Last updated: August 7, 2026
Legacy Run has no sign-up and no player-facing login. Playing the game never asks for your name or email. Firebase assigns a random anonymous device identifier when a protected multiplayer or leaderboard feature needs it.
The game asks for an email address in two places, and both are optional. Nothing else in the game asks for one, and you can play everything without giving one.
Getting Pro back on another device. Type the address you paid with and we email you a one-time link. That address is only used to find your purchase and send that link. It is not added to any mailing list.
The weekly email. After you finish a season we may offer you one message a week about that week's challenge. If you give an address, we send a confirmation link first and nothing is ever sent unless you open it, so nobody can sign up an address they do not own. Every message carries a link that removes you immediately, and we keep no record of you after that beyond what our email provider needs to deliver mail. We do not sell or share the list.
Payment is handled by our payment provider, which collects the details needed to take the payment. We do not see or store your card details. We store your payment provider customer reference, the email address on that payment, whether the purchase is active, and which plan it is, so that the game knows to unlock Pro for you.
Using the restore option above creates a short-lived record so the link can only be used once. The link expires after 30 minutes. We store it as a one-way hash rather than as the link itself, so the stored record cannot be turned back into a working link.
To have your purchase records deleted, email legacyrungame@gmail.com from the address you paid with. Deleting them ends any active Pro access, and we may keep the minimum transaction records our payment provider and tax rules require.
Your sound preference, daily streak, achievements, and saved results live in your device's local storage. They are never sent to us.
Finishing a run adds anonymous +1s to shared tallies hosted on Google Firebase: daily and all-time win counts, and dynasty milestones such as title counts and win streaks. For Daily and Classic validation, a private attempt record temporarily stores the random device identifier, a one-way roster fingerprint, the server-computed record, and timestamps. Attempt records expire after two hours; short-term rate-limit records expire after two days. They are never shown on a public leaderboard.
Google Cloud security logs may record an IP address, browser user-agent, request time, and Firebase service metadata when the game accesses its database or leaderboard validator. These logs are private, used to investigate abuse and reliability problems, and follow the retention settings on Legacy Run’s Google Cloud project.
Non-Pro visitors may be shown ads through Ezoic, our advertising partner, whose consent tool manages advertising choices where required. Legacy Run’s separate “Cookie settings” choice controls Google Analytics, which uses cookies to count sessions and time on site: accept and it loads; decline and it does not. A cookieless page counter (GoatCounter) still runs. Pro members never invoke an ad placement.
Google Firebase (leaderboards and anonymous drafted fives used as duel opponents), Ezoic (advertising and ad measurement), Google Analytics (visit measurement, only after consent), GoatCounter (cookieless page counts), Ko-fi (the optional tip jar, loaded only if you open it), and Google Fonts each handle data under their own privacy policies.
Questions or data requests: legacyrungame@gmail.com