Privacy
What Velvet Run stores about you, and why.
Who is responsible
The operator named in the imprint is responsible for processing your data.
Browsing without an account
You can read every page without signing in. The site sets no tracking or advertising cookies and uses no analytics. Our host, Cloudflare, processes technical request data (such as IP address and browser) to deliver the site and protect it from abuse.
When you sign in
You sign in with Discord or Google. From that provider we receive your display name, e-mail address and avatar. We store them with a public handle (for example /players/your-name) and a session cookie that keeps you signed in. Your e-mail address is never shown publicly; it is used to identify your account and, for moderators, to grant permissions.
What you publish
Runs (deaths, levels, cleared encounters, notes, playtime, proof links), builds and challenges you create are public and appear on your profile, on leaderboards and in community statistics. Proof links point to third-party sites such as YouTube; embedded videos load from youtube-nocookie.com only when you open a run page that has one.
Contact form
When you use the contact form, we store your e-mail address, your message and, if you give them, your name and a subject, only to answer you. Messages are visible to moderators only and are deleted once the request is settled, unless the law requires us to keep them (GDPR Art. 6(1)(b) and (f)).
Storage and deletion
Data is stored in a Cloudflare D1 database. To have your account and everything you published deleted, or to get a copy of your data, contact us using the address in the imprint. You also have the rights to rectification, restriction, objection and to lodge a complaint with a data protection authority (GDPR Art. 15–21, 77).
Legal basis
Account and published content: performance of the service you signed up for (GDPR Art. 6(1)(b)). Security logs and abuse protection: legitimate interest (Art. 6(1)(f)).