MostPlayed for iPhone and iPad
MostPlayed is built around a simple rule: the things you make in the app — your photographs, your tags, your streak, your coins — stay on your device. This page explains that rule, and the few narrow exceptions where the app does talk to a server.
Effective: 10 September 2026 · Last updated: 10 September 2026 · Applies to: MostPlayed for iOS and iPadOS
MostPlayed has no sign-up form, no password, and no user account on any server. There is no feed of other people's uploads, because nothing you capture is ever uploaded. The app does not ask for your name, email address, phone number, contacts, or location, and does not track you across other apps or websites.
| Data | What happens to it | Why |
|---|---|---|
| Photographs you capture | On device | Saved in the app's own storage, never uploaded |
| Game tags, timestamps, streaks, coins, cosmetics | On device | To build your chart and run scoring locally |
| Your handle and profile | On device | Generated locally; kept in the app store and the iOS Keychain |
| Reports and blocks | On device | Personal filtering controls; nothing is submitted anywhere |
| Notification token + random install ID | Sent to our server | So the daily window alert can reach your device |
| App configuration request | Sent to our server | To download the game catalogue and settings at launch |
| Name, email address, phone number | Never collected | Never requested by the app |
| Location | Never collected | The app has no location permission and requests none |
| Contacts | Never collected | Never accessed |
| Advertising identifiers (IDFA) | Never collected | There is no advertising SDK in the app |
| Cross-app or cross-site tracking | Never | Not performed under any circumstances |
Everything you create in MostPlayed is written to a private database inside the app's own container on your device. It is not readable by other apps, it is not synced to us, and we hold no copy of it.
The surrounding roster in the chart, feed, friends list and league is generated on your device from the day's seed. Those posts are not other people's uploads and nothing you do in the app is visible to anyone else.
MostPlayed makes a small number of network requests. They are listed here in full. None of them carry your photographs, your tags, your profile, or any other content you create.
When the app starts and a network connection is available, it requests its configuration from mostplayedhome.online. The response contains the game catalogue, shop items, achievements, and settings such as the bounds of the daily window. This is a plain download — the request carries no identifier of you or your device beyond what any HTTPS request necessarily includes: your IP address, a Safari-shaped user-agent string describing the device type and iOS version, and your preferred language codes. Server access logs of this kind are kept only as long as needed to operate and secure the service.
If the request fails, the app falls back to its cached catalogue and keeps working offline.
If push notifications are enabled for your build and you grant notification permission, the app registers with Apple Push Notification service through Firebase Cloud Messaging and sends two values to mostplayedhome.online:
The install ID is not derived from your device's hardware, is not the advertising identifier, and is not shared with anyone else. It exists only to address a notification to this installation. We use it to send the daily window alert and service messages about the app — not for advertising or profiling. If you decline notification permission, no token is created and nothing is registered.
The app may load a web page — such as this policy — inside an in-app web view at launch. That is an ordinary web request to the page's host, which will see your IP address and user-agent string. The web view is used to display our own pages; it is not used to load third-party advertising or tracking content.
Before those requests, the app checks whether a Wi-Fi, cellular or wired connection is available. This check runs entirely on the device using Apple's own frameworks. It reads only whether a radio is present and reachable — never a phone number, carrier account, network name, or any other subscriber detail — and the result is not transmitted anywhere.
MostPlayed offers one non-consumable unlock. Purchases are processed entirely by Apple through StoreKit. Apple tells the app whether you are entitled to the unlock; we never see or receive your payment card, billing address, or Apple Account details. Refunds are handled by Apple at reportaproblem.apple.com.
Each permission is requested at the moment it is first needed, and the app remains usable if you decline.
| Permission | When it is asked | What it is used for | If you decline |
|---|---|---|---|
| Camera | The first time you open the capture screen | To photograph the game you are playing | You can still post from your photo library, marked off-window |
| Photo library | When you choose a gallery upload | To pick an existing photo of your screen | Camera capture still works |
| Add to photo library | When you save a recap card | To write the recap image to your library | The recap stays viewable in the app |
| Notifications | During onboarding | To alert you when the daily capture window opens | The app works, but you will not know when the window opens |
Photographs are read and written only for the actions above. The app does not scan, index, or upload your photo library, and it reads no image you do not explicitly select. You can change any of these at any time in iOS Settings › MostPlayed.
MostPlayed contains no advertising network, no analytics SDK, and no social login. The only outside services involved are:
We do not sell, rent, or share your personal information with anyone, and we do not disclose it except where we are legally required to do so.
MostPlayed does not track you. It contains no advertising identifier, no cross-app or cross-site identifier, no behavioural profiling, and no automated decision-making that produces legal or similarly significant effects. Because it performs no tracking, the app does not present the App Tracking Transparency prompt.
Your captures and progress are kept for as long as the app is installed. Deleting MostPlayed from your device permanently erases all of it — including photographs, tags, streak, coins and profile. There is no server copy for us to restore, so this cannot be undone. A capture also disappears when you delete it in the app.
Your data moves to a new device only if you restore from an iCloud or Finder backup you made yourself; that backup is under your control and Apple's, not ours.
The only thing we hold is the push token and random install ID described above, kept while the installation remains registered so notifications can be delivered, plus routine server access logs. Turning off notifications for MostPlayed in iOS Settings, or deleting the app, stops delivery; the stored token then becomes invalid and is discarded. You can also ask us to delete it at any time by writing to the address below.
Depending on where you live — including under the GDPR in the EU and UK, and under the CCPA and similar laws in the United States — you may have the right to access, correct, delete, or port your personal data, to object to or restrict its processing, and to withdraw consent. You also have the right not to be discriminated against for exercising these rights.
Because MostPlayed keeps your content on your device, you can exercise most of these rights directly and immediately: your data is on your device, and deleting the app deletes it. For the push token and install ID held on our server, write to us and we will delete them.
Where we process the small amount of data described above, we rely on your consent (for push notifications, which you can withdraw at any time in iOS Settings) and on our legitimate interest in delivering the app's content and keeping the service secure. We do not sell or share personal information as those terms are defined under US state privacy laws.
Our server and its providers may be located outside your country, so the limited technical data described in this policy may be processed in another jurisdiction, with appropriate safeguards where the law requires them.
If you are in the EEA or the UK and believe we have handled your data improperly, you may complain to your local data protection authority. We would rather hear from you first.
MostPlayed is rated 12+ and is not directed to children under 13. We do not knowingly collect personal information from children under 13 — or under the higher age of consent that applies in some countries. If you believe a child has provided us with personal information, contact us and we will delete it. Note that because the app stores content only on the device, a parent or guardian can remove everything by deleting the app.
All network requests the app makes use HTTPS. Your captures and progress live in the app's private container, protected by iOS app sandboxing and by device encryption when your device has a passcode set. Your install identifier is held in the iOS Keychain and excluded from unencrypted backups. No system is perfectly secure, but keeping your content on your device removes the largest risk: there is no central database of user photographs to breach.
If we change how MostPlayed handles data, we will update this page and change the "Last updated" date at the top. Material changes — for example, if a future version introduced real sharing between players — will be announced in the app before they take effect, and where the law requires it we will ask for your consent.
Questions about this policy, or a request to delete your push registration? A real person reads every message. We aim to reply within two working days.
For a deletion request, include the app version from You › Settings › About so we can identify the right registration. Please do not send us anything sensitive by email.