Effective Date: 2026-02-25 | Last Updated: 2026-03-01
Wei2Go Studio (“we”, “us”, “our”), a registered business name of LIN, WEI (Individual/Sole Trader, Australia), operates Wei2Hunt at https://wei2hunt.com (the “Service”).
This Privacy Policy explains what information we collect, how we use it, who we share it with, and the choices available to you.
By accessing or using Wei2Hunt, you acknowledge this Privacy Policy. Where consent is required by applicable law, we will request it separately.
1. Who We Are
- Operator: Wei2Go Studio
- ABN entity: LIN, WEI (Individual/Sole Trader)
- ABN: 58 446 954 851
- Main business location: VIC 3149, Australia
- Contact: https://wei2hunt.com/hq/contact
2. Who This Policy Applies To
This Policy applies to all users of Wei2Hunt, including:
- Parent accounts
- Child accounts (shown in-product as "Hunter profiles") created/managed by a parent/guardian
- General (13+) accounts
- Admin users
- Visitors who use public pages, voluntary contribution pages, contact forms, or linked surveys
This Policy applies whether Wei2Hunt is accessed through a web browser or through the installable Progressive Web App (PWA), as both are the same Service.
This Policy also applies to official related domains and subdomains we operate to deliver the Service.
3. Information We Collect
3.1 Account and Profile Information
Depending on account type, we may collect:
- Username
- Email address (not required for child accounts)
- Password hash (not plaintext password)
- User role and account status
- Display name (hunter codename) and avatar
- Country inferred from IP at registration
3.2 Authentication and Security Information
We process:
- Login/session cookie data (HTTP-only secure session handling)
- Remember-session preference where selected (for example "Remember me")
- Parent/guardian-initiated child-session switch events/metadata for linked account access control and security logging
- Email verification and password reset tokens/expiry metadata
- Pending email change metadata
- Terms/privacy acceptance metadata on account creation:
termsVersiontermsAcceptedAtprivacyVersionprivacyAcknowledgedAt
3.3 Gameplay and Related Data
We process gameplay-related data for service functionality, including:
- Game instance records
- Liked trainings
- User statistics and leaderboard-related records
3.4 Contributions and Payment Data
Contributions are processed through Stripe-hosted checkout. We do not collect full card details in Wei2Hunt systems.
Related records may include:
- Amount
- Currency
- Payment status
- Email (from Stripe checkout context)
- Payment/session/event identifiers
3.5 Contact and Feedback Data
When you use https://wei2hunt.com/hq/contact, we collect:
- Email address
- Optional name
- Message content
- CAPTCHA verification token
Please do not include passwords or highly sensitive personal information in contact messages. Passwords should only be entered in official authentication fields (for example registration, login, password reset, or password change forms).
3.6 Survey Data
We may link to externally hosted surveys (currently Jotform). Survey responses are intended to be anonymous and designed not to request direct personal identifiers.
3.7 Moderation Data
For child safety and platform integrity, failed hunter codename (display name) moderation attempts may be logged, including:
- Attempted value
- Field type
- Rejection reason/details
- Timestamp
- Associated user ID when available
Users should not use real names or other personal identifiers in display names/codenames.
Moderation may involve automated systems and third-party services and may occasionally result in false positives or false negatives.
3.8 Technical and Error Telemetry
We process technical metadata and diagnostics such as:
- Security and abuse-prevention logs
- Infrastructure/application logs (for example hosting and API logs)
- Error monitoring telemetry (Sentry)
- Analytics events (GTM/GA4), configured to avoid direct personal identifiers
4. How We Use Information
We use information to:
- Provide and operate Wei2Hunt
- Create and manage parent/child account relationships
- Authenticate users and secure accounts
- Run gameplay, leaderboards, and anti-cheat controls
- Process voluntary contributions via Stripe
- Send transactional account/security emails (for example email verification, password reset, and email-change verification)
- Respond to feedback and support requests
- Improve product quality and reliability
- Detect, prevent, and investigate abuse, fraud, and policy violations
- Meet legal and regulatory obligations
4.1 Email Communications
Where you provide an email address (for example during account registration, contribution flow, or contact requests), we may email you for:
- account and security operations (for example verification, password reset, and email-change verification)
- replying to support/contact requests
- important service, legal, or policy notices
We do not currently send advertising or marketing email campaigns.
