Roomrot: Infected Walls
Privacy Policy
Last updated 12 September 2026 · Elixor Apps · support@roomrot.com
The short version
- The game never receives images from your headset's cameras. It cannot: it does not use the Passthrough Camera API at all.
- Your room scan never leaves your device. Not its dimensions, not its furniture labels, not its shape.
- Your progress is a file on your headset, and nothing in it identifies you.
- The game asks Meta for two things about your account: your user ID, used only to mark which row of the leaderboard is yours, and your display name, which is the name beside your score if you play the daily challenge. Nothing else about your profile is read.
- Four things involve Meta's platform: whether your account owns the game, one achievement, the daily leaderboard, and anonymous per-round counts. Here is how to have any of it deleted.
- No ads, no advertising identifier, no third-party analytics, no crash-reporting SDK, no account with us, nothing sold to anyone.
01Who this is
Roomrot: Infected Walls is made and published by Elixor Apps, which is the data controller for anything described here. Write to support@roomrot.com about any of it.
This policy covers the Roomrot application on Meta Quest. It does not cover Meta's own platform, which is governed by Meta's privacy policy, or this website beyond what section 12 says.
02What the game keeps on your headset
One save file, written locally. It holds:
- your best score for each infection type and each challenge;
- daily challenge results, your streak and your best streak;
- which abilities, infection types and challenge groups you have unlocked;
- career totals — rounds played and roots ripped;
- whether the first-round lesson, the gesture prompts and the trial milestone have already happened;
- your settings: volumes, which hand is dominant, and how the room is drawn.
Nothing in that file identifies you, and none of it is transmitted to us. It is removed when you uninstall the game. If you have Meta's app-data backup switched on, the file may be included in that backup, which is Meta's service and subject to Meta's policies.
03Your room
Roomrot reads the room scan your headset already holds — surfaces, dimensions, and the furniture labels you assigned during Space Setup — through Meta's Scene system. It uses them to decide where growth spreads and where roots hide, in memory, for the length of a round.
None of it is transmitted, stored by us, or included in any analytics event — no dimensions, no labels, no positions, no counts. That is enforced in the code rather than promised: the analytics call the game makes has no field a location could travel in.
The game has no access to your cameras. Meta's Passthrough Camera API, which would give an app the actual camera images, is not used anywhere in Roomrot. The game sees a geometric description of your room and never a picture of it.
04What the game collects about your Meta account
Roomrot has no servers, no account of its own and no sign-up. To run the Meta Horizon platform features in section 5, it asks Meta's Platform SDK for two pieces of data about the account signed in to the headset. These two are what our Data Use Checkup declares, and they are the only ones the game requests.
-
User IDUSER_ID
The numeric identifier Meta assigns to your account. The game reads it once per launch, immediately after the ownership check. It is used for exactly one purpose: marking which row of the daily leaderboard is yours, so that you can find yourself in the list. It is read for the leaderboard and for nothing else — the ownership check and the achievement in section 5 need no identifier from the game at all. It is held in memory while the game is running and discarded when you close it. It is never written to the save file, never attached to an analytics event, and never sent to us — we operate no server that could receive it. -
User ProfileUSER_PROFILE
The public display name on your Meta account, and nothing else on your profile: not your profile picture, not your friends, not your age, not your email address. It is used for exactly one purpose: putting a name beside a score on the daily leaderboard. Yours is submitted with your score when you complete a daily round; the display names of other players are read back from Meta when you open the board, and drawn on screen. We store neither — the board is Meta's, and it is read afresh each time it is opened.
Both are supplied by Meta and are also processed by Meta under Meta's own privacy policy. Neither is shared with, sold to or disclosed to any third party by us, and neither is used for advertising, for profiling, or for any purpose other than the one named against it above.
05The four platform features, and what each one uses
Everything below goes to Meta's platform. Nothing goes anywhere else, because there is nowhere else to go.
- Ownership check — no data collected. At launch the game asks Meta whether the account signed in owns this copy, which is how a paid app confirms it was paid for. The game handles no identifier in order to ask: Meta answers yes or no about whoever is signed in, and the answer is not stored.
- One achievement — no data collected. Completing your first round unlocks a single achievement. The game names the achievement and nothing else; Meta attaches it to the account signed in. It is also what ends the free trial, if you started the game as a trial.
- The daily leaderboard — uses your user ID and your display name. Completing the daily challenge submits your score to two Meta-hosted boards: today's field, and a rolling thirty-day total. This is the one place anything identifying you leaves your device. Endless and the sixteen challenges are never submitted anywhere, and a round you leave or restart is not submitted either. If you would rather not appear on a board, do not play the daily; every other mode is unaffected.
- Gameplay analytics — numbers only. One record per round: roots ripped, area-clears spent, wave reached, how much of the room was covered at the end, score, whether the trial milestone fired, how many unlocks the round opened, and which mode it was. The game attaches no identifier of any kind to it, and it carries no free text, because the game has no text field. Meta's analytics is part of the platform and is associated with the account on Meta's side; what reaches us is aggregate reporting only — counts across all players — and never a record belonging to a person. Nothing about your room, in either case.
06What Roomrot deliberately does not do
- No advertising network, no advertising identifier, no ad attribution.
- No third-party analytics and no crash-reporting SDK. Unity Analytics, Unity Ads, Performance Reporting, Insights and Cloud Diagnostics are all switched off, and the build fails if any of them is turned on.
- No account, no sign-up, no email address collected, no newsletter.
- No sale or sharing of personal information, in the sense those words carry under the California Consumer Privacy Act. There is nothing to sell and no arrangement to sell it under.
- No microphone, no contacts, no location, no other app's data.
07Why we are allowed to process it
For players in the EEA and the UK, the legal bases are:
- Contract. The ownership check and the achievement exist to deliver the game you paid for. Meta makes both against the account signed in; the game handles no identifier for either.
- Contract, at your initiative. A leaderboard entry is created because you chose to play the daily challenge. If you would rather your display name did not appear on a board, do not play the daily; every other mode is unaffected.
- Legitimate interests. The per-round numbers tell us how the game is actually played, which is how it gets fixed and balanced. They are counts of events rather than facts about a person, and they carry nothing about your room or your identity.
08How long it is kept, and how to have it deleted
To have your data deleted, email support@roomrot.com with the subject line “Data deletion” and the Meta display name that appears on the leaderboard. That is the whole mechanism: no form, no account to close, nothing to prove. We act and reply within 30 days, and we tell you what was removed. The same address answers a request to see what we hold about you, to have it corrected, or to exercise any right in section 9.
What there is to delete, and how long each thing lasts if you do nothing:
- Your user ID: nothing to delete. It is never stored — it exists in memory while the game is running and is gone when you close it.
- Your display name and score on a leaderboard: kept until you ask for them to be removed, or until the board is retired. This is what a deletion request acts on, and we remove the entry from both boards.
- The save file on your headset: until you remove it. Uninstall Roomrot, or clear the app's data in your headset's settings, and it is gone. It holds no identity and it never left the device, so there is nothing here for us to delete on your behalf.
- The achievement, and the analytics Meta aggregates: held by Meta under Meta's own retention rules. We will remove the achievement on request; data Meta holds about you as an account holder is reached through Meta's own account tools, and by deleting your Meta account if you wish to go that far.
Asking costs you nothing else. The game you bought keeps working, and you are not treated differently for having asked.
09Your rights
EEA and UK. You have the right to access, correct, erase, restrict and object to processing, the right to data portability, and the right to complain to your national supervisory authority.
California. You have the right to know what is collected, to delete it, to correct it, to opt out of sale or sharing — neither of which happens — and not to be treated differently for exercising any of them.
Everywhere. Whatever your jurisdiction, the same address answers: support@roomrot.com.
10Children
Roomrot is not directed at children under 13, and we do not knowingly collect anything from them. Meta's own minimum age requirements for a Meta account apply, and the game is a standing, room-scale experience intended for adults and older teenagers.
11Where the data goes
We operate no servers and store nothing ourselves. Meta processes the data described in sections 4 and 5 in the United States and in other countries where it operates, under the transfer mechanisms set out in Meta's own privacy policy.
12This website
roomrot.com serves static pages. It sets no cookies, runs no analytics and no trackers, and asks for nothing. Fonts are loaded from Google Fonts, which receives the request your browser makes for them; if that matters to you, the pages are readable without them. Your host's server logs are the usual ones.
13Changes
If this policy changes, the date at the top changes with it, and anything material is described rather than quietly edited in.