Privacy Policy

MostPlayed for iPhone and iPad

MostPlayed is built around a simple rule: the things you make in the app — your photographs, your tags, your streak, your coins — stay on your device. This page explains that rule, and the few narrow exceptions where the app does talk to a server.

Effective: 10 September 2026  ·  Last updated: 10 September 2026  ·  Applies to: MostPlayed for iOS and iPadOS

Privacy at a glance

MostPlayed has no sign-up form, no password, and no user account on any server. There is no feed of other people's uploads, because nothing you capture is ever uploaded. The app does not ask for your name, email address, phone number, contacts, or location, and does not track you across other apps or websites.

No accountA random handle and ID are generated on your device at first launch.
Photos stay localCaptures are written to the app's private storage and never uploaded.
No ads, no analyticsThere is no advertising or analytics SDK in the app.
DataWhat happens to itWhy
Photographs you captureOn deviceSaved in the app's own storage, never uploaded
Game tags, timestamps, streaks, coins, cosmeticsOn deviceTo build your chart and run scoring locally
Your handle and profileOn deviceGenerated locally; kept in the app store and the iOS Keychain
Reports and blocksOn devicePersonal filtering controls; nothing is submitted anywhere
Notification token + random install IDSent to our serverSo the daily window alert can reach your device
App configuration requestSent to our serverTo download the game catalogue and settings at launch
Name, email address, phone numberNever collectedNever requested by the app
LocationNever collectedThe app has no location permission and requests none
ContactsNever collectedNever accessed
Advertising identifiers (IDFA)Never collectedThere is no advertising SDK in the app
Cross-app or cross-site trackingNeverNot performed under any circumstances

What stays on your device

Everything you create in MostPlayed is written to a private database inside the app's own container on your device. It is not readable by other apps, it is not synced to us, and we hold no copy of it.

  • Your captures — the photographs you take during the daily window, and any image you pick from your photo library for an off-window post.
  • Your play record — the game you tagged, the platform, the timestamp, whether the post landed inside the window, and the chart points it earned.
  • Your profile — a handle and a random identifier generated on first launch. No name, no email address, no password. The identifier is kept in the iOS Keychain, and the local database is authoritative, so you cannot silently become a different user if the Keychain entry is lost.
  • Your progress — streak, coin balance and ledger, achievements, owned cosmetics, daily recaps, follows and reactions.
  • Your safety choices — reported posts and blocked players. These filter what you see on your own device; because no capture is shared between players, nothing is submitted to us or to anyone else for moderation.
  • Cached catalogue data — the list of games, shop items and achievements downloaded at launch, so the app stays usable offline.

A note about the other players you see

The surrounding roster in the chart, feed, friends list and league is generated on your device from the day's seed. Those posts are not other people's uploads and nothing you do in the app is visible to anyone else.

What leaves your device

MostPlayed makes a small number of network requests. They are listed here in full. None of them carry your photographs, your tags, your profile, or any other content you create.

1. Launch configuration

When the app starts and a network connection is available, it requests its configuration from mostplayedhome.online. The response contains the game catalogue, shop items, achievements, and settings such as the bounds of the daily window. This is a plain download — the request carries no identifier of you or your device beyond what any HTTPS request necessarily includes: your IP address, a Safari-shaped user-agent string describing the device type and iOS version, and your preferred language codes. Server access logs of this kind are kept only as long as needed to operate and secure the service.

If the request fails, the app falls back to its cached catalogue and keeps working offline.

2. Push notification registration

If push notifications are enabled for your build and you grant notification permission, the app registers with Apple Push Notification service through Firebase Cloud Messaging and sends two values to mostplayedhome.online:

  • a push token issued by Firebase, which lets a notification be delivered to this installation, and
  • a random install ID — a UUID generated on first launch and stored in the iOS Keychain — so the same device is not registered twice.

The install ID is not derived from your device's hardware, is not the advertising identifier, and is not shared with anyone else. It exists only to address a notification to this installation. We use it to send the daily window alert and service messages about the app — not for advertising or profiling. If you decline notification permission, no token is created and nothing is registered.

3. Notice and policy pages shown in the app

The app may load a web page — such as this policy — inside an in-app web view at launch. That is an ordinary web request to the page's host, which will see your IP address and user-agent string. The web view is used to display our own pages; it is not used to load third-party advertising or tracking content.

4. Connection checks

Before those requests, the app checks whether a Wi-Fi, cellular or wired connection is available. This check runs entirely on the device using Apple's own frameworks. It reads only whether a radio is present and reachable — never a phone number, carrier account, network name, or any other subscriber detail — and the result is not transmitted anywhere.

