Warren Privacy Policy

Updated September 29, 2026. Game: Warren. Data controller: Lampbox, Inc. Contact: privacy@lampbox.com.

Warren on Poki

Warren on Poki uses guest leaderboards to rank eligible runs. Campaign and Endless can be played without online leaderboards. Daily Challenge requires online leaderboards. From the title screen, open Menu → Settings → Privacy Policy to reach the Leaderboards panel and manage participation. Lampbox gameplay analytics and external account linking are disabled on Poki.

How leaderboards work

New leaderboard versions enable participation by default unless you have previously turned it off. The first time you use a leaderboard, including opening it or starting a ranked Campaign, Endless or Daily Challenge run, Warren creates a pseudonymous guest account for this browser. Eligible results are submitted when each run ends. Your game label, code and results are public on Warren’s leaderboards, including through the public leaderboard service. You can turn online leaderboards off in the Leaderboards panel. Earlier versions ask you to turn them on first. Daily Challenge and Endless boards are shared with other Warren releases; Campaign has a Poki-only board. Desktop and mobile competitions are separate. No email signup or external account linking is offered, and Lampbox gameplay analytics remain disabled.

Information we use

We use a browser guest credential, private account identifier, game-only label, numeric code and public pseudonymous identifier to recognise returning guests and keep their scores. Run results include score, rank, level reached, items collected, playing time, losses and daily challenge details. Temporary run records and checkpoints let us resume eligible runs, check scores and limit abuse. Submitted input traces are checked but not retained by our leaderboard application. These identifiers can connect activity over time; they are not anonymous.

What other players see

Other players can see your three-letter game label (NEW until you choose one), numeric code, public identifier beginning W-, rank, score, level reached, items collected and play time. Leaderboard result responses can also include wall hits and steering distance, including Daily Challenge results. The Poki view does not display linked external usernames. Use a game label, not your real name or contact details. There is no leaderboard chat or direct messaging. Public responses do not disclose private account IDs or login credentials.

Who processes the information

Your browser sends leaderboard requests to our Netlify backend. Netlify receives connection information, including your IP address, which can reveal approximate location. Our application uses a keyed derivative for temporary rate limits. The backend calls Microsoft PlayFab for guest accounts and scores without forwarding the player's IP address in those requests. Our application does not retain raw guest credentials or session tickets in server records. We use this information for the requested leaderboard and to protect it, not for advertising, direct contact or tracking across unrelated services.

When a Poki guest account expires

Newly enrolled Poki guest accounts expire after 90 consecutive days without starting a new ranked run or submitting a new accepted result. Viewing the board, changing a label or retrying the same submission does not extend that period. An account that never plays expires 90 days after enrollment. At expiry, we block further activity, hide its results across the shared boards and begin deleting its account and associated online records. This rule does not enroll existing accounts from other Warren releases.

Your choices

In the Leaderboards panel, choose Turn off online leaderboards to stop leaderboard requests from this browser while keeping offline progress. Campaign and Endless remain playable; Daily Challenge is unavailable while leaderboards are off. Turning them off does not delete existing scores. Your choice is saved in this browser only. Clearing site data, using a private window, or playing in another browser or device will not remember the opt-out; default participation applies there. Choose Delete my online scores and confirm to request deletion of the guest account and its scores. This hides scores and blocks further activity while deletion is processed. You or your parent or guardian can request access, correction, deletion or that we stop collecting or using information for the account at privacy@lampbox.com. We verify control before disclosing private records or deleting an account; a public label alone is not proof of ownership.

How account deletion works

PlayFab deletion is asynchronous. A staff member must verify PlayFab’s completion notice before we remove our associated records and record deletion as finished. Completion depends on both provider processing and this manual step. Identifying account-cutoff and deletion-receipt records are removed 30 days after verified completion. The shorter temporary-record periods below also apply. Processing delays or outages can delay removal; application timers do not promise simultaneous erasure of provider infrastructure logs or backups. An unlinked used-number reservation may remain to prevent reassignment.

Clearing browser storage does not delete online records. Browser progress remains on your device, and another browser or device can have a separate guest account. After expiry or deletion, creating a new online account requires an explicit choice while this browser retains that status. Clearing site data removes that local status and can lead to a new account on the next leaderboard use. Poki's own platform and advertising services are covered by Poki's privacy policy.

This section takes precedence over the general descriptions below for Warren on Poki. Analytics and external linking described below apply only to other releases where those features are enabled.

Summary

Warren uses a pseudonymous guest identifier and limited gameplay and diagnostic data to operate and improve the game. If the version you play has online leaderboards, Warren also processes competitive-run data as described below. We do not ask for your name or email, sell this data, or use it for advertising.

Other releases: information we collect

A random guest identifier used to create a PlayFab guest account and kept in localStorage, IndexedDB and a cookie with a two-year lifetime; gameplay events such as levels started, completed and failed, game-over level and time, jumps, wall hits and menu actions; your chosen control scheme and in-game control settings, including whether motion-sensor access was granted; frame-rate samples; session timing and browser-stored visit counts; the referring site, portal and browser family; and crash reports containing an error message and stack trace. We do not intentionally collect your name, email or precise location.

