Local by default
Entries, local images, saved wheels, settings, and history stay in this browser unless you deliberately share or collaborate.
ChoiceSpin keeps wheel work in your browser by default. Wheel data reaches hosted services only when you choose a feature such as Share or Spin With Friends.
Last updated .
Entries, local images, saved wheels, settings, and history stay in this browser unless you deliberately share or collaborate.
Loading the website sends ordinary network request data to the hosting and delivery service.
The contact form sends the email and description you enter, fixed delivery metadata, and ordinary request data needed to process it. Direct email remains available as a fallback.
Cookie-free Vercel Web Analytics counts visits only on eligible exact canonical, indexable public pages. Legal, private, noindex, query, fragment, raw-generated, and preview surfaces are excluded.
The short version is above. The sections below give the full current behavior, limits, retention facts, and controls.
This policy covers the public ChoiceSpin website, the wheel running in your browser, locally saved wheels, private Share links, Spin With Friends rooms, result exports, and contact through the form or email fallback.
Hosted Share and live-room controls appear only when their separately protected services are active. Public Gallery publishing, accounts, advertising, Google Analytics, and Vercel Speed Insights remain unavailable. Cookie-free Vercel Web Analytics is limited to eligible exact canonical, indexable public pages and does not run on this legal page.
The current wheel uses browser storage so it can remember your work without an account.
This data is not automatically uploaded to a ChoiceSpin account because the current site does not provide accounts or cloud sync.
Using any website creates ordinary network requests. ChoiceSpin is no exception.
Opening or saving a local .wheel file uses the browser’s file tools. The file is not uploaded to ChoiceSpin by that action.
Private Share and Spin With Friends are optional hosted features. Their controls remain hidden if the matching security service is unavailable. Opening the Gallery requests only intentionally published public summaries; private wheels are never added automatically, and public publishing controls remain off.
Google Analytics and Vercel Speed Insights are disabled. Vercel Web Analytics is enabled only for registry-approved, exact canonical, indexable public pages and uses no analytics cookies. It never runs on legal, private, noindex, raw-generated, query, fragment, or preview surfaces. Its guarded runtime rejects an ineligible location, any path-bearing referrer, and any existing analytics queue before loading. Advertising runtime is also disabled. A separate no-op tracking endpoint returns no content and stores nothing.
Accounts, cloud sync, public Gallery publishing, advertising, custom analytics events, and broader client-side measurement require another review and policy update before activation.
This table groups the information by what a person actually experiences.
| Information | Why it exists | Where it is handled | How long | Your control |
|---|---|---|---|---|
| Entries and wheel settings | Run and restore the wheel | Local browser storage | No programmed expiry | Edit, reset, export, or clear site data |
| Saved wheels and local images | Keep projects in My Wheels | Local browser storage | Until deleted or browser data is cleared | Delete the wheel, export a backup, or clear site data |
| Winner labels and timestamps | Show recent result history | Local browser storage, capped at 250 records | Until cleared or replaced | Use Clear results or clear site data |
| Theme and preferences | Remember the interface you chose | Local browser storage | No programmed expiry | Change settings or clear site data |
| Private Share project and access mode | Create an unlisted wheel link | ChoiceSpin server and Google Firebase | Logically inaccessible after 24 hours; physical TTL deletion can follow later | Disable the current link from the creating tab, wait for expiry, or contact ChoiceSpin |
| Live-room state, spins, optional chat, and presence | Synchronize invited participants | ChoiceSpin server and Google Firebase | Logically inaccessible after at most 6 hours; cleanup can follow later | Leave or delete the room, wait for expiry, or contact ChoiceSpin |
| Anonymous session identity, App Check, and bounded retry or quota metadata | Authenticate requests and limit abuse | Browser session, ChoiceSpin server, Vercel, and Google Firebase | Session identity ends with the tab; most retry and quota records remain only for their bounded security windows | Close the tab, clear site data, or contact ChoiceSpin |
| Public Gallery removal quota owner digest and timing state | Rate-limit repeated removal requests | Google Firebase | Persistent while this protection is retained; the fixed-size record is overwritten in place and has no automatic TTL | Contact ChoiceSpin about a specific privacy request |
| Anonymous canonical page view, origin-only referrer, approximate location, device type, operating system, and browser | Understand aggregate public-site visits and traffic sources | Vercel Web Analytics | The visitor hash resets daily; aggregate reporting follows Vercel's current service retention | Use browser tracking protection or a content blocker, or contact ChoiceSpin about a privacy request |
| Request and security data | Deliver and protect the website | Hosting and delivery infrastructure | Provider retention not yet published here | Contact ChoiceSpin for a specific request |
| Contact email address and description, fixed delivery metadata, and ordinary request and security data | Deliver and answer a question you chose to send, and protect the form from abuse | FormSubmit, ChoiceSpin's email provider, and ChoiceSpin; your own email provider also participates when you use the fallback | FormSubmit states that it retains form submissions for 30 days. A verified schedule for delivered support email is not yet published | Do not submit sensitive data; ask for deletion when applicable |
Local browser data is used to provide the wheel features you request: restoring entries, keeping saved wheels, showing result history, and remembering settings.
Ordinary request data is handled to deliver, secure, troubleshoot, and maintain the website. Anonymous Vercel Web Analytics data is handled to understand aggregate visits, page popularity, and traffic sources without creating a cross-site profile. Private Share and live-room data are handled to provide the hosted action you asked for and to prevent abuse. Contact-form or email data is handled to deliver and respond to the message you chose to send.
Local storage has no timer that automatically deletes it. It remains until ChoiceSpin replaces it, you use an in-app delete or clear action, or the browser clears site data. Session storage normally ends with the tab session.
A Share link stops returning its wheel after 24 hours. A live room stops working after at most 6 hours. Google Firestore TTL deletion is not immediate and normally removes an expired document within about 24 hours after expiry. ChoiceSpin continues to enforce the shorter logical expiry while physical cleanup is pending. Share quota and retry records can remain for up to about 72 hours where a daily limit window and its cleanup buffer overlap. Public Gallery removal protection uses one separate persistent, fixed-size record per hashed Firebase owner identity. It stores no raw Firebase UID, is overwritten in place, and has no automatic TTL while that protection is retained.
Vercel provides website and server-function delivery and the limited Web Analytics service described above. Its analytics visitor hash resets daily, while aggregate reporting follows Vercel's current service retention. Google Firebase provides authentication, App Check, Firestore, and Realtime Database services used by the optional hosted features. The current Firestore databases use Google’s eur3 Europe multi-region. FormSubmit processes contact-form submissions and states that it retains them for 30 days. Provider logs, delivered email records, and international-transfer details remain subject to the providers' terms and the operator details still to be published below.
If those details matter before you use ChoiceSpin, contact us and ask for the current provider-specific answer.
You control the local wheel data directly. You can edit entries, clear results, delete saved wheels, export a wheel file, reset preferences, or clear ChoiceSpin site data in your browser.
Depending on the law that applies to you, you may also have rights to ask for access, correction, deletion, restriction, portability, or an objection to certain processing. You may withdraw consent where consent is the basis.
Send a request through the contact page. We may need enough information to understand and verify the request, but do not send passwords, identity documents, or unrelated sensitive data unless they are genuinely required.
You may also complain to the data-protection authority in the country or region where you live if that right applies.
ChoiceSpin is a general-audience wheel, not a student account platform. The current site does not ask students to create accounts.
A teacher can type student names into a local wheel and keep them on that device by using only local features. Choosing Share or Spin With Friends uploads the supported wheel content for the stated limited period. Adults should use placeholders where practical, follow school or organization policy, and never put confidential or sensitive student details in a hosted link or room.
A child who is not legally able to make privacy choices should use the service only with a responsible adult’s guidance.
Keeping wheel data local reduces the amount sent to ChoiceSpin, but it does not make the device itself private. Anyone with access to the browser profile may be able to see saved wheels or history.
ChoiceSpin may update this page when the product, providers, or legal requirements change. A meaningful change should update the date at the top and explain the new behavior plainly.
Enabling accounts, public Gallery publishing, ads, analytics storage, custom analytics events, broader measurement, or materially different Share or live-room behavior requires a fresh privacy review, not a silent code change.
ChoiceSpin is responsible for this public privacy notice. Send privacy questions or rights requests to choicespin@gmail.com or use the contact page.
Details still to be published: the formal legal operator name, postal address, home jurisdiction, provider retention settings, and transfer safeguards need owner and legal review before this notice can be treated as complete for a specific jurisdiction.