Effective date: 6 October 2026. Zai Serhii, Ukraine, is responsible for the processing of Power System Lab data. For privacy and support requests, contact support@powersystemlab.net.
Account, learning and games
Registration asks for a name, email address and password. A name is required, but the app does not verify a legal name; a telephone number is optional. The server stores your profile information, account identifier, language, learning-goal and time-zone settings, creation date and accepted document revisions. Passwords are stored as salted hashes, not plain text. The device keeps the sign-in token in Keychain; the server stores its hash and expiration.
The native app receives materials and saves changes through a secured API. The server stores your learning route, available and completed stages, answers and attempts, results, answer drafts and position within a lesson. Practical tasks transmit selected actions, connections, parameters and virtual-instrument answers needed to check and resume the task. This is a learning simulation: the app does not read actual vessel equipment measurements.
For Match-3 and crosswords, the server stores game sessions, level, board state, moves, entered letters, hints, results and progression. For missions, watch scenarios and repairs it stores stages, selected checks and actions, answers, parts acquired with game rewards, and the state of your learning vessel and fleet. Coin and star balances and reward history are linked to your account; these rewards are not money. The server also stores your chosen character, uniform and interface, sound and animation settings. The character appearance describes a game avatar, not verified demographic information about you.
These records let you resume at the relevant stage on another device, check answers and game rules, award rewards and prevent duplicate awards. Account-linked learning records are also used for our own activity and task-quality statistics. The app has no peer messaging or publication of user photos. The Knowledge Tower leaderboard is described below.
Knowledge Tower and Name the equipment
In Knowledge Tower, the app sends container placement accuracy for score calculation. The server stores the account-linked run ID, start and finish times, score, number of containers and result checksum. Weekly and all-time leaderboards are available to other signed-in users with access to the game. The leaderboard API returns the game alias, profile icon, separate public identifier, score, number of containers and position; it does not include email, phone number or the name from the private account profile.
A new gaming profile receives an automatically generated alias and is visible in the leaderboard by default once it has a result. An existing gaming profile keeps its alias, icon and visibility setting; hidden or excluded profiles do not appear in standings. You can hide another player from your view or report their name through the leaderboard row menu. The server stores the blocking relationship and report with the sender, participant, reason, time and handling status. An administrator can reset an inappropriate name or exclude a profile. Contact support about your own alias or visibility. Hiding a row from your view does not delete the original result.
In Name the equipment, the app stores question identifiers, the first selected answer and mastery after revision for your account. These records sync through the API when connected; the current question position is stored locally. Equipment photographs are bundled educational materials, not user photos; this game does not request camera or photo-library access. Its results are not published in a leaderboard and do not award learning XP. Both games' records belong to account data, are included in account export and are removed upon account deletion under the rules below. There is no separate automatic deletion period for completed game records.
Local tools, cache and sharing
Calculators, standalone learning models and sounds run on the device; values entered in a standalone calculator are not automatically uploaded. Answers and model state within a server-backed lesson are saved as described above. Vessel clocks, entered names, selected time zones/offsets and favorite tools are stored locally for your account and synchronized with the server in versions supporting this feature. The device time zone may supply an initial value; GPS is not requested.
The device stores received learning data and progress for quick opening, task drafts, preferences and the history of interesting facts shown. Cache and drafts are separated by account; a local copy does not replace a server save. New answers, game actions and up-to-date state require a connection. Native drafts have no separate automatic expiration; they are removed by the relevant cleanup or account sign-out. Some ordinary local preferences and files may be included in an iOS backup according to your device settings. The app excludes support draft files from that backup.
Share opens the system sharing options. The app provides prepared text or a learning-material link to the service you choose; your recipient and that service may process it under their own rules. These functions do not request access to your address book, camera or microphone. Sea ambience and sound effects play from the app; your voice or surroundings are not recorded or uploaded.
Support and content issues
At your request, the app sends your message and its category with your account identifier. The server stores the request, support reply, status and processing dates. The current native support center does not automatically attach screenshots, photos or files. Level or task details you enter become part of your request.
An unsent support draft remains on your device. Do not include passwords or information unnecessary for your request. In older versions, a task issue report may include context shown before submission: topic, step, content revision, language, selected answer or virtual-instrument settings. If you contact us by email, the message and reply are processed by the mail services described below.
Password recovery and security
A recovery request processes the email entered, language, a technical request identifier and attempt/delivery records. For an existing account, a service email contains a one-time code valid for 15 minutes. The new password is not included in the email. Successful recovery revokes previous sign-in sessions while retaining learning history.
The delivery queue temporarily contains the recipient, subject and message. After a delivery attempt or cancellation, the message body is cleared from the application's queue, but recipient, status and time records may remain. Copies held by mail services and in your mailbox have separate retention periods. Code expiry does not mean all email records are deleted after 15 minutes.
