Privacy Policy
Privacy Policy - GymGamEnt Ltd
Last Updated: February 11, 2026
​
1. Introduction and Commitment to Compliance
GymGamEnt Ltd ("we", "us", or "our") places data protection at the core of our technology. This Privacy Policy describes how we manage data across the GymGamEnt.com corporate site and the GymgaPlay.com gaming platform.
We explicitly declare that our services are designed to be fully compliant with the following European Union regulations:
-
GDPR (EU Regulation 2016/679): General Data Protection Regulation and the Right to be Forgotten.
-
Digital Services Act (DSA - EU Regulation 2022/2065): Regarding transparency, content safety, and the protection of minors on digital platforms.
-
AI Act (EU Regulation 2024/1689): Establishing safety and transparency standards for systems driven by artificial intelligence and algorithms.
2. Data Controller
The Data Controller is: GYMGAMENT LTD Company Number: 16220623 9 CHAPEL PLACE, 2ND FLOOR LONDON, ENGLAND EC2A 3DQ Email: mkg@gymgamail.com
3. "Privacy-by-Design" Architecture: Access Modes
In accordance with the principle of data minimization (Art. 5 GDPR), we offer two access modes on GymgaPlay.com:
-
Anonymous Access (Anonymous Auth): No data is requested. Progress is saved only locally and is not linked to any identity on our servers.
-
OAuth 2.0 Access (e.g., Gmail, Apple, Facebook): We utilize secure authentication protocols that allow us to identify the user without possessing their sensitive data.
-
No Email or Password Storage: GymGamEnt does not record, view, or store your email address or password.
-
Unique Identifier: We receive only an encrypted token (UID) to create a technical GymgaPlay account, which is devoid of direct personal data.
-
4. Game Data and Purpose of Processing
We record data exclusively for functional purposes related to the gaming service (Art. 6 GDPR, performance of a contract):
-
Progression: Completed levels and checkpoints.
-
Ranking: Scores (Records) necessary for global leaderboards.
-
Personalization: A freely chosen nickname (we strongly advise users not to use their real names).
5. Protection of Minors (DSA Compliance)
In line with the Digital Services Act, GymGamEnt adopts specific measures for minors:
-
We do not perform behavioral or advertising profiling on minors.
-
We rely on the age verification carried out by the login providers (Google/Apple/Meta).
-
We encourage the use of the platform under adult supervision for users under the age of 14.
6. User Rights and the Right to be Forgotten
In accordance with Articles 15-22 of the GDPR, users may exercise the following rights:
-
Access and Portability: View your own game records.
-
Erasure (Right to be Forgotten): You may request the immediate and permanent deletion of your GymgaPlay account and all progression data by sending an email to mkg@gymgamail.com.
-
Self-Deletion: A feature is currently being integrated into the user profile to allow for autonomous and instantaneous data deletion without requiring manual intervention.
7. Data Security and Transfers
Data is stored on secure cloud infrastructures (Firebase) that guarantee high standards of protection against unauthorized access. Any data transfers outside the EEA (European Economic Area) occur exclusively to countries that ensure an adequate level of protection or through Standard Contractual Clauses approved by the European Commission.



