Skip to privacy information

Privacy, explained without the legal fog

ChoiceSpin keeps wheel work in your browser by default. Wheel data reaches hosted services only when you choose a feature such as Share or Spin With Friends.

Last updated .

Local by default

Entries, local images, saved wheels, settings, and history stay in this browser unless you deliberately share or collaborate.

Page requests reach hosting

Loading the website sends ordinary network request data to the hosting and delivery service.

Email is your choice

The contact page opens your mail app. ChoiceSpin receives data only if you send the message.

Hosted choices are explicit

Share and Spin With Friends send wheel data only after you choose them. Public publishing, ads, and client-side analytics remain off.

Where information goes

The short version is above. The sections below give the full current behavior, limits, retention facts, and controls.

01

What this policy covers

This policy covers the public ChoiceSpin website, the wheel running in your browser, locally saved wheels, private Share links, Spin With Friends rooms, result exports, and contact by email.

Hosted Share and live-room controls appear only when their separately protected services are active. Public Gallery publishing, accounts, advertising, and client-side analytics remain unavailable.

Plain-English promise: this notice separates what ChoiceSpin can confirm today from company and provider details that still need to be completed.
02

Information kept on your device

The current wheel uses browser storage so it can remember your work without an account.

  • Wheel entries, advanced entry settings, visible-entry limits, and editing state
  • Saved wheels in My Wheels, including names, appearance, options, and local images
  • Uploaded wheel, center, background, and option images stored as local browser data
  • Result history, including winner labels, timestamps, and sometimes slice colors
  • Theme, colors, sound, spin duration, after-spin behavior, and other preferences
  • Short-lived session recovery data used inside one browser-tab session

This data is not automatically uploaded to a ChoiceSpin account because the current site does not provide accounts or cloud sync.

03

Information that can reach ChoiceSpin services

Using any website creates ordinary network requests. ChoiceSpin is no exception.

  • Website delivery: the hosting and content-delivery service can receive IP address, browser or user-agent information, requested URL, timing, and security-related request data.
  • Private Share: when you create a link, ChoiceSpin sends the supported wheel project and your spin-or-copy choice to Google Firebase. The link is unlisted, not end-to-end encrypted, and works for anyone who has it for up to 24 hours.
  • Spin With Friends: when you create or join a room, ChoiceSpin sends the room entries, settings, synchronized spins, optional chat messages, and short-lived presence information to Google Firebase. A room lasts for up to 6 hours and accepts no more than 32 active participants.
  • Abuse protection: Share and live rooms use a session-only anonymous Firebase identity, Firebase App Check with reCAPTCHA Enterprise, request limits, and security logs. These are infrastructure identities, not public ChoiceSpin accounts.
  • Contact email: the Contact page opens your email app. If you send a message, ChoiceSpin and the email providers involved receive your email address, message, and any attachment you choose.
  • External share actions: if you click a social-share link, your browser connects to that chosen service under its own privacy terms.
  • Static files: loading fonts, sounds, images, CSS, and JavaScript from ChoiceSpin creates normal same-origin website requests.

Opening or saving a local .wheel file uses the browser’s file tools. The file is not uploaded to ChoiceSpin by that action.

04

Hosted choices and what remains off

Private Share and Spin With Friends are optional hosted features. Their controls remain hidden if the matching security service is unavailable. Opening the Gallery requests only intentionally published public summaries; private wheels are never added automatically, and public publishing controls remain off.

Client-side Google Analytics, Vercel Analytics, and Vercel Speed Insights are disabled. Advertising runtime is also disabled. A no-op tracking endpoint returns no content and stores nothing.

Accounts, cloud sync, public Gallery publishing, advertising, and client-side measurement require another review and policy update before activation.

05

Current information inventory

This table groups the information by what a person actually experiences.

InformationWhy it existsWhere it is handledHow longYour control
Entries and wheel settingsRun and restore the wheelLocal browser storageNo programmed expiryEdit, reset, export, or clear site data
Saved wheels and local imagesKeep projects in My WheelsLocal browser storageUntil deleted or browser data is clearedDelete the wheel, export a backup, or clear site data
Winner labels and timestampsShow recent result historyLocal browser storage, capped at 250 recordsUntil cleared or replacedUse Clear results or clear site data
Theme and preferencesRemember the interface you choseLocal browser storageNo programmed expiryChange settings or clear site data
Private Share project and access modeCreate an unlisted wheel linkChoiceSpin server and Google FirebaseLogically inaccessible after 24 hours; physical TTL deletion can follow laterDisable the current link from the creating tab, wait for expiry, or contact ChoiceSpin
Live-room state, spins, optional chat, and presenceSynchronize invited participantsChoiceSpin server and Google FirebaseLogically inaccessible after at most 6 hours; cleanup can follow laterLeave or delete the room, wait for expiry, or contact ChoiceSpin
Anonymous session identity, App Check, and quota metadataAuthenticate requests and limit abuseBrowser session, ChoiceSpin server, Vercel, and Google FirebaseSession identity ends with the tab; quota and retry records can remain for their bounded security windowsClose the tab, clear site data, or contact ChoiceSpin
Request and security dataDeliver and protect the websiteHosting and delivery infrastructureProvider retention not yet published hereContact ChoiceSpin for a specific request
Email address and messageAnswer a question you chose to sendYour email provider, ChoiceSpin’s email provider, and ChoiceSpinA verified support-email schedule is not yet publishedAsk for deletion when applicable
06

