Legal

Privacy Policy

How we collect, use, and protect your information across KojaCraft services.

1. Introduction

KojaCraft ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services, including our website, launcher, game servers, Discord, and any related services.

By using KojaCraft services, you agree to the collection and use of information in accordance with this policy. If you do not agree with this policy, please do not use our services.

2. Information We Collect

We collect several types of information to provide and improve our services:

Account Information: When you create an account, we collect your username, email address, and any optional information you provide. We also collect authentication tokens for login purposes.

Payment Information: When making purchases, we collect payment details through our payment processor (Stripe). We do not store complete credit card numbers; payment processing is handled entirely by Stripe in compliance with PCI DSS standards.

Game Data: Our game servers collect minimal technical data necessary for operation, including your Minecraft UUID, username, connection timestamps, and in-game actions required for gameplay mechanics (e.g., economy transactions, block placements).

Telemetry Data: Our open-source proxy, Kojacoord, may collect anonymous, aggregate usage metrics for performance monitoring and improvement. This is fully opt-out and described in detail in the Telemetry section below.

Support Data: When you submit support tickets or appeals, we collect the information you provide, including your username, description of the issue, and any optional contact information.

Automatically Collected Information: We collect technical data such as IP addresses, browser type, device information, and usage patterns for security and service improvement purposes.

3. How We Use Your Information

We use the information we collect for the following purposes:

Service Provision: To provide, maintain, and improve our services, including game server operation, account management, and launcher functionality.

Security and Fraud Prevention: To detect, prevent, and address technical issues, fraudulent activity, and security threats.

Communication: To send you important notices about your account, service updates, and promotional communications (which you can opt out of).

Support: To respond to your inquiries, support requests, and appeals.

Analytics and Improvement: To analyze usage patterns and improve our services, including through anonymous telemetry data.

Legal Compliance: To comply with legal obligations, enforce our Terms of Service, and protect our rights and property.

4. Telemetry and Kojacoord

Kojacoord, our custom proxy software, includes optional telemetry functionality that sends anonymous, aggregate usage metrics to our servers. This data helps us monitor performance, identify issues, and improve the software.

What telemetry collects: Anonymous metrics such as connection counts, protocol versions, error rates, and performance statistics. No personally identifiable information is included.

Opt-out: Telemetry is fully opt-out. You can disable it in the launcher settings under the Telemetry section. Disabling telemetry will not affect your ability to play on our servers.

Open Source: Kojacoord is open source under the MIT License. You can review the telemetry implementation on our GitHub repository to verify what data is collected and how it is used.

Data Retention: Telemetry data is retained for up to 90 days for performance analysis and debugging purposes, after which it is automatically deleted.

5. Data Sharing and Disclosure

We do not sell your personal information. We may share your information only in the following circumstances:

Service Providers: We may share data with third-party service providers who perform services on our behalf (e.g., Stripe for payment processing, Discord for bot integration). These providers have access only to the data necessary for their functions and are contractually bound to protect it.

Legal Requirements: We may disclose information if required by law, court order, or government request, or to protect our rights, property, or safety.

Business Transfers: In the event of a merger, acquisition, or sale of assets, user data may be transferred as part of the transaction. You will be notified of any such transfer.

With Your Consent: We may share information with your explicit consent.

6. Data Security

We implement reasonable security measures to protect your information from unauthorized access, alteration, disclosure, or destruction. These measures include encryption, access controls, and regular security audits.

However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security. You use our services at your own risk.

In the event of a data breach, we will notify affected users in accordance with applicable laws and take reasonable steps to mitigate harm.

7. Data Retention

We retain your information for as long as necessary to provide our services and fulfill the purposes outlined in this policy, unless a longer retention period is required or permitted by law.

Account Data: Retained while your account is active. Deleted accounts may be retained for a reasonable period for legal and security purposes.

Game Data: Retained for gameplay purposes and statistics. Historical data may be archived for up to 1 year.

Support Data: Retained for 1 year after resolution of the support ticket.

Telemetry Data: Retained for up to 90 days.

Payment Data: Payment transaction records are retained for 7 years to comply with tax and legal requirements. Credit card numbers are never stored on our servers.

8. Your Rights and Choices

Depending on your location, you may have the following rights regarding your personal information:

Access: You can request access to the personal information we hold about you.

Correction: You can request correction of inaccurate or incomplete information.

Deletion: You can request deletion of your personal information, subject to certain exceptions (e.g., legal requirements, legitimate business interests).

Portability: You can request transfer of your data to another service provider.

Opt-out: You can opt out of marketing communications and telemetry data collection.

To exercise these rights, please contact us through our Discord server or the contact information on our website.

9. Children's Privacy

Our services are not intended for children under 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected such information, we will take steps to delete it.

If you are a parent or guardian and believe your child has provided us with personal information, please contact us, and we will take appropriate action.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws.

When we transfer your information internationally, we ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy and applicable law.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify users of significant changes through our website, launcher, Discord, or email (if provided).

Your continued use of our services after any changes constitutes acceptance of the revised Privacy Policy. We recommend reviewing this policy periodically to stay informed of any updates.

12. Contact Information

If you have questions about this Privacy Policy, our data practices, or to exercise your rights, please contact us through our Discord server or via email at the contact information listed on our website.

For data protection inquiries, please mark your communication with "Privacy Policy Inquiry" in the subject line.