Leaderboards (when enabled)

The leaderboard service receives your PlayFab SessionTicket only to ask PlayFab to validate the guest session; Warren's leaderboard application does not store that ticket. It privately stores the resulting PlayFab player ID and gives it a public pseudonymous alias beginning “W-”. A public board may show that alias with challenge date, rank, level reached, voxels collected, active play time and score. Guest profiles also store your chosen three-letter initials and a permanent numeric code, displayed together on both boards. Where optional itch.io linking is offered, connecting your account displays your verified itch username instead of your initials and code. To resume and check a run, the service may also store challenge, build and controls versions, periodic checkpoints, and the claimed and server-checked result. It also receives a versioned gameplay input and timing trace for submission checks. Checkpoints are continuity data, not score proof. The live leaderboard uses basic server checks, not full gameplay replay verification. Submitted traces are checked in memory and are not retained by the leaderboard service. Without a configured endpoint, play remains offline/unranked and no leaderboard data is sent.

Why (legal basis)

For EU and UK users, our legitimate interests (GDPR Art. 6(1)(f)) are operating and securing the requested game and leaderboard, preventing false scores, and fixing problems. In other releases where analytics is enabled, we also use it to understand play and measure traffic. Lampbox analytics are disabled on Poki. You may object by contacting privacy@lampbox.com.

How and where

Guest sign-in and analytics are sent to PlayFab, operated by Microsoft, acting as our processor. If the leaderboard is enabled, scores and rankings are stored in PlayFab; its API, private run receipts, checkpoints and rate limiting run on Netlify. Microsoft, Netlify and network providers necessarily process technical connection data such as IP addresses to deliver and protect their services. Warren's leaderboard application uses a keyed derivative of the connecting IP for rate limiting and is designed not to store the raw IP, SessionTicket or run token. We do not intentionally put credentials or input traces in application logs.

How long

For builds with online services enabled, run receipts are eligible for deletion 30 days after the run starts. Daily checkpoints are cleared 24 hours after the run's submission window closes. Challenge records are eligible for deletion after 31 days. Rate-limit counters are eligible for deletion two days after their minute window ends. Optional itch.io connection flows expire after 10 minutes and Warren sign-in sessions expire after 30 days; both are eligible for deletion 24 hours after expiry. An hourly cleanup job processes eligible records in bounded batches; processing delays or an outage can delay deletion.

For releases other than the newly enrolled Poki guest accounts described above, guest profiles, account links and each player's best All-Time score remain to provide ongoing leaderboard identity and score history, until a verified deletion request or the service closes. These are not removed by temporary-record cleanup. PlayFab keeps 31 daily ranking versions. Gameplay input traces received for submission checks are not retained by our leaderboard service. PlayFab analytics events in builds where analytics is enabled are configured for about 30 days.

For a verified deletion request, we request deletion of the relevant PlayFab account data and remove associated Netlify profiles, account links, sessions, run records and saved scores. PlayFab processes deletion asynchronously, so a queued request is not immediate completion. If the same PlayFab account has data in another game, we review the scope before proceeding. Anonymous number reservations may remain to prevent reassignment; they contain no player identifier. Browser saves can be removed using your browser's site-data controls. Poki handles any platform-managed copies under its policy.

Sharing and transfers

We share data with Microsoft/PlayFab and, only if the leaderboard is enabled, Netlify as service providers. We do not sell it. These providers process information internationally, including in the United States. Their published information is available in Netlify’s privacy notice, Microsoft’s privacy statement and PlayFab’s privacy terms. Provider infrastructure processing and retention are distinct from our application timers.

Security

We limit access and use measures such as encrypted transport, exact-origin controls, rate limits, restricted access to private run records and checkpoints, pseudonymous public aliases and server-side run checks. No internet service can guarantee absolute security.

Your rights and deletion

Under the GDPR (EU and UK) or CCPA (California) you may request access, correction, deletion, restriction, objection or portability by emailing privacy@lampbox.com. If the leaderboard is enabled, include your guest initials and numeric code, connected itch username, or public “W-” alias and approximate challenge date or portal so we can try to locate the pseudonymous record; never email a SessionTicket or run token. We must verify that a request concerns your guest account before exporting or deleting it. Clearing browser storage or using another device may create a separate guest account, so we may not be able to connect every record without enough information. You may also complain to your local data protection authority.

Children

Parents and guardians may contact privacy@lampbox.com with questions or requests concerning a child's data. Please do not send passwords, session tickets or other credentials. The Poki-specific service restrictions are described above.

The platform you play on

If you play Warren on a third-party games portal, that portal may collect its own data, including for advertising, under its own privacy policy, separate from this one.

Contact

Lampbox, Inc.
PO Box 1298
Riverside, CA 92502

Privacy questions and requests: privacy@lampbox.com.
General inquiries: info@lampbox.com.
Telephone (voicemail): 877-LAMPBOX (877-526-7269).

If you contact us, we use your message and contact details to respond and handle your request. Phone messages are recorded and transcribed by our voicemail provider, NumberBarn, and delivered to our company email. Please do not include passwords, login tokens or identity documents in your initial message.