Introduction
Nobilix Pty Ltd ("Nobilix", "we", "us") operates TrapMan, a mobile game available on iOS and Android. This Privacy Policy explains what information we collect when you play TrapMan, how we use it, and your rights over that information. TrapMan is intended for players aged 13 and over. We do not knowingly collect personal information from children under 13 without verifiable parental consent. If you believe your child under 13 has provided us with personal data, please contact us at help.nobilix@outlook.com so we can take appropriate action, including deletion. No date of birth is collected. By creating an account, you confirm you are at least 13 years old. Parents or guardians wishing to request deletion of a child's account may contact help.nobilix@outlook.com.
What We Collect
The following data is stored in our systems when you play TrapMan. This list reflects confirmed fields from engineering review.
| Data | System | Location | Purpose | Deletable |
|---|---|---|---|---|
| User Name | Firestore | users/{uid} | Display name shown on leaderboards and in the player portal. | Yes |
| User Email | Firebase Authentication + Firestore | Firebase Auth record + users/{uid}.email | Account identity and player communications. Stored in Firebase Auth and mirrored to the users Firestore document. | Yes Deleting the account removes both the Auth record and the Firestore user document. |
| User Country | Firestore | users/{uid}.country | Regional segmentation for leaderboards and applicable law compliance. | Yes |
| Competitions Won | Firestore | users/{uid} or player_progress/{uid} | Tracks competition wins for leaderboard and in-game rewards. | Yes |
| Purchases Made | Firestore | users/{uid}.purchases (embedded purchase map) | Records in-app purchase transactions (price, currency, platform, receipt, timestamp) for receipt and dispute resolution. Confirmed by engineering schema review to be stored on the player profile document. | Partial Purchase receipt records may be retained for financial compliance and dispute resolution. Personal identifiers within receipts are anonymized on account deletion where retention is required. |
| Purchased Item | Firestore | users/{uid}.purchases.{purchaseId}.productId | Identifies which in-app product was purchased (e.g., character skin, power-up pack). | Partial Retained as part of purchase receipt. Personal identifiers are anonymized on account deletion where retention applies. |
| Time Played | Firebase Analytics | Analytics event: session_end — parameter: duration_ms | Records total milliseconds of a play session for aggregate playtime analytics. | Partial Firebase Analytics stores aggregate event data. Per-user event deletion is not instant and depends on Firebase Analytics data deletion processes. Aggregate data without personal identifiers may persist. |
| Ads Watched | Firebase Analytics | Analytics event: ad_closed | The ad_closed event is tracked when the player closes a rewarded or interstitial ad. It means the ad was closed; it does not verify full ad completion. | Partial Subject to Firebase Analytics data deletion timelines. |
| Ads Clicked | Firebase Analytics | Analytics event: ad_clicked | Recorded when the player clicks or interacts with an ad unit. | Partial Subject to Firebase Analytics data deletion timelines. |
| Push Notification Token | Firestore | users/{uid}.fcmToken | Firebase Cloud Messaging token used to deliver push notifications to the player's device. Confirmed present via engineering schema review. | Yes Removed on account deletion; also cleared if the player revokes notification permission on-device. |
| Current Level | Firestore | users/{uid}.currentLevel | Tracks the player's current progression level for leaderboard ranking and gameplay state. | Yes |
| Completed Levels | Firestore | users/{uid}.completedLevels | List of level numbers the player has completed. Used for progression tracking and aggregate level-distribution analytics. | Yes |
| Guest Account Flag | Firestore | users/{uid}.isGuest | Indicates whether the player is using a guest (non-authenticated) account. Confirmed via engineering schema review: guest accounts receive the same persistent Firestore profile document as registered accounts. | Yes |
Data Under Engineering Verification
The following categories may be collected or processed by TrapMan's underlying systems but have not yet been formally verified by our engineering team. We do not claim to collect these categories until each has been individually confirmed and this policy is updated.
- Under engineering verification: Firebase Analytics automatic events and user properties (e.g., first_open, app_update, os_version, country derived from IP)
- Under engineering verification: Device identifiers including Google Advertising ID (GAID) and Apple IDFA — depends on consent and attribution SDK
- Under engineering verification: Crash reporting data (e.g., Firebase Crashlytics — stack traces, device model, OS version)
- Under engineering verification: Advertising SDKs and their destination processors — depends on which SDKs are integrated and their data sharing practices
- Under engineering verification: A minority of embedded purchase records carry raw app-store receipt blobs keyed by store purchase tokens (a different shape from the confirmed productId/price/currency/platform/timestamp records) — the internal contents of those raw receipt blobs have not been individually verified
- Under engineering verification: The dedicated purchases/{purchaseId} and player_progress/{uid} collections no longer exist in the live database as of the most recent engineering schema review — all purchase and progression data lives on the users/{uid} document itself (see purchases, currentLevel, completedLevels above)
Children's Privacy
TrapMan is intended for players aged 13 and over. We do not collect a date of birth and rely on players' confirmation that they meet the age requirement. We do not knowingly collect personal information from children under 13. Parents or guardians who believe their child under 13 has created a TrapMan account may contact help.nobilix@outlook.com to request account deletion. We will process such requests in accordance with applicable law.
Data Retention
Firestore profile data (username, email, country, competition history) is retained until you delete your account. On deletion, your user profile, progress data, and leaderboard entries are removed or anonymized. Purchase receipt records may be retained for financial compliance and dispute resolution purposes. Personal identifiers within retained purchase records are anonymized where retention is required. Firebase Analytics aggregated event data follows Firebase's data retention settings. Per-user event deletion is processed according to Firebase's documented timelines and may not be instant.
Your Rights
You have the right to:
- Access the personal data we hold about you (contact help.nobilix@outlook.com)
- Request a copy of your data in a portable format (contact help.nobilix@outlook.com)
- Correct inaccurate data (by updating your profile or contacting support)
- Delete your account and associated personal data (see /trapman/delete-account)
- Lodge a complaint with a relevant data protection authority
To exercise any of these rights, contact help.nobilix@outlook.com.
Contact Us
For privacy questions or to exercise your rights, contact: Nobilix Pty Ltd — help.nobilix@outlook.com

