Rolvimo

Privacy policy

How Rolvimo uses information, when recordings are shared and how deletion works.

Effective date: 2026-09-13

Account and on-device information

The app creates a random account identifier and private session key on your device. The server stores only hashes of session and recovery codes. Language, theme, local history and solo audio stay on your device; no separate usage analytics SDK is installed.

Consent text for earlier camera publications

This camera flow records your face and your own voice together. Preview and the latest draft stay on your device until you submit for publication. Submission uploads the recording; approved videos become public on the quote card. Others respond to the same text with their own recordings; your face and voice are not automatically added to theirs. Remove your video in My video performances or delete your account in Your data. Necessary provenance and moderation records may be retained. Text rights are reviewed separately.

Solo audio, duels and sharing

In the legacy solo flow, audio and scoring stay on the device. Joining a duel uploads the round recording to private storage; participants can listen using time-limited access. The ghost pool is a separate choice. A shared video containing two players requires each player's consent for that match. Copies shared outside the app cannot be recalled remotely.

Information used

Account identifiers, favorites, uploaded video, titles, quote suggestions, votes, rights-evidence references and moderation records support the corresponding product functions. Uploader IP, user-agent, time and terms version are recorded for provenance and abuse review. Copyright notices and counter-notices include contact details and declarations.

Payments and notifications

Subscription provider identifiers, products, status and expiry dates support purchase verification and restoration. Payment card details are not sent to the Rolvimo API. With notification permission, device addresses/tokens, preferences, inbox and delivery status support invitations and moderation results.

Providers and diagnostics

The setup includes Cloudflare R2/Workers, Render, Supabase PostgreSQL, RevenueCat, stores/payment providers, Expo/APNs/FCM or browser push services, and Sentry. Raw audio/video, transcripts and user text are not included in JS/server error reports. Providers may see IP addresses during network connections. Sentry replay, tracing, screenshots and automatic console recording are disabled.

Retention and deletion

DataCurrent retention limit
Duel recordings30 days
Ghost pool recordings90 days
Rejected uploads7 days
Notification inbox30 days
Session365 days
Offline scene24 hours; up to 8 scenes / 500 MB

Private-room access ends 24 hours after room creation. Room cleanup removes associated audio and replay video. Previously published clips are retained until removed. Media cleanup may be retried. Origin, moderation, copyright, financial records and provider backups are not all erased at that same instant. Exported copies cannot be remotely erased.

Accessing your data and deleting your account

Export your data or delete your account in the app's Account section. Deletion revokes live sessions, notification devices and the recovery code, and queues media removal. Suspended accounts can still access these controls.

Deleting your account does not cancel your subscription. To stop renewal, open subscription management first and cancel with the store or payment provider you used.

How information is collected, shared and requested

Rolvimo is a private-room scene game using voice or text. Information is received through text you enter, audio you explicitly submit to a room, selected roles, ratings and account preferences. Account access involves session and technical connection information. Opening the microphone or camera does not by itself upload a recording. New public video uploads are disabled. Previously published records may remain accessible until removed; access to delete your own records is retained.

Room members can access submitted performances and the replay made with voices and avatars. Access closes 24 hours after room creation; the room cleanup job removes associated records. This does not mean every provider backup is erased at the same instant. Taking shared content outside the app requires current, explicit permission from every player whose content is included. Permission is off by default. Exported copies cannot be remotely recalled.

You can manage camera, microphone and notification permissions in your device or browser settings. Turning off these permissions does not delete content you previously submitted. Remove your own camera video through My video performances; use Account to download your account data or delete your account. Copies you share outside the app may remain with the people and services you sent them to.

Send privacy questions and data requests to the contact address at the bottom of this page. Describe your request and include a relevant content link if available; do not send your private recovery code, session key or payment card details. If you cannot access the account, a deletion request requires a review of account ownership. Writing to support does not automatically delete the account or replace the private recovery code.

Group play processes the room code, participants, selected roles, turn state and ratings on the server to run the game. Friend requests, profiles, messages and emoji interactions support social features; reporting and blocking controls are available. A scene you write begins as a private draft. Adding it to a friend’s library requires their separate acceptance.

The beta effects lab requests camera and microphone access. It creates the effect recording on the device and does not automatically upload it. Starting a share transfers the file to the application you select. DeepAR SDK provides face-tracked visual effects; provider license validation and usage measurement are separate data flows. This beta test does not provide a face-concealment guarantee or identity verification. AI scene generation remains disabled pending live provider and data-control acceptance.

Your rights under Turkey’s KVKK include learning whether your data is processed, requesting information about its processing, purposes and domestic or overseas recipients, correcting incomplete or inaccurate data, and requesting erasure or destruction when statutory conditions apply and notification of these actions to recipients. You may object to adverse results based solely on automated analysis and seek compensation for damage caused by unlawful processing. Properly submitted requests must be answered promptly and within 30 days at the latest. Rights to complain to the KVKK authority and other legal remedies remain available following rejection, an inadequate response or no response. Send written requests to the postal address shown; contact support for electronic submission and identity verification procedures. A general support email alone does not establish account ownership.

Social messages currently have a 30-day cleanup period. Closed social and custom-scene reports become eligible for cleanup 30 days after the decision. Relevant text evidence in open reports is retained during review. Account deletion separates user identity links in reports; it does not mean every category of record is immediately erased without exception.

According to DeepAR’s SDK documentation, camera processing for effects takes place on the device. License validation and monthly usage counting process device information such as application ID, screen resolution, operating system version, a randomly generated value and access date. This provider statement is not an independent network audit of Rolvimo’s signed app. Camera permission is not blanket consent to all data processing.