Privacy Policy ยท iOS

Hanabi for iOS

This policy explains how Hanabi: Light Up the Sky ("Hanabi") handles information when you play. You do not need an account, and your game progress is saved on your device. The app shows ads, uses Google Firebase for analytics and remote configuration, and measures installs so we can understand how the game is found. On first launch, iOS asks whether Hanabi may track you; Apple's advertising identifier (IDFA) is used only if you tap Allow.

Last updated: September 22, 2026

Platform iOS Android

No Account

You can play without providing a name, email address, phone number, password, or login credential.

On-Device Saves

Nights cleared, unlocked fireworks, hints, brooms, and settings are stored locally so the game can continue where you left off.

Ads and Measurement

The app includes advertising, analytics, remote configuration, and install measurement. It asks for tracking permission through Apple's App Tracking Transparency prompt.

Information Handled by the App

Hanabi does not require an account and does not ask for your name, email address, phone number, precise location, photos, contacts, microphone, camera, or payment card details.

To provide the game, Hanabi stores game state and preferences on your device. This includes the night you have reached, in-game item counts such as hints and brooms, the fireworks you have unlocked, tutorials completed, music, sound, haptic and soft-fireworks settings, whether you have seen the first-launch privacy notice, and the level pack downloaded for your session.

Hanabi does not create its own player or device identifier. The services described below use identifiers that iOS or their own SDKs provide:

  • Identifier for Vendor (IDFV). An identifier iOS assigns to apps from the same developer on your device. It does not require tracking permission. The AppsFlyer and advertising SDKs may read it for measurement and fraud prevention.
  • Identifier for Advertisers (IDFA). Apple's advertising identifier. It is available to the app only if you allow tracking in the App Tracking Transparency prompt. If you do not allow tracking, iOS does not provide it. See App Tracking Transparency and the IDFA.
  • Firebase, AppsFlyer, and Meta identifiers. Random identifiers created by the Google Firebase, AppsFlyer, and Meta SDKs inside the app (an app instance ID, the AppsFlyer ID, and the Meta anonymous ID). Each is used by its own service to recognize the same installation.

Along with these identifiers, the services described below receive technical information about your device and the app: device model, operating system version, screen size, app version and build, language and region settings, time zone, network connection status, and the IP address your device uses to reach the internet.

Analytics

Hanabi includes Google Firebase Analytics. In the current version the app does not send its own gameplay events; Firebase records the events it collects automatically, such as the first time the app is opened, sessions and engagement time, app and operating-system updates, and in-app ad impressions once ads are shown. These are tied to the Firebase app instance ID, and to the IDFA only if you have allowed tracking. If a future version adds gameplay events, this policy will be updated first.

The app does not currently include a crash-reporting service.

Google processes this data as our service provider under the Firebase privacy documentation and the Google Privacy Policy.

Advertising

Hanabi is free to play and supported by in-app advertising. The app can show rewarded video ads that you choose to watch in exchange for an in-game reward, interstitial ads that appear between nights, and banner ads. Ad placement, frequency, and cooldowns may be controlled by remote configuration and can change without an app update.

Ads are delivered through AppLovin MAX, which mediates demand from several advertising networks: AppLovin, Google AdMob, Unity Ads, Vungle (Liftoff), DT Exchange (Digital Turbine), Mintegral, Pangle (ByteDance), BidMachine, and Bigo Ads. Some of these networks may not be enabled at a given time, but their software components ship with the app.

To select, deliver, and measure ads, these providers process device and usage information, which typically includes the IDFV, the IDFA if you have allowed tracking, IP address and the coarse location derived from it, device model and operating system, network and locale information, and your interactions with the ads shown (such as views, clicks, and completions). If you have not allowed tracking, iOS gives the networks no IDFA, and ads are measured with Apple's privacy-preserving SKAdNetwork attribution instead. We do not send them your game saves or your support email. AppLovin also reports the estimated revenue of each impression back to the app, which may be shared with the measurement services in the next section.

Each advertising network handles the data it receives as an independent controller under its own privacy policy, including AppLovin, Unity, and Google. AppLovin publishes the current list of its mediation and demand partners on its privacy page.

Install Measurement and Attribution

Hanabi uses two measurement services so that we can count installs, understand which advertising campaign or marketing channel a player came from, and measure advertising performance in aggregate.

AppsFlyer. The AppsFlyer SDK starts when the app launches. It receives the AppsFlyer ID, the IDFV, the IDFA if you have allowed tracking, IP address, device and app information, app launches, and, once ads are shown, ad impression revenue. AppsFlyer matches this against ad campaigns to attribute the install. While the tracking prompt is still unanswered, AppsFlyer holds its first report for up to 60 seconds so it can respect your choice. AppsFlyer processes this data as our service provider under the AppsFlyer Services Privacy Policy.

Meta (Facebook) App Events. The Meta SDK records app installs and activations, along with the app events it logs automatically, so that we can measure installs from ads we run on Facebook and Instagram. It receives the Meta anonymous ID, device and app information, and IP address. It collects the IDFA only after you allow tracking; until then, and if you decline, its advertiser-ID collection stays turned off. The app does not use Facebook Login and does not access your Facebook account. Meta handles this data under the Meta Privacy Policy.

Remote Configuration and Level Downloads

The app uses Firebase Remote Config to fetch settings such as which level catalog to use, how often new fireworks unlock, and, once ads are live, ad settings. Fetching configuration sends the Firebase app instance ID and basic app and device information to Google. If configuration cannot be fetched, the app falls back to the values built into the release.

When the configuration points to a newer level pack, the app downloads it from Google Cloud Storage and checks its integrity before installing it on your device. The download is an ordinary web request that includes your IP address; it carries no identifier and no game data.

App Tracking Transparency and the IDFA

Hanabi uses Apple's App Tracking Transparency prompt to ask whether it may track you. The prompt appears shortly after the app first opens and explains that permission "allows us to measure which ads bring players to Hanabi, so we can show you more relevant ones." You are asked only once; iOS remembers your answer.

If you tap Allow, the IDFA becomes available to Firebase, AppsFlyer, Meta, AppLovin, and the advertising networks it mediates. They use it to attribute your install to the ad campaign that led to it, to measure ad performance and revenue, and to show ads that may be more relevant to you. Combining data about you from Hanabi with data from other companies' apps, websites, or ad campaigns in this way is what Apple calls tracking.

If you tap Ask App Not to Track, or if tracking is restricted or turned off on your device, iOS does not provide the IDFA, and Meta's advertiser-ID collection stays off. The game works the same either way. Ads are still shown, and installs are still measured in aggregate through Apple's SKAdNetwork and with the IDFV, which is not used to track you across other companies' apps and websites.

Your Choices

  • Rewarded ads are optional. You choose whether to watch one. Interstitial and banner ads are shown automatically and cannot currently be turned off in the game.
  • Tracking permission. You can change your answer at any time in iOS Settings > Privacy & Security > Tracking by turning Hanabi off. Turning off "Allow Apps to Request to Track" on that screen declines tracking for all apps. You can also turn off Personalized Ads under Privacy & Security > Apple Advertising for Apple's own advertising.
  • Deleting the app. Deleting Hanabi removes your local game saves. Because there is no cloud save, this also removes your progress permanently.
  • Requests about your data. Email us to ask about, or request deletion of, data associated with your installation. Because we do not hold an account for you, tell us the device and approximate install date so we can work with our providers to find the right records.

No In-App Purchases

Hanabi does not offer in-app purchases. Hints and brooms are earned in the game and cannot be bought. The app does not handle payment information.

Support and External Links

When you tap Support, Hanabi opens your device's email app with a draft addressed to us. We receive only the information you decide to include and send. Your email provider processes the message under its own privacy terms.

The app may also open legal pages in your web browser, and tapping an ad will open a destination chosen by the advertiser. Once you leave the app, the privacy practices of the destination website and your browser apply.

How Information Is Used

Local game data is used only to provide game features: resume progress, keep your hints and brooms, remember unlocked fireworks, tutorials and settings, and play the downloaded level pack.

Analytics, advertising, configuration, and measurement data are used to operate and improve the game: to understand how the game is used, deliver and cap ads, measure ad performance and revenue, tune level pacing, count installs and attribute them to a marketing channel, and detect invalid or fraudulent activity.

Information you voluntarily send in a support email is used to answer your request, troubleshoot the issue, and protect the game and its players from abuse.

Sharing and Sale of Information

We do not sell or rent player personal information, and we do not share your game saves or support correspondence with advertisers. Data is shared only as described in this policy: with Google for analytics, remote configuration, and level downloads; with AppLovin and the mediated advertising networks to deliver and measure ads; with AppsFlyer and Meta to count installs, attribute them to ad campaigns, and measure revenue; when you choose to contact support; when required by law; or when necessary to protect rights, safety, and security.

Some privacy laws treat sharing device identifiers with advertising networks for personalized advertising as a "sale" or "share" of personal information. The simplest way to stop IDFA-based sharing is to turn off tracking for Hanabi as described in Your Choices.

Retention and Deletion

Local game data remains on your device until the app overwrites it during normal gameplay or you delete the app and iOS removes its local data. Hanabi does not provide cloud save, so deleting the app may permanently remove local progress.

Analytics and measurement data are retained by our providers only as long as needed for the purposes above, according to each provider's retention settings and applicable law, and are then deleted or aggregated so that they no longer identify a single installation.

Support emails are retained only as reasonably necessary to respond, keep support records, resolve disputes, and meet legal obligations. You may contact us to request deletion of information you previously provided through support, subject to applicable law.

Security

We use reasonable safeguards appropriate to the information handled by the app. Configuration, level downloads, and measurement reports are sent over encrypted connections, and downloaded level packs are checked against a fingerprint before they are installed. No storage or transmission method can be guaranteed to be completely secure, so please avoid including sensitive personal information in a support message unless it is necessary to resolve your request.

Children's Privacy

Hanabi is a general-audience puzzle game. It is not directed to children, and we do not knowingly collect personal information from children. The game has no account creation and no social features, but it does include advertising, analytics, and install measurement as described above, so it is not intended for use by children under the age at which consent is required in your country. If you believe a child has used the app or sent personal information to us through support, contact us so we can review and delete it where appropriate.

Changes to This Policy

We may update this policy when Hanabi changes or when legal requirements change. The latest version will be posted on this page, and the "Last updated" date will be revised. If a future release adds gameplay analytics, crash reporting, notifications, purchases, cloud saves, accounts, or another data service, this policy will be updated before that feature is released.