Why information is handled and the legal basis

Local browser data is used to provide the wheel features you request: restoring entries, keeping saved wheels, showing result history, and remembering settings.

Ordinary request data is handled to deliver, secure, troubleshoot, and maintain the website. Private Share and live-room data are handled to provide the hosted action you asked for and to prevent abuse. Email data is handled to respond to the message you chose to send.

Legal-basis limit: ChoiceSpin has not yet published its final controller identity and home jurisdiction, so this notice does not guess at a country-specific legal basis. Depending on the request and applicable law, service delivery, steps you request, legitimate security interests, or consent may apply. Ask which basis applies to a specific request.
07

Retention, recipients, and international transfers

Local storage has no timer that automatically deletes it. It remains until ChoiceSpin replaces it, you use an in-app delete or clear action, or the browser clears site data. Session storage normally ends with the tab session.

A Share link stops returning its wheel after 24 hours. A live room stops working after at most 6 hours. Google Firestore TTL deletion is not immediate and normally removes an expired document within about 24 hours after expiry. ChoiceSpin continues to enforce the shorter logical expiry while physical cleanup is pending. Share quota and retry records can remain for up to about 72 hours where a daily limit window and its cleanup buffer overlap.

Vercel provides website and server-function delivery. Google Firebase provides authentication, App Check, Firestore, and Realtime Database services used by the optional hosted features. The current Firestore databases use Google’s eur3 Europe multi-region. Provider logs, email records, and international-transfer details remain subject to the providers’ terms and the operator details still to be published below.

If those details matter before you use ChoiceSpin, contact us and ask for the current provider-specific answer.

08

Your choices and privacy rights

You control the local wheel data directly. You can edit entries, clear results, delete saved wheels, export a wheel file, reset preferences, or clear ChoiceSpin site data in your browser.

Depending on the law that applies to you, you may also have rights to ask for access, correction, deletion, restriction, portability, or an objection to certain processing. You may withdraw consent where consent is the basis.

Send a request through the contact page. We may need enough information to understand and verify the request, but do not send passwords, identity documents, or unrelated sensitive data unless they are genuinely required.

You may also complain to the data-protection authority in the country or region where you live if that right applies.

09

Teachers, students, and children

ChoiceSpin is a general-audience wheel, not a student account platform. The current site does not ask students to create accounts.

A teacher can type student names into a local wheel and keep them on that device by using only local features. Choosing Share or Spin With Friends uploads the supported wheel content for the stated limited period. Adults should use placeholders where practical, follow school or organization policy, and never put confidential or sensitive student details in a hosted link or room.

A child who is not legally able to make privacy choices should use the service only with a responsible adult’s guidance.

10

Security and practical limits

Keeping wheel data local reduces the amount sent to ChoiceSpin, but it does not make the device itself private. Anyone with access to the browser profile may be able to see saved wheels or history.

  • Lock shared devices and avoid saving sensitive wheels in a public browser profile.
  • Keep a careful backup before clearing browser data.
  • Do not send private data in a screenshot or support email unless it is needed.
  • Treat every Share or room URL as a bearer link: anyone who receives or forwards it can use it until it is disabled, deleted, or expires.
  • Private links are unlisted but not end-to-end encrypted. Do not include confidential, medical, financial, or sensitive student information.
  • Remember that downloaded wheel files and editable shared copies can be kept or forwarded by their recipients.
11

Changes to this policy

ChoiceSpin may update this page when the product, providers, or legal requirements change. A meaningful change should update the date at the top and explain the new behavior plainly.

Enabling accounts, public Gallery publishing, ads, analytics, or materially different Share or live-room behavior requires a fresh privacy review, not a silent code change.

12

Contact for privacy questions

ChoiceSpin is responsible for this public privacy notice. Send privacy questions or rights requests to choicespin@gmail.com or use the contact page.