Effective date: June 27, 2026 · Last updated: July 7, 2026
This Privacy Policy describes how Marinly, LLC ("Marinly," "we," "us," or "our") collects, uses, and protects your information when you use Obingo ("the App"). By using the App — whether as a registered user or a guest — you agree to the practices described here.
Account information (registered users)
When you sign in via Google or Apple, we receive your name and email address from that provider. When you register with email and password, we store the email address and a securely hashed password. We use this to identify your account.
Guest identity
Guests are identified by a UUID stored in your browser's localStorage. We do not collect any personal information from guests.
Game data
Games you create or join, custom prompts you write, bingo cards generated for you, events you record, stakes you set, and game results.
Technical data
IP address, browser type, and device type. Collected automatically when you use the App.
We do not sell your personal data. We share information only with the following service providers:
Supabase
Database, authentication, and file storage. Stores all game data and user accounts.
Vercel
Hosts and serves the App.
When you sign in with Google OAuth, your basic profile (name and email) is shared with us by Google.
Apple
When you sign in with Sign in with Apple, your name and email address are shared with us by Apple.
We may disclose information if required by law or to protect the rights and safety of Marinly, our users, or the public.
We use cookies to maintain your login session (registered users) and localStorage to store your guest identity and saved game references. Essential storage is required for the App to function. We do not use advertising or tracking cookies.
We retain your data for as long as your account is active or your guest session exists. Registered users can permanently delete their account at any time from Profile → Delete Account, or by emailing us (see Contact below). This removes your profile and saved prompt library; games you've played remain visible to other participants but are no longer linked to your account. Guest data stored in localStorage can be removed by clearing your browser.
We protect your data using TLS encryption in transit and encrypted storage at rest via Supabase. Game data is scoped to private invite links — no game is publicly discoverable. If you discover a security vulnerability, contact us at john@marinly.com immediately.
California residents may have additional rights under the CCPA. Contact us to make a request.
The App is not intended for users under 13. We do not knowingly collect personal data from children under 13. If we become aware of such data, we will delete it immediately.
We may update this Privacy Policy from time to time. Material changes will be communicated via a notice in the App. Continued use after notice constitutes acceptance.
For privacy questions or data requests:
john@marinly.com
Marinly, LLC · California, USA