Platform policy
Privacy notice
Effective 9 August 2026
What the portal stores
For creator accounts, the portal stores the username, email address, password hash, profile information, account status, acceptance records, sign-in and security timestamps, and the games and metadata you publish. It also keeps moderation and audit records needed to operate the service safely.
Technical information
The service processes IP addresses, request times, browser information, security events, and short-lived session cookies for sign-in, abuse prevention, troubleshooting, and reliability. Passwords are stored only as one-way hashes. Verification and reset tokens are stored in hashed form.
Hosting and service providers
The initial application and database are hosted in Singapore using Spaceship infrastructure. Cloudflare may process web traffic for DNS, security, caching, and delivery. Email providers process account-verification and password-reset messages. These providers handle data only as needed to deliver their services.
Students and children
Creator accounts are for educators, not students. Games must not ask learners to enter names, email addresses, photographs, voice recordings, precise locations, account credentials, or other identifying information. Teachers should report any game that does so.
Retention and choices
Account, game, audit, and moderation records are retained while needed to operate, secure, and document the platform. Creators may unpublish their games and request account assistance through the contact channel on the main ClassBoard Games website. Some security, rights, or backup records may be retained where reasonably required.
Cookies
The creator portal uses a secure session cookie and anti-forgery token. Sandboxed game code cannot read that cookie. The recommended dedicated player hostname is also configured without portal credentials, adding a separate origin boundary. Advertising cookies are not required for the initial release.