Skip to content
Poke Party
RaidsFind friendsHow it worksPricingTrainer toolsMy accountSign in
Sign in

Legal

Privacy Policy

How 1990Company collects, uses, shares, and protects information when you use Poke Party.

Effective date
2026-09-12
Last updated
2026-09-12
Operator
1990Company
Contact
privacy@1990.company

1. Scope and controller

This Privacy Policy applies to Poke Party, operated by 1990Company at 601, 7, Cheonjung 1-gil, Dongnam-gu, Cheonan-si, Chungcheongnam-do, South Korea. 1990Company is responsible for the account, trainer, raid, friend-listing, consent, and privacy-request information described below.

For privacy questions or requests, email privacy@1990.company. For account, service, or purchase support, email support@poke.party.

2. Information we collect

  • Account and sign-in information: account identifier, email address, verification status, sessions, one-time sign-in-code records, and—if you choose social sign-in—the provider account identifier and authentication tokens needed to keep that connection working.
  • Service-country information: the country you confirm so we can route data and provide the right service experience. Interface language does not choose where your data is handled.
  • Trainer information: Trainer name, Trainer Code, level, and team. Your Trainer name is the name shown in raid rooms and sharing previews.
  • Friend listings: the Trainer name, Trainer Code, country, language, activity pattern, friendship purposes, refresh time, and expiry that you choose to publish.
  • Raid information: room settings, an optional public gym name, public or link-only visibility, public or private game-lobby mode, remote, in-person, or mixed attendance mode, each participant’s selected join method, host and participant roles, readiness and invitation progress, Trainer-name snapshots, an optional three-Pokémon game lobