# Privacy and Data Use

Version: 2026-07-22.3  
Applies to: the included local browser build

This is a technical draft for public review. It is not legal advice and must be reviewed for the actual deployment.

## Data the local build uses

The mentor observes game actions needed for play and formative feedback: building, removing terrain, movement, jumping, selected material and shape, approximate in-world location, component attachment, assessment progress, and mentor lesson outcomes.

The build does not ask for or intentionally collect a name, email address, account, date of birth, school, student number, precise real-world location, voice, camera, contacts, race, gender, disability, income, or advertising identifier. It does not infer identity or protected attributes.

## Purpose

Action signals are used only to operate the game, select a bounded STEM concept, change support, assess the visible task criteria, and choose the next instructional challenge. They are not used to claim a real grade level, intelligence, diagnosis, or certified mastery.

## Storage and retention

- Runtime mentor state stays in browser memory for the current session.
- The build does not use cookies, `localStorage`, or `sessionStorage`.
- Pressing Enter creates a user-controlled `level.dat` download containing the world and local learning/audit state.
- Pressing B creates a non-identifying local concern-report download.
- Deleting those files and closing/reloading the page removes the product's local copy.

## Network use

The optional textbook lookup sends generic STEM topic terms to the English Wikibooks API over HTTPS. It does not send the action history, assessment record, `level.dat`, concern report, or an identifier. Returned text cannot control formulas, assessments, structures, or game actions; only allowlisted page metadata may be attached to a locally validated lesson.

## Sharing, sale, advertising, and model training

The included build has no analytics, advertising, sale, behavioral marketing, user account, server learner profile, or server-side model-training upload. The developer must update this policy before adding any deployment service that changes those facts.

## User control

The player can skip an AI mentor recommendation with V without an assessment penalty. The player can avoid saving by not pressing Enter or B. A deployed school version must provide the access, correction, deletion, consent, and school/parent controls required by the applicable law and contract.

## Children and student records

This draft does not by itself establish compliance with COPPA, FERPA, state student-privacy laws, or school policy. Any deployment involving children, schools, accounts, cloud storage, analytics, or education records requires an authorized adult/organization, qualified legal review, appropriate notices and agreements, and verifiable consent or school authorization where required.

## Contact and changes

Before public release, replace this paragraph with the developer organization's public privacy contact, effective date, revision history, and a method for privacy requests. Material changes must be announced before new collection begins.
