FENREACH
Privacy
Last updated 8 September 2026
Fenreach is a text roleplaying game run by an AI game master. This page explains what we collect, why, and who else sees it. We have tried to write it so you can actually read it.
What we collect
- Your account. When you sign in with Google we receive your email address, your name as Google gives it, and an identifier for your Google account. We do not receive or store your Google password.
- What you write and what you play. Your characters, your campaigns, the text you send to the game master, and the record of what happened in the game.
- Technical records. Ordinary server logs — request times, error information, and the volume of AI usage an account generates, which is how we keep the service running and pay for it.
We do not run advertising, we do not sell anything about you, and we do not use tracking or analytics cookies. The only cookie we set is the one that keeps you signed in.
Text you write is sent to AI providers
This is the part worth reading twice. To produce the story, the text you write and the state of your game are sent to third-party AI providers — currently OpenAI, and potentially other providers as the service changes. They process it to generate a response and are bound by their own terms and privacy policies, which we do not control.
Please do not put real personal information, anyone else's private details, or anything you would not want processed by a third party into the game. It is a fantasy game; it does not need your address.
The game keeps a permanent record
Fenreach works by writing down what happened rather than remembering it. Your campaign is stored as a durable record of events, which is what lets the world stay consistent months later. That record persists until you delete the campaign or your account.
Device and connection records
Separately from your account, we keep a short record of the devices and connections an account signs in from: your IP address, the network it belongs to and the country it is in, the description your browser or app sends about itself, and — where a device offers one — an identifier for the device, which we store only as a one-way scramble that cannot be turned back into the original.
What it is for, and only this. Looking into abuse: accounts made to get around a ban, attempts to break in, and fraud against our payment provider. A person looks at it and decides. It is never fed to anything that suspends or refuses an account on its own, and we do not use it to advertise to you, to build a profile of you, or to work out who you are across other websites.
How long we keep it, which is not how long we keep anything else. Twelve months after the last time we saw that device or address, and then it is deleted. That clock is its own. If we have to keep your purchase records longer — a refund or a chargeback can take a while to settle, and the law has views about receipts — that is a separate reason for a separate thing, and it does not extend this.
Seeing it and deleting it. Write to privacy@fenreach.com and we will send you a copy of what is held against your account, or delete it. Deleting it does not close your account and does not delete your campaigns; those are asked for separately, above.
At the time of writing we collect none of this. The section is here first, deliberately, because it should be possible to read what we intend to keep before we keep it.
Who else is involved
- Google — sign-in.
- AI providers — generating the story, as described above.
- Our hosting provider — running the servers the service sits on.
We may also disclose information where the law requires it. If Fenreach is ever sold or transferred, account data would move with it, and we would say so here first.
Keeping it and deleting it
We keep your account and campaigns while your account exists. You can ask us to delete your account and everything attached to it, and we will — email the address below. Server logs and backups roll over on their own schedule and may hold copies for a short period after.
Your choices
You can ask for a copy of your data, ask us to correct it, or ask us to delete it. Depending on where you live you may have further rights under laws such as the GDPR or the CCPA; write to us and we will honour them.
Children
Fenreach is not intended for children under 13, and we do not knowingly collect information from them. If you believe a child has created an account, tell us and we will remove it.
Changes
If this policy changes we will update the date at the top of this page. While Fenreach is in private testing it is likely to change more than once.
Contact
Questions, requests, or anything you think this page gets wrong: privacy@fenreach.com.