PRIVACY POLICY &
DATA PROTECTION STATEMENT
Panixircus Entertainment • DreamCipher Service Scope
Legal Entity & Scope: This Privacy Policy applies to the DreamCipher application, web interfaces, and entertainment services operated by Panixircus Entertainment, an entertainment and interactive AI publishing division of VECTIXORE LTD.

Data Controller: VECTIXORE LTD (Company No: 16999592)
Registered Office: 71-75 Shelton Street, Covent Garden, London, WC2H 9JQ, United Kingdom
Data Protection Contact: info@vectixore.com

1. DATA PRACTICES & ARCHITECTURE (DREAMCIPHER)

Panixircus Entertainment operates under strict data minimization principles. DreamCipher is designed for symbolic narrative exploration and entertainment; it does not collect identity documentation, government IDs, or sensitive biometric facial profiles.

1.1. Account Architecture & Anonymous Access

DreamCipher primarily implements Firebase Anonymous Authentication. By default, users interact with the service without providing email addresses, real names, or phone numbers. A randomized, alphanumeric User Identifier (UID) is generated locally to persist application preferences and token counters.

1.2. Account Linking & Cloud Backup (Optional)

Users may elect to associate their anonymous session with a Google Account via OAuth. When initiated, Vectixore LTD processes your basic provider-supplied identifier and verified email address strictly to synchronize session history and restore in-app entitlements across devices. We do not engage in behavioral cross-profiling or data brokerage.

1.3. Dream Text & AI Analysis Cascade

When you submit narrative text for interpretation:

1.4. In-App Currencies, Energy & Virtual Goods

DreamCipher monitors daily usage tiers, optional rewarded access tokens, and virtual consumable credits (e.g., energy/stamina tokens) using RevenueCat and standard app-store billing APIs.

1.5. Safety, Reporting & Model Auditing

If an interpretation is flagged via the in-app reporting tool, the underlying dream fragment, AI generation output, and reporter's categorical reason are retained in an isolated administrative safety log for model quality auditing and abuse mitigation.

1.6. Diagnostics, Analytics & Advertising Infrastructure

1.7. Minor Safety & Age Assurance Compliance

In adherence to the UK Age Appropriate Design Code, the UK Online Safety Act, and the Brazil Digital Child and Adolescent Statute (Digital ECA):

2. DATA SUBJECT RIGHTS & GOVERNANCE

Under the UK GDPR, EU GDPR, and applicable global data protection frameworks, you maintain enforceable rights regarding your personal records:

⚠ SYSTEM AUDIT REGISTRY NOTE

Cryptographic integrity records, such as mathematical SHA-256 hashes generated to record server timestamps or verify receipt generation, represent irreversible mathematical digests. These strings contain no reconstructible dream text and may be retained in administrative ledgers to combat billing fraud and preserve accounting integrity under legal obligation exceptions (GDPR Art. 17(3)(b)(e)).

2.1. Jurisdiction & Supervisory Authority

This privacy architecture is governed by the laws of England and Wales. You maintain the right to lodge inquiries directly with the United Kingdom Information Commissioner's Office (ICO) or your territorial data supervisory authority.

2.2. Contacting the Controller

Formal inquiries or Data Subject Access Requests (DSAR) must be addressed to:

ACCOUNT & DATA DELETION

In accordance with global privacy regulations and Google Play policies, users have the right to request the permanent removal of their accounts and associated application data.

Go to Data Deletion Request Form →

* Notice: Submitting a data erasure request permanently revokes access to historical journal logs and forfeits accrued virtual energy tokens.

3. COOKIE & LOCAL STORAGE NOTIFICATION

On web endpoints (including panixircus.vectixore.com), we utilize client-side storage technologies (Local Storage, Session Storage, and operational cookies) solely to retain UI themes, language selections, and consent tokens. We do not deploy cross-site tracking cookies across our web interfaces.