5. In-app purchase

MostPlayed offers one non-consumable unlock. Purchases are processed entirely by Apple through StoreKit. Apple tells the app whether you are entitled to the unlock; we never see or receive your payment card, billing address, or Apple Account details. Refunds are handled by Apple at reportaproblem.apple.com.

Permissions the app asks for

Each permission is requested at the moment it is first needed, and the app remains usable if you decline.

PermissionWhen it is askedWhat it is used forIf you decline
CameraThe first time you open the capture screenTo photograph the game you are playingYou can still post from your photo library, marked off-window
Photo libraryWhen you choose a gallery uploadTo pick an existing photo of your screenCamera capture still works
Add to photo libraryWhen you save a recap cardTo write the recap image to your libraryThe recap stays viewable in the app
NotificationsDuring onboardingTo alert you when the daily capture window opensThe app works, but you will not know when the window opens

Photographs are read and written only for the actions above. The app does not scan, index, or upload your photo library, and it reads no image you do not explicitly select. You can change any of these at any time in iOS Settings › MostPlayed.

Third parties

MostPlayed contains no advertising network, no analytics SDK, and no social login. The only outside services involved are:

  • Apple — for App Store distribution, in-app purchase, and delivery of push notifications through Apple Push Notification service. Apple's handling of that data is governed by the Apple Privacy Policy.
  • Google (Firebase Cloud Messaging) — used solely to obtain a push token and route the daily notification to your device. Firebase Cloud Messaging processes the push token and technical delivery information; no analytics, crash reporting, or advertising products from Firebase are included in the app. See the Firebase privacy documentation.

We do not sell, rent, or share your personal information with anyone, and we do not disclose it except where we are legally required to do so.

Tracking, advertising and profiling

MostPlayed does not track you. It contains no advertising identifier, no cross-app or cross-site identifier, no behavioural profiling, and no automated decision-making that produces legal or similarly significant effects. Because it performs no tracking, the app does not present the App Tracking Transparency prompt.

Retention and deletion

Data on your device

Your captures and progress are kept for as long as the app is installed. Deleting MostPlayed from your device permanently erases all of it — including photographs, tags, streak, coins and profile. There is no server copy for us to restore, so this cannot be undone. A capture also disappears when you delete it in the app.

Your data moves to a new device only if you restore from an iCloud or Finder backup you made yourself; that backup is under your control and Apple's, not ours.

Data on our server

The only thing we hold is the push token and random install ID described above, kept while the installation remains registered so notifications can be delivered, plus routine server access logs. Turning off notifications for MostPlayed in iOS Settings, or deleting the app, stops delivery; the stored token then becomes invalid and is discarded. You can also ask us to delete it at any time by writing to the address below.

Your rights

Depending on where you live — including under the GDPR in the EU and UK, and under the CCPA and similar laws in the United States — you may have the right to access, correct, delete, or port your personal data, to object to or restrict its processing, and to withdraw consent. You also have the right not to be discriminated against for exercising these rights.

Because MostPlayed keeps your content on your device, you can exercise most of these rights directly and immediately: your data is on your device, and deleting the app deletes it. For the push token and install ID held on our server, write to us and we will delete them.

Where we process the small amount of data described above, we rely on your consent (for push notifications, which you can withdraw at any time in iOS Settings) and on our legitimate interest in delivering the app's content and keeping the service secure. We do not sell or share personal information as those terms are defined under US state privacy laws.

Our server and its providers may be located outside your country, so the limited technical data described in this policy may be processed in another jurisdiction, with appropriate safeguards where the law requires them.

If you are in the EEA or the UK and believe we have handled your data improperly, you may complain to your local data protection authority. We would rather hear from you first.

Children

MostPlayed is rated 12+ and is not directed to children under 13. We do not knowingly collect personal information from children under 13 — or under the higher age of consent that applies in some countries. If you believe a child has provided us with personal information, contact us and we will delete it. Note that because the app stores content only on the device, a parent or guardian can remove everything by deleting the app.

Security

All network requests the app makes use HTTPS. Your captures and progress live in the app's private container, protected by iOS app sandboxing and by device encryption when your device has a passcode set. Your install identifier is held in the iOS Keychain and excluded from unencrypted backups. No system is perfectly secure, but keeping your content on your device removes the largest risk: there is no central database of user photographs to breach.

Changes to this policy

If we change how MostPlayed handles data, we will update this page and change the "Last updated" date at the top. Material changes — for example, if a future version introduced real sharing between players — will be announced in the app before they take effect, and where the law requires it we will ask for your consent.

Contact us

Questions about this policy, or a request to delete your push registration? A real person reads every message. We aim to reply within two working days.

For a deletion request, include the app version from You › Settings › About so we can identify the right registration. Please do not send us anything sensitive by email.