Skip to content

Privacy Policy

How dos.games handles your personal data. Last updated 3 June 2026.

dos.games(“we”, “us”) is a community-driven DOS-games preservation archive. This policy explains what data we collect, why, how long we keep it, and the choices you have. We collect the minimum needed to run the service and never sell your data.

The data controller is WEB RELIC LTD, G02, Eurocity, Gibraltar, GX11 1AA. For any privacy request, email andrej.mecir@gmail.com.

1. Data we collect

  • Account data. When you sign in with Google we receive your email address, display name, and profile picture URL. We store these to create and identify your account.
  • Profile & content. Anything you choose to add — username, bio, avatar, reviews, forum posts, collections, and files you upload (manuals, screenshots, save states, soundtracks).
  • Gameplay & usage. Play sessions, library entries, cloud saves you opt into, and basic moderation metadata (e.g. when an admin actions your content).
  • Technical data. Your IP address and request metadata are processed transiently for security, rate-limiting, and abuse prevention. We do not run third-party analytics or advertising trackers.

2. Cookies

We use essential cookies to keep you signed in and the emulator running, and optional preference cookies to remember your theme, audio, and key bindings. You control optional cookies from the consent banner; essential cookies cannot be disabled without breaking core functionality.

3. How we use your data

  • To provide and secure the service (authentication, abuse prevention).
  • To display your public profile and the content you publish.
  • To send in-app notifications about activity relevant to you.
  • To operate optional features you enable (cloud saves, multiplayer).
  • To comply with legal obligations, including DMCA processing.

If and when paid memberships launch, payment processing will be handled by a third-party processor (e.g. Stripe); we will never store your full card details. This section will be updated before any billing goes live.

4. Legal bases (GDPR)

For users in the EEA/UK we process data under: contract (to provide the account you signed up for), legitimate interests(security, abuse prevention, running the community), consent(optional cookies and features), and legal obligation (DMCA and lawful requests).

5. Sharing

We do not sell your data. We share it only with infrastructure providers that host the service on our behalf, and with authorities where legally required. Content you publish (reviews, posts, public collections, profile) is, by design, visible to other users and search engines.

6. Retention

We keep account data while your account is active. When you delete your account we remove your personal data and detach or delete your content, except where we must retain limited records to comply with the law or resolve disputes. Transient technical data (e.g. rate-limit counters) is short-lived.

7. Your rights

You can access, correct, export, or delete your personal data, and object to or restrict certain processing. You can edit most data from your profile and account settings, or contact us to exercise any right. EEA/UK users may also lodge a complaint with their local supervisory authority.

8. Security

We protect the service with HTTPS, a strict Content-Security-Policy, write-time sanitisation of user content, scoped permissions, and an admin audit trail. No system is perfectly secure, but we work to keep your data safe.

9. Children

The service is not directed to children under 13 (or the minimum age in your jurisdiction). We do not knowingly collect their data.

10. Changes & contact

We may update this policy; material changes will be reflected by the “last updated” date above. Questions or requests: andrej.mecir@gmail.com. See also our Terms of Service and DMCA policy.

This document is a good-faith plain-language policy and not legal advice; have it reviewed by counsel for your jurisdiction before relying on it commercially.