4.2 Sensitive Data Minimization
To reduce risk, users should only submit information that is necessary for the specific function they are using:
- Passwords should only be submitted in official authentication forms.
- Contact/survey/free-text fields should not include passwords or highly sensitive personal information.
- Display names/codenames should not include real names or personal identifiers.
5. Cookies and Similar Technologies
Wei2Hunt uses:
- Essential authentication/session cookies
- Session persistence behavior:
- default authenticated session duration (approximately 1 hour)
- optional remembered sessions (currently up to 30 days when selected)
- A
viewed-introcookie (up to 1 year) for intro-flow state - Security technologies (including Cloudflare Turnstile on protected forms)
- Analytics technologies (Google Tag Manager / Google Analytics 4)
- Limited client-side storage for UI preferences (for example lesson-banner preferences)
You can manage cookies in your browser settings, but some features may not function correctly if essential cookies are blocked.
6. Children and Parent Controls
Wei2Hunt is designed for child use with parent-managed account flows.
- Child accounts are created and managed by parents.
- Parent accounts can manage core child profile/account settings.
- Parent/guardian account holders can switch from their own signed-in session into a linked child account session they manage.
- Parent/guardian-managed child accounts are typically created for children and may also be created for other household/family play under the parent/guardian's responsibility, subject to applicable law and these terms.
- Parents control child credentials (including child username/password management), while child accounts have limited self-management (for example display name/avatar).
- Parents/guardians may contact us for access, correction, deletion, or export requests.
7. Sharing and Disclosure
We may share information with service providers that support operations, including:
- Stripe (payments)
- AWS services (hosting, storage, email infrastructure)
- AWS SES (transactional emails)
- Cloudflare Turnstile (bot/spam prevention)
- Google Tag Manager / Google Analytics (analytics)
- Sentry (error monitoring)
- OpenAI Moderation API (name moderation checks)
- Sanity (content management)
- Jotform (external survey hosting)
- Vercel (frontend hosting and related operational logging/telemetry)
We may also disclose information if required by law or to protect rights, safety, and platform integrity.
8. International Data Processing
Your data may be processed in countries outside your own. While core parts of our service stack are operated in Australia, several service providers we use (for example Stripe, Cloudflare, Google, Sentry, Sanity, and Jotform) may process data in other jurisdictions, including the United States and other countries where they operate.
Where required, we apply contractual and operational safeguards for cross-border processing.
9. Data Retention
Current retention baseline:
| Data Category | Current Retention Baseline |
|---|---|
| User account/profile records (including terms/privacy acceptance metadata) | Retained while account remains active, unless and until deletion request is actioned |
| Gameplay and leaderboard records | Retained for ongoing game/statistical continuity unless deletion request is actioned |
| Display name moderation rejection logs | About 30 days, then removed by periodic cleanup |
| Contact form submissions | Targeted expiry after about 24 months via DynamoDB TTL |
| Payment records (PENDING) | About 90 days via TTL |
| Payment records (COMPLETED) | Retained without TTL under current service design |
| CloudWatch operational logs | 30 days |
| Sentry error telemetry | 30-day lookback/retention window on current plan |
| External survey responses (Jotform) | Retained under Jotform's policies and controls, including settings configured by us in our Jotform account |
TTL-based deletion is asynchronous and may not occur immediately at the exact expiry timestamp.
Deletion of an account may result in permanent removal of associated gameplay data and leaderboard records. In some cases, anonymised or aggregated statistical records may be retained for system integrity, analytics, or anti-cheat purposes.
We may retain information longer where legally required or necessary for disputes, fraud prevention, or security.
10. Your Rights and Choices
Depending on your location, you may have rights to request:
- Access
- Correction
- Deletion
- Data export/portability
For child account rights and all privacy requests, use https://wei2hunt.com/hq/contact.
11. Security
We use technical and organizational controls intended to protect the Service, including security headers, rate limiting, anti-spam/captcha controls, secure cookie practices, and operational monitoring.
No system is 100% secure, and we cannot guarantee absolute security.
12. Third-Party Links and Services
The Service may link to third-party pages and tools (for example Stripe-hosted checkout and Jotform surveys). Their own terms and privacy policies apply to those services.
13. Changes to This Policy
We may update this Privacy Policy from time to time. Material updates will be reflected by updating the Effective Date / Last Updated fields and, where appropriate, through additional notice.
14. Contact
For privacy questions or requests, please use:
