Local by default
Entries, local images, saved wheels, settings, and history stay in this browser unless you deliberately share or collaborate.
ChoiceSpin keeps wheel work in your browser by default. Wheel data reaches hosted services only when you choose a feature such as Share or Spin With Friends.
Last updated .
Entries, local images, saved wheels, settings, and history stay in this browser unless you deliberately share or collaborate.
Loading the website sends ordinary network request data to the hosting and delivery service.
The contact page opens your mail app. ChoiceSpin receives data only if you send the message.
Share and Spin With Friends send wheel data only after you choose them. Public publishing, ads, and client-side analytics remain off.
The short version is above. The sections below give the full current behavior, limits, retention facts, and controls.
This policy covers the public ChoiceSpin website, the wheel running in your browser, locally saved wheels, private Share links, Spin With Friends rooms, result exports, and contact by email.
Hosted Share and live-room controls appear only when their separately protected services are active. Public Gallery publishing, accounts, advertising, and client-side analytics remain unavailable.
The current wheel uses browser storage so it can remember your work without an account.
This data is not automatically uploaded to a ChoiceSpin account because the current site does not provide accounts or cloud sync.
Using any website creates ordinary network requests. ChoiceSpin is no exception.
Opening or saving a local .wheel file uses the browser’s file tools. The file is not uploaded to ChoiceSpin by that action.
Private Share and Spin With Friends are optional hosted features. Their controls remain hidden if the matching security service is unavailable. Opening the Gallery requests only intentionally published public summaries; private wheels are never added automatically, and public publishing controls remain off.
Client-side Google Analytics, Vercel Analytics, and Vercel Speed Insights are disabled. Advertising runtime is also disabled. A no-op tracking endpoint returns no content and stores nothing.
Accounts, cloud sync, public Gallery publishing, advertising, and client-side measurement require another review and policy update before activation.
This table groups the information by what a person actually experiences.
| Information | Why it exists | Where it is handled | How long | Your control |
|---|---|---|---|---|
| Entries and wheel settings | Run and restore the wheel | Local browser storage | No programmed expiry | Edit, reset, export, or clear site data |
| Saved wheels and local images | Keep projects in My Wheels | Local browser storage | Until deleted or browser data is cleared | Delete the wheel, export a backup, or clear site data |
| Winner labels and timestamps | Show recent result history | Local browser storage, capped at 250 records | Until cleared or replaced | Use Clear results or clear site data |
| Theme and preferences | Remember the interface you chose | Local browser storage | No programmed expiry | Change settings or clear site data |
| Private Share project and access mode | Create an unlisted wheel link | ChoiceSpin server and Google Firebase | Logically inaccessible after 24 hours; physical TTL deletion can follow later | Disable the current link from the creating tab, wait for expiry, or contact ChoiceSpin |
| Live-room state, spins, optional chat, and presence | Synchronize invited participants | ChoiceSpin server and Google Firebase | Logically inaccessible after at most 6 hours; cleanup can follow later | Leave or delete the room, wait for expiry, or contact ChoiceSpin |
| Anonymous session identity, App Check, and quota metadata | Authenticate requests and limit abuse | Browser session, ChoiceSpin server, Vercel, and Google Firebase | Session identity ends with the tab; quota and retry records can remain for their bounded security windows | Close the tab, clear site data, or contact ChoiceSpin |
| Request and security data | Deliver and protect the website | Hosting and delivery infrastructure | Provider retention not yet published here | Contact ChoiceSpin for a specific request |
| Email address and message | Answer a question you chose to send | Your email provider, ChoiceSpin’s email provider, and ChoiceSpin | A verified support-email schedule is not yet published | Ask for deletion when applicable |
Local browser data is used to provide the wheel features you request: restoring entries, keeping saved wheels, showing result history, and remembering settings.
Ordinary request data is handled to deliver, secure, troubleshoot, and maintain the website. Private Share and live-room data are handled to provide the hosted action you asked for and to prevent abuse. Email data is handled to respond to the message you chose to send.
Local storage has no timer that automatically deletes it. It remains until ChoiceSpin replaces it, you use an in-app delete or clear action, or the browser clears site data. Session storage normally ends with the tab session.
A Share link stops returning its wheel after 24 hours. A live room stops working after at most 6 hours. Google Firestore TTL deletion is not immediate and normally removes an expired document within about 24 hours after expiry. ChoiceSpin continues to enforce the shorter logical expiry while physical cleanup is pending. Share quota and retry records can remain for up to about 72 hours where a daily limit window and its cleanup buffer overlap.
Vercel provides website and server-function delivery. Google Firebase provides authentication, App Check, Firestore, and Realtime Database services used by the optional hosted features. The current Firestore databases use Google’s eur3 Europe multi-region. Provider logs, email records, and international-transfer details remain subject to the providers’ terms and the operator details still to be published below.
If those details matter before you use ChoiceSpin, contact us and ask for the current provider-specific answer.
You control the local wheel data directly. You can edit entries, clear results, delete saved wheels, export a wheel file, reset preferences, or clear ChoiceSpin site data in your browser.
Depending on the law that applies to you, you may also have rights to ask for access, correction, deletion, restriction, portability, or an objection to certain processing. You may withdraw consent where consent is the basis.
Send a request through the contact page. We may need enough information to understand and verify the request, but do not send passwords, identity documents, or unrelated sensitive data unless they are genuinely required.
You may also complain to the data-protection authority in the country or region where you live if that right applies.
ChoiceSpin is a general-audience wheel, not a student account platform. The current site does not ask students to create accounts.
A teacher can type student names into a local wheel and keep them on that device by using only local features. Choosing Share or Spin With Friends uploads the supported wheel content for the stated limited period. Adults should use placeholders where practical, follow school or organization policy, and never put confidential or sensitive student details in a hosted link or room.
A child who is not legally able to make privacy choices should use the service only with a responsible adult’s guidance.
Keeping wheel data local reduces the amount sent to ChoiceSpin, but it does not make the device itself private. Anyone with access to the browser profile may be able to see saved wheels or history.
ChoiceSpin may update this page when the product, providers, or legal requirements change. A meaningful change should update the date at the top and explain the new behavior plainly.
Enabling accounts, public Gallery publishing, ads, analytics, or materially different Share or live-room behavior requires a fresh privacy review, not a silent code change.
ChoiceSpin is responsible for this public privacy notice. Send privacy questions or rights requests to choicespin@gmail.com or use the contact page.
Details still to be published: the formal legal operator name, postal address, home jurisdiction, provider retention settings, and transfer safeguards need owner and legal review before this notice can be treated as complete for a specific jurisdiction.