Privacy Policy — Cooking Super Star

Effective: 10 September 2026 · Last Updated: September 2026

This Privacy Policy explains how AppOn Software Private Limited (“AppOn”, “we”, “us”, “our”) collects, uses, stores, protects, and discloses information in connection with the mobile game Cooking Super Star (the “Game”), available on Google Play (package com.appon.cookingstar) and the Apple App Store (as “Cooking Super Star -Tasty City”, App ID 1662457495).

Google API Services User Data Policy — Limited Use. The Game’s use and transfer to any other app of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not sell Google user data, do not use it to serve interest-based advertising, do not use it to train generalised machine-learning models, and do not transfer it to third parties except as necessary to provide or improve the requested in-game features, comply with law, or as part of a merger or acquisition (subject to equivalent protections).

1. Who this policy applies to

This policy applies to every player who installs and plays the Game, and every visitor to https://ominisight.net/games/cooking-super-star.php and its invite links. It does not apply to third-party services we link out to (such as the Google Play Store, the Apple App Store, or ad-network privacy portals), which have their own privacy policies.

2. Platforms

The Game is published for Android (via Google Play) and iOS (via the Apple App Store). While the gameplay is the same, some data practices necessarily differ between the two platforms:

3. Information we collect

3.1 Information you provide directly

We only collect personal information you voluntarily provide, such as your name, email address, and other contact details when you contact appon.innovate@gmail.com for support or otherwise interact with us directly.

3.2 Information collected automatically

When you use the Game, we and our service providers may automatically collect:

3.3 Identifiers

On Android, the Game and its SDKs may process:

On iOS, the Game and its SDKs may process, where applicable: the Identifier for Advertisers (IDFA) — only with App Tracking Transparency permission where required (see §5) — the Identifier for Vendors (IDFV), Firebase installation identifiers, and app, session and device identifiers used for analytics, fraud prevention and service operation.

3.4 Invite links and referrals

The Game lets you invite friends by sharing an invite link (ominisight.net/games/cookingstar/invite). Invite links carry an encrypted invite code identifying the inviting player’s in-game identity so that both players can receive in-game rewards. On Android, if the invited player installs the Game through the link, this code is passed to the Game via the Google Play install referrer. Invite codes contain no name, email address, or contact-list data, and we never access your device’s contact list; you choose whom to share the link with, using your own messaging apps.

3.5 Purchases and payments

The Game offers optional in-app purchases.

We do not receive or store your full payment-card number, bank details, or store-account payment credentials from Google or Apple. We may process purchase status and transaction information (such as a transaction identifier and product identifier) as necessary to deliver purchased content, manage entitlements, and prevent fraud.

4. Advertising and Tracking

The Game is free to play and is supported by advertising. Ads are delivered through third-party advertising and mediation SDKs (see §8 for the partner list). In connection with advertising, these SDKs may process device identifiers (see §3.3), approximate (IP-based) location, ad interaction information, diagnostics, and similar data, in accordance with their own privacy policies, for purposes including:

Which advertising SDKs are active can differ by platform, app version, country or region, and your consent status.

5. App Tracking Transparency (iOS)

On iOS, before the Game or its SDKs access data used to track you — that is, to link data about you with data collected from apps or websites owned by other companies for advertising or advertising-measurement purposes — the Game may request your permission through Apple’s App Tracking Transparency (ATT) framework. You may allow or deny this permission; the Game remains fully playable either way, and you can change your choice at any time under Settings → Privacy & Security → Tracking. If permission is not granted, the IDFA is not made available to the Game or its SDKs.

6. How we use information

7. Legal bases (EU / UK residents)

Where the GDPR or UK GDPR applies, we rely on the following legal bases:

8. Third-party SDKs and service providers

The Game integrates third-party SDKs and service providers. Each partner processes data under its own privacy policy; links go to the current policy at time of publication. Third-party SDK availability may differ by platform, country or region, app version, and your consent status.

We receive advertising data from these partners in aggregate form. We do not sell your personal information; some ad-network activity may qualify as a “sale” or “share” under the CCPA/CPRA — see §11 for your opt-out.

9. Your Privacy Choices

On Android:

On iOS: allow or deny tracking permission under Settings → Privacy & Security → Tracking, and use Apple’s device-level privacy and advertising controls.

In regions where consent is required (such as the EEA, the UK and Switzerland), consent options may also be presented through an in-app consent form (CMP), where you can accept, refuse, or later change your advertising-consent choices.

10. Children and age ratings

The Game’s age rating may vary by country or region; consult the store listing for the rating that applies to you. The Game is not directed to children under 13 (or the applicable age of digital consent in your jurisdiction: 16 in most of the EU, 14 in some US states), it is not a “made for kids” service, and we do not knowingly collect personal information from such children. If we become aware that a child has provided us personal information without verifiable parental consent, we will delete it promptly. Parents or guardians who believe their child has provided us personal information should contact appon.innovate@gmail.com for review and deletion.

11. Your rights

11.1 EU / UK residents (GDPR / UK GDPR)

You have the right to access, correct, delete, restrict, port, or object to processing of your personal data, and to withdraw consent at any time without affecting the lawfulness of prior processing. To exercise these rights, email appon.innovate@gmail.com. You also have the right to lodge a complaint with your national data protection authority.

11.2 California residents (CCPA / CPRA)

You have the right to know, delete, correct, and receive a copy of your personal information, and to opt out of the “sale” or “sharing” of personal information for cross-context behavioural advertising. To opt out of personalised ads, use the platform controls in §9 or email appon.innovate@gmail.com. We do not discriminate against users who exercise these rights.

11.3 All other jurisdictions

You may email appon.innovate@gmail.com to request access, correction, or deletion of any personal data we hold about you, subject to applicable law.

12. Data retention and deletion

We retain information only as long as reasonably necessary for the purposes disclosed in this policy, to meet legal obligations, to prevent fraud, and to resolve disputes. Current retention practices:

You may request deletion of your personal data at any time by emailing appon.innovate@gmail.com. Some information may need to be retained for longer where the law requires it (for example, transaction records).

13. Data security

We implement reasonable technical and organisational measures — TLS transport encryption, encrypted storage of sensitive fields at rest, principle-of-least-privilege access controls, and periodic security review — to protect information from unauthorised access, alteration, or disclosure. However, no method of transmission or storage is completely secure and we cannot guarantee absolute security.

14. Data-breach notification

In the event of a personal-data breach that is likely to result in a risk to affected individuals, we will notify the relevant supervisory authority within 72 hours where required by law, and affected users without undue delay through in-Game messaging and the email address on file.

15. International data transfers

AppOn is based in India. Third-party SDK partners and service providers may process data in the United States, European Union, Singapore, or other regions. Where personal data is transferred out of the EEA/UK, transfers rely on the European Commission’s Standard Contractual Clauses or an adequacy decision.

16. Changes to this policy

We may update this policy periodically. We will post the updated policy with a new “Last Updated” date at the top of this page. Material changes will additionally be surfaced in the Game before they take effect.

17. Contact

AppOn Software Private Limited
Pune, Maharashtra, India
Email: appon.innovate@gmail.com


© 2026 AppOn Software Private Limited. Google Play and the Google Play logo are trademarks of Google LLC. Apple, the Apple logo and App Store are trademarks of Apple Inc.