Nothing hidden,
because there's nothing to hide.
Written in 2026
We will never sell your information. We only ask for what a feature genuinely needs to work. Neither of those is a promise you have to take on faith — every line of code handling your data is public, at gitlab.com/mystiqa, so you can see exactly how it's protected rather than just being told.
These commitments are meant to hold for as long as Mystiqa exists, not to be quietly loosened as we grow. The rest of this page just gets specific about how they apply today.
Where we're starting
We're beginning, in 2026, with two things: Scoler, which helps small schools run themselves, and Spoken Tongue, a nature sound game that's free forever, for everyone, regardless of age. What each one needs to collect genuinely differs, so rather than write one vague policy to cover both, we've addressed them separately below. Anything else we build afterward is bound by the same promises above.
Across mystiqa.xyz
- If you email us, that message simply sits in our inbox, the same as any email you send anyone. We don't copy it into a list, a database, or a marketing tool.
- Our host, Cloudflare, keeps ordinary connection logs (IP address, browser, pages requested) to keep the site running and secure — standard for any website.
- Account and app data is stored with Supabase, an open source Postgres database and auth provider. Anywhere below that mentions "your account," that's where it lives.
If you use Scoler
Scoler runs real schools, so unlike the rest of this site, it does hold real information — names, birth dates, emergency contacts, attendance, signed consent forms — whatever a school genuinely needs. We built it so every one of those fields is optional unless a school actually requires it, every look at sensitive data is logged, and the person it's about is told when it happens (except when they're the one looking at their own). None of it is ever used for anything beyond running the school it belongs to.
- Payments go through Stripe. Your card never touches our servers — Stripe takes it directly, and we only learn that the payment went through.
- New school registrations may be checked by an AI model, to help catch obviously fraudulent signups faster. You can opt out, and a human reviews it instead either way.
- Email is sent through mailbox.org.
- School addresses are matched using OpenStreetMap, with Google Places as a fallback.
- Uploaded files (photos, forms) are stored in Cloudflare R2.
For the full detail, the source and its documentation are public at gitlab.com/mystiqa/scoler.
If you play Spoken Tongue
Spoken Tongue is free forever, for everyone, no matter their age — nothing to buy, nothing required to play. An account is entirely optional and asks for nothing but a username and a password; we never ask for your email or your real name. Signed out, your progress lives only on your device. Signed in, it syncs through Supabase so you can pick up where you left off.
To choose which animals you encounter, the game uses your approximate location (device GPS, or your general area from your IP address if you skip that) — only to pick a region, and never kept beyond that round.
We run no ads today. If that ever changes, it would only be for products or services we'd genuinely stand behind, never anything aimed at children, and never in exchange for selling or sharing your data — that part isn't negotiable, ads or not.
Your rights
Ask, and we'll show you, correct, or delete what we hold about you. Given how little most of this is, that's usually just a quick email.
Children
Spoken Tongue is built for and welcomes players of any age. Scoler handles minors' information too, but only as submitted by their school or guardian under the consent process described above — we don't collect anything directly from a child outside of that relationship.
A note on changes
If this page changes, we won't do it quietly. It lives in the same public git history as everything else we build, so you can always see exactly what changed and when.
Questions
Email us at aloha @ mystiqa.xyz or open an issue at gitlab.com/mystiqa. We'd always rather explain something than hide behind legal text.