD with counsel] days after the organizer departs Vizlume, then deleted.
- Raw GPS pings submitted to validate a check-in are used to resolve that check-in and are not retained beyond resolution. The check-in record itself stores the latitude and longitude that confirmed the check-in.
6. Your rights under PIPEDA
Subject to applicable law, you have the right to access the personal information we hold about you, request correction of inaccuracies, withdraw consent for ongoing collection or use, and request deletion of your account and associated personal information.
To exercise these rights, contact us at [placeholder privacy contact address]. We will respond within the time required by applicable law.
7. Reporter anonymity
Reports submitted through the in-app feature are visible to Vizlume administrators only. The organizer being reported does not see the reporter’s identity. We treat reporter identity as confidential and disclose it only when legally compelled or with the reporter’s explicit consent.
8. Children
Vizlume is intended for users aged 18 and older. We do not knowingly collect information from anyone under 18. If you believe an under-18 user has created an account, please contact us at [placeholder contact address] and we will remove the account.
9. Quebec residents (Law 25)
If you are a resident of Quebec, additional rights and protections under Quebec Law 25 may apply, including enhanced consent requirements. Vizlume does not collect biometric data. Quebec residents can contact our privacy officer at [placeholder Quebec privacy officer contact] with questions or concerns.
10. Security
We use industry-standard administrative, technical, and physical safeguards to protect personal information, including row-level security on all database tables, server-side validation of fairness- and safety-critical operations, and encrypted transport. No method of transmission or storage is perfectly secure; we will notify affected users in the event of a security incident as required by applicable law.
11. Changes to this policy
We may update this policy as the Service evolves. For material changes we will notify users through the Service and update the effective date above. Your continued use of the Service after a change indicates acceptance of the updated policy.
12. Contact
Questions about this policy or about Vizlume’s information practices can be sent to [placeholder contact address].