The server uses IP addresses and technical request information to protect sign-in, limit abuse and operate the service. This information may be retained in security records and server/mail logs. The current app does not use it to determine your location or for advertising tracking.
Data from earlier versions
The current app provides a learning route, vessel, games and tools. Its navigation does not include the former regular tests, ranking or On board section. Previously saved answers, results, bookmarks, XP and ranking records may remain in your account and be processed by supported older clients. Removing a tab does not itself delete previously created data. If you used an earlier version, retained data may include vessel and equipment names, work notes, deadlines and statuses, change history, uploaded photographs/documents and handover information: sender, recipient email, message, a snapshot of shared materials and receipt acknowledgement. These records are associated with the relevant accounts. Older supported clients and handover-receipt pages may still access the server feature.
A recipient previously selected by you may have accessed the materials. Their downloaded or imported copies are not automatically deleted with your record. Contact us about access to, obtaining or deleting historical data. This policy does not promise that the old journal or handover-sending interface is available in the new app.
Purposes and recipients
Data is used for your account and security, learning routes and practical tasks, saved games and missions, virtual repairs and rewards, personalized resumption of learning, task statistics, support, service email and the handling of earlier records. Where the GDPR applies, data necessary to create an account and provide requested functions is processed to perform the service agreement. Abuse prevention, support operations and quality improvement rely on the operator's legitimate interests in a secure, functioning and useful service, balanced against your rights and interests. Where law requires consent for particular processing, it must be obtained separately; processing necessary to comply with a legal requirement relies on that legal obligation. Accepting this policy does not replace separate consent where required.
Hetzner Online GmbH hosts the application server, working database and incoming mailbox in Nuremberg, Germany. Outgoing service email and email replies pass through Resend (Plus Five Five, Inc.), which receives the recipient address and message content. Resend stores messages and delivery logs in the United States; an EU sending region does not change the storage country. Its published Data Processing Addendum includes EU Standard Contractual Clauses for international transfers. Providers use subprocessors for infrastructure and service protection; details and safeguards are available at https://resend.com/legal/dpa, https://resend.com/legal/subprocessors and https://docs.hetzner.com/general/company-and-policy/data-protection-at-hetzner/.
Authorised administrators can access server records for operation, support and moderation. Using system sharing or an earlier material handover discloses the shared data to the recipient you select. The recipient's mail services may process the message under their own rules.
The app has no advertising, advertising tracking or external AI integration for learning, checking answers or handling support requests. This does not mean that mail providers never use automated protection systems on messages passing through their services.
Retention, deletion and your choices
Profiles, learning and game progress, answers, results, support requests and earlier vessel records are retained to operate the account and related functions until deletion through the applicable procedure. Inactivity alone does not delete an account. Inactive accounts, email correspondence, technical delivery metadata and the deletion ledger have no single automatic cleanup deadline: without a request or cleanup action, records may remain without a predetermined end date. Deletion decisions consider the requested service, security and prevention of restoration, unresolved requests and mandatory legal requirements. A recovery code is valid for 15 minutes; this is not a general email-retention period.
Server web logs keep the current file and up to 14 archives with daily rotation; mail logs keep the current file and up to four archives with weekly rotation. Empty files do not rotate, so these are not guaranteed 14- or 28-day limits. The system journal has a 200 MB size limit without a single calendar deadline. Older records are displaced according to the relevant log's rotation rules.
You can request account deletion in account settings, available from Profile or the subscription screen by confirming your password. This removes the account and linked records from the working database and registered application snapshots; the app separately clears this account's local data after confirmation of the operation. A technical deletion ledger retains the deleted account identifier and date to prevent records reappearing after restoration. It is not anonymous statistics.
On a successful daily run, application and mail backup scripts remove directories older than seven days. Account deletion does not immediately erase independent email copies or infrastructure images: mailbox contents are not automatically cleared by that action. Snapshots known to the app are scrubbed by the deletion procedure; other copies need separate handling, deletion or expiry under their retention rules. Application database recovery uses the current deletion ledger to prevent deleted accounts from reappearing.
Resend's published rules retain email and logs for 30 days on Free, Pro and Scale plans, and backups for seven days; Enterprise arrangements may differ. After the Resend account's service is terminated, remaining customer data is deleted within 90 days. These are provider periods, not a deadline for deleting a Power System Lab account or all our records; your own mailbox has separate rules. Current terms: https://resend.com/security/gdpr.
Signing out is different from account deletion: it clears the token and network cache, but some local preferences and drafts remain separately for that account. Resetting learning progress also does not delete the account. Email support@powersystemlab.net to request access to and a copy of your data, correction or deletion. Where applicable law provides for them, you may also request restriction, object to processing, request portability and complain to a competent data-protection authority. If processing relies on consent, you may withdraw it without affecting the lawfulness of earlier processing. Requests are handled within the time limits required by applicable law. Where there are reasonable doubts, proportionate identity verification may be needed to protect the account and handle the request.
