How does Winorio protect your data in a gaming world?

We believe privacy isn't a legal footnote—it's the foundation of trust. This policy outlines exactly what we collect, why we collect it, and how we safeguard your information while you explore our gaming applications.

Explore Data Practices
Data flow visualization
Updated for 2026

Our Data Philosophy: Clarity & Control

We collect only what's necessary to deliver and improve our gaming experiences. This includes account details (like username and email), gameplay data (progress, preferences), and technical information (device type, IP address) to ensure stability and security.

Crucially, we do not sell your personal data to third parties. Analytics are anonymized, and any data sharing with partners (for features like leaderboards) is governed by strict contractual agreements that mirror our own privacy standards.

Your Rights at a Glance

  • Access, correct, or delete your data via account settings.
  • Opt out of non-essential data collection (e.g., personalized ads).
  • Request data portability for your gaming progress.

Technical Safeguards & Real-World Trade-Offs

Security Infrastructure

We employ industry-standard encryption (AES-256) for data at rest and in transit (TLS 1.2+). Our servers are hosted with providers compliant with ISO 27001 and SOC 2 Type II standards.

99.9%
Uptime SLA
24/7
Monitoring

*Figures based on provider metrics; actual incident response time may vary based on severity.

PERSPECTIVE

What Would Change Our View?

Assumptions: User trust is tied to transparency; data minimization reduces breach impact; regulatory compliance is a baseline, not a ceiling.
Constraints: Must operate within Turkish (KVKK) and EU (GDPR) jurisdictions; cannot guarantee absolute security in any system.
Changing View: A significant, material breach affecting user credentials would trigger a full policy audit and accelerated implementation of mandatory 2FA for all accounts.

Design Trade-Offs: Performance vs. Privacy

Real-Time Leaderboards

Requires persistent device identifiers.

Mitigation: We use hashed identifiers that can't be reversed to personal data.

Personalized Game Recommendations

Leverages play history and preferences.

Mitigation: Users can clear local recommendation cache in settings.

Third-Party SDK Integration

Needed for payment processing and ads.

Mitigation: We audit SDK privacy policies and disable tracking where possible.

The Data Lifecycle: From Collection to Deletion

1

Collection

Account creation, gameplay, device info. We disclose this at the point of collection.

2

Processing

Analyzed to improve game balance, fix bugs, and personalize your experience (on-device where possible).

3

Storage

Encrypted on servers in Germany (EU). Retained only as long as needed for legitimate business purposes.

4

Deletion

Upon account closure or expiration of retention period (typically 2 years post-inactivity). Anonymized data may be kept for analytics.

Have a Privacy Concern?

Our Data Protection Officer is dedicated to resolving your inquiries promptly and transparently.

Direct Contact

Data Protection Officer (DPO)
Winorio Privacy Team

Istiklal Caddesi No: 123, Beyoğlu, Istanbul

Email: info@winorio.pro

Phone: +90 212 555 7890

Hours: Mon-Fri, 9:00-18:00 (TRT)

Last Updated: May 2026. This policy may be updated. Material changes will be notified via email or in-app notification.