Privacy, in plain language
Privacy Policy
Effective July 19, 2026 · Last updated July 19, 2026
1. Introduction
Build Heartopia is a fan-made guide, item database, and community resource for Heartopia. It is not affiliated with, endorsed, sponsored, or specifically approved by XD Entertainment Co., Ltd. This policy applies to build-heartopia.com.
2. Information visitors provide
You can browse without an account. The feedback form accepts a report type, title, details, and optional bug or error steps. It does not request a name or email address. Do not include sensitive personal information in free text.
3. Bug reports, feedback, and suggestions
Submitting the form creates a private ticket containing your text, a random submission key, page or catalog context, and available browser and device diagnostics. Diagnostics include browser, platform, languages, timezone, device and screen details, connection state, accessibility preferences, cookie-capability status, and a same-site source page. The form has no file upload and cannot send a reply.
4. Information collected automatically
Web-server and hosting infrastructure may receive routine request data such as IP address, time, requested URL, status, referrer, and user-agent. When feedback is submitted, the application converts the request IP address to a keyed one-way hash for abuse controls. No analytics, advertising, session-replay, error-reporting, or performance-monitoring service runs in the current public app.
5. Browser storage and favorites
Favorites are item IDs stored in localStorage under build-heartopia:guest-favorites:v1. They stay on your device and are not transmitted to Build Heartopia. Search and filter state is not kept as saved search history.
7. How information is used
Information is used to deliver the site, save favorites locally, review feedback, diagnose problems, limit abusive submissions, and protect and improve Build Heartopia.
8. Third-party service providers
Hosting infrastructure delivers the site and runs the private feedback database. Quicksand loads from Google Fonts, so your browser sends Google normal HTTP request metadata. Google states that Google Fonts requests are unauthenticated, do not set or log cookies, and do not log IP addresses. No active CAPTCHA, email, upload, advertising, social-widget, or embedded-video provider was found.
9. Data retention
Favorites remain until removed or browser data is cleared. The feedback service has no automatic deletion schedule for tickets, diagnostics, submission keys, or the IP-derived hash stored with a ticket; those records remain until manually removed. Separate rate-limit attempts are pruned after 48 hours as later submissions are processed. Server-log and backup retention is not confirmed.
10. Data sharing
Feedback tickets are private and handled through the site’s infrastructure. Submitted feedback is not sent to Google. Information may be disclosed when reasonably necessary to comply with law, protect people or the site, investigate abuse, or complete a service transfer.
11. Sale and targeted advertising
Build Heartopia does not sell or rent personal information, use submitted feedback for targeted advertising, show ads, build advertising profiles, or track visitors across unrelated websites.
12. Data security
Build Heartopia uses HTTPS, same-origin submission, validation, size limits, origin checks, and private server-side storage. No transmission or storage method is completely secure.
13. Children’s privacy
Build Heartopia is a general fan resource and is not intended to knowingly collect personal information from children under 13. Children under 13 should not submit the feedback form.
14. International visitors
If you submit feedback from another jurisdiction, it is processed where the site’s infrastructure operates and may be subject to different laws. Global availability alone does not make every regional privacy law applicable.
15. Privacy choices and deletion requests
You may remove favorites or clear site data, browse without an account, and choose not to submit feedback. To request deletion of a feedback ticket, use the feedback form and include the BH-###### ticket reference.
16. External links
Other websites have their own privacy practices. Review their policies before providing information.
17. Changes to this policy
Updates will be posted here with a revised Last updated date.
18. Contact information
A dedicated reply-capable privacy email is not yet configured. Until one is supplied, use the feedback form, select General feedback, and begin the title with Privacy request. The form provides a ticket reference but cannot send a reply.
19. Effective date
This policy is effective July 19, 2026 and was last updated July 19, 2026.