Additional terms and changes
The app is designed for professional maritime learning. It does not request a date of birth or verify the user's age. The App Store age rating describes the app's content and does not replace age verification or parental consent where required by law. Parents or representatives can contact support@powersystemlab.net about the unlawful collection of a child's data.
A new policy version is published on this page and is available in the app's documents section; its date appears at the beginning. If a change of processing purposes or conditions requires additional notice or consent under applicable law, that notice must be provided or consent obtained before the processing.
App notifications
In versions supporting remote notifications, you can separately enable support messages in app settings and allow them in iOS. To deliver them through Apple Push Notification service (APNs), the server stores a device token, a random installation identifier, and its association with your account and current session. Apple receives the token and notification content. These identifiers are used for the requested delivery feature, not advertising or cross-app tracking. Disabling messages or signing out requests removal of this association; the server needs a network connection to process that request. Previously sent messages may remain in the iOS Notification Center. Sending jobs expire after 24 hours; message content and technical statuses remain in account history until account deletion or a separate cleanup. Local study reminders in versions supporting them operate separately.
Subscriptions and purchase information
The main features of the native Power System Lab app and web account require one active account subscription after sign-in, both in iOS and at https://powersystemlab.net/app/ and https://powersystemlab.net/lab/. This applies to all users, including existing accounts. Purchases are made only through Apple inside an iOS app version that supports purchases. Apple processes payments and automatic renewals through the App Store. Power System Lab does not receive your payment card number, CVV or bank account details. The price, currency and period are displayed before Apple purchase confirmation. Apple determines the Apple Account’s eligibility for a 3-day introductory free trial, available once for this subscription group. Power System Lab uses Apple’s verified subscription status for access during trial and paid periods; a new Power System Lab account does not create a new eligibility entitlement. Signing in, registering or enabling the subscription requirement does not itself authorize a charge or start a purchase.
To verify and restore access, the app sends Apple-signed purchase information to our server. The server verifies the signature and requests the current subscription status from Apple. It also receives signed Apple notifications about subscription changes and reconciles them with Apple's current state. Purchase notifications are separate from APNs support messages.
We link your account to a random appAccountToken shared with Apple at purchase, the original transaction identifier, product identifier, purchase environment, access expiry and status, automatic-renewal state, verification time and the timestamp of signed information. These records provide access, restore a purchase, handle renewal, cancellation, refund and revocation, support users and prevent use of a purchase by unrelated accounts. They are not used for advertising tracking. The current subscription table stores the latest state; it is not a complete history of all Apple charges. When you sign into the web account, the server uses the same verified entitlement for that account without a separate web purchase. The web account does not ask for card details or an Apple password.
Subscription records are stored with your account in our database hosted by Hetzner. The implementation has no separate automatic retention period for them. Account deletion removes the associated appAccountToken and subscription records from the working database and registered application snapshots through the general deletion procedure. The retained technical deletion ledger contains the deleted account identifier and date, not a complete payment history. The rules above apply to other backups. A delayed Apple notification does not recreate a deleted account.
Apple independently retains and processes its payment records: https://www.apple.com/legal/privacy/ . Deleting a Power System Lab account does not cancel an App Store subscription or delete Apple's records. Before deletion, cancel at https://apps.apple.com/account/subscriptions if you do not want further charges. Immediate account deletion remains available with an active subscription. Deletion removes the purchase's link to the former account; automatic transfer of that purchase to a new Power System Lab account is not provided. Contact support@powersystemlab.net about restoring access instead of purchasing again to resolve an error.
Separate web account and browser storage
This section applies only when you visit the web account in a browser. The native iOS app does not use WebView or browser pages for its screens. The website and app use one account. Web sign-in uses an essential secure HttpOnly cookie; page code cannot read the token. The browser stores the selected language, a pending sign-out marker, and account-scoped sound preferences, support and reminder drafts, favourite tools, ship clocks, learning preferences and changes awaiting synchronization. These records do not prove paid access. In the updated web account, learning sections and access checks require a server connection; access to those sections closes when the connection is lost. Sign-in, password recovery, account management, support and deletion also require a connection, but not a purchase.
On startup, the updated web account removes former local account and learning-page snapshots and old application offline caches. Its Service Worker is network-only and does not save offline copies of pages or learning images. Ordinary browser HTTP caching of public files does not verify or extend a subscription. Sign-out clears the current account’s local records; general preferences such as the website language may remain. No advertising or analytics cookies are used. A web study reminder can be added to a calendar you choose; PDFs are saved through browser printing. iOS-specific functions, including APNs delivery and Apple purchases, run in the app.