RIIP
Get started
Legal

Privacy Policy

Draft of 13 August 2026 — a summary, pending review and approval by qualified counsel. Not legal advice, and not yet in force.

What we collect

The minimum needed to run the service: your platform account identifier, your username if you have one, an email only if you choose to add one, and your settings — coarse region, filters and favourites. We record a closed list of twelve product events, each carrying only allow-listed values such as the numeric game identifier you searched, how many results came back and how long it took. We do not store your IP address in any database, and we do not store the words you type — text search is cached under an irreversible fingerprint so the raw query never becomes a stored key.

What we never do

We do not profile you, run behavioural or targeted advertising, or sell personal data. There is no third-party analytics, advertising, attribution or session-replay technology anywhere in the product — no Google Analytics, no ad pixel, no tracking cookie. We collect no age or date of birth, no real name, no address, no phone number, no precise location and no device fingerprint. We never see your card details; payment is handled entirely by Stripe or Telegram Payments. Sponsored results are matched to the game you searched, never to you.

Younger players

A large share of Roblox players are minors, and that shapes the whole product rather than one section of it. Child-safe settings apply to everyone whatever their age, sponsored placements are contextual and a clone can never buy a slot over the original, nothing about a player is public, and there is no streak, loss-framing or re-engagement nagging. Parents and guardians can ask to see, correct or delete a child's data at any time, and we will not ask for more personal data than is needed to identify the account.

How long we keep it

Live server data is cached for seconds. Rate-limit counters keyed on an IP address are held for between a minute and an hour, then discarded. Server snapshots are kept about 90 days and behavioural analytics about 12 months, after which only anonymous aggregates remain. Transaction and ledger records are kept for around seven years because tax and accounting law requires it. Your account, settings and usage state last as long as your account does.

Your rights

You can ask for a copy of your data, correct it, or have it deleted — free, and within one month. Deletion severs the link between you and your data and makes the account unrecoverable; transaction records are kept in anonymised form because the law requires it, so the money trail survives but the person does not. You can also object to processing we base on legitimate interests. Email privacy@riip.gg, or ask from the account itself — we would rather verify you that way than collect identity documents. You may also complain to the ICO or your local supervisory authority.

Sharing, transfers & cookies

We share data only with providers who process it on our behalf — hosting, the security and delivery edge, payments, transactional email and encrypted backups — each bound to our instructions, with the current list published as our subprocessor register. Our monitoring and logging stack is self-hosted, so no third-party vendor receives our logs. Telegram, Discord and Roblox operate under their own privacy policies. Where data crosses borders we rely on the UK Addendum and EU Standard Contractual Clauses. The only cookies we set are strictly necessary, HTTP-only session cookies; this marketing site sets none at all.

This page summarises the document. The complete text is being finalised with counsel and will be published here on approval — email help@riip.gg for the current draft in the meantime.

TermsPrivacyAcceptable UseDPA