Skip to content
Draft. This document has not been reviewed by a lawyer yet. It describes how Mindteaser works today and we intend to stand behind it, but treat it as a statement of practice rather than a finished legal instrument.

Privacy

Last updated: 22 September 2026

Who we are

Mindteaser is operated by OutcomeOps LLC, a Nevada limited liability company, which is the controller of any personal data described here.

OutcomeOps LLC
304 S. Jones Blvd #3087
Las Vegas, NV 89107
United States

Questions about this policy: support@mindteaser.io

What Mindteaser is right now

Today Mindteaser is a website and nothing more. There are no accounts, no sign-in, no saved puzzles and no payments. You cannot give us personal information through this site because there is nowhere to put it.

That will change when the first game ships and you can create and share puzzles. This page will be rewritten in the same release, not afterwards.

What we collect

Only what a web server necessarily sees when you request a page. Our content delivery network writes an access log entry for each request, containing:

  • Your IP address, used to count unique visitors and derive approximate country or region
  • The page you requested and the time of the request
  • The referring page, if you arrived from a link elsewhere
  • Your user agent: browser, operating system and device type as your browser reports them

These logs go to an analytics system we run ourselves on our own infrastructure. They are not sent to an advertising network or a third-party analytics vendor.

What we do not collect

  • No accounts, so no account data. No email address, no name, no profile.
  • No passwords, ever. When sign-in arrives it will use emailed links, not passwords, so there will be no password for us to store or lose.
  • No payment information. Nothing is for sale here.
  • No third-party analytics or advertising trackers. No Google Analytics, no Google Tag Manager, no Meta pixel, no Segment, no Mixpanel, no advertising identifiers.
  • No location data beyond the coarse country or region implied by an IP address.
  • No device fingerprinting and no cross-site tracking.

Cookies and local storage

Mindteaser sets no cookies at all, and stores nothing in your browser’s local storage. There is no cookie banner because there is nothing to consent to.

Who else is involved

  • Amazon Web Services hosts the site and stores the access logs described above, in the United States. Traffic is encrypted in transit and the logs are encrypted at rest.
  • Google Fonts serves two typefaces. Your browser fetches them from Google’s servers, which means Google receives your IP address and user agent as part of that request. We do not send Google anything else, and we set no Google cookies.

We do not sell your data, rent it, trade it, or hand it to data brokers or marketing lists. We would disclose data to law enforcement only under a valid United States subpoena, warrant, or equivalent legal order.

How long we keep it

Access logs are deleted automatically 30 days after they are written. This is enforced by a storage lifecycle rule rather than by anyone remembering to run a cleanup, so it happens whether or not we are paying attention.

Your rights

Because we hold no account and no identifier for you, there is usually nothing we can look up on request: an IP address in a log is not something we can reliably tie to a person, and we do not try to.

If you are a California resident, the CCPA and CPRA give you the right to know what personal information is collected, to have it deleted, and to opt out of its sale. We do not sell personal information. To make a request, email support@mindteaser.io and we will respond within 30 days.

Where we operate

Mindteaser is run from the United States and intended for users there. We are not currently set up for the stricter data protection regimes of the EU or UK, and we do not hold ourselves out as GDPR compliant.

Children

Mindteaser is for adults and is not directed at anyone under 18. We do not knowingly collect information from children. If you believe a child has provided us with information, email us and we will remove it.

Security

The site is served over HTTPS only. Logs are encrypted at rest and reachable only by the people who operate the service. There are no passwords to steal and no stored personal data to breach, which is the strongest security property this site currently has.

If you find a vulnerability, email support@mindteaser.io with “security” in the subject line. We will not pursue anyone who reports a genuine finding in good faith.

Changes to this policy

When this policy changes materially we will update the date at the top of the page. Once accounts exist, we will also email active accounts at least 14 days before a material change takes effect.

Also worth reading

Using Mindteaser also means agreeing to our Terms of Service.