Aphelion / Privacy notice
Privacy,
in plain language.
Effective August 12, 2026
What we collect
Account access uses your email address and optional display name. Billing is handled by Stripe; Aphelion stores the customer, subscription, and entitlement identifiers needed to provide access, not full payment-card details. Before Checkout, we record the account, accepted Terms and Commercial License versions, acceptance context, Checkout Session identifier, and timestamp. If you join drop notifications, we store your email and consent record.
First-party product analytics
Aphelion records a random first-party session identifier, page and funnel events, hero slug, referrer domain, and UTM campaign fields. We do not place advertising trackers in the product analytics path, and we do not store raw IP addresses, full referrer URLs, user-agent strings, or mouse-movement streams in the analytics table. Browser Do Not Track and Global Privacy Control signals disable client analytics collection.
Why we use it
We use this information to secure accounts, provide memberships and protected downloads, measure which heroes and Free Drops are useful, improve the product, and send drop notifications only when you have asked for them.
Processors and retention
Supabase provides authentication, database, and private storage. Stripe provides checkout, subscription billing, and the customer portal. Hosting and network providers may retain operational security logs under their own policies. Product analytics is intended for aggregate launch and product decisions and should be reviewed for deletion on a rolling basis.
Your choices
You may use browser privacy signals to disable optional analytics. Drop notifications require explicit signup and will include an unsubscribe path before any campaign is sent.
Contact
For privacy or account questions, contact support.aphelion@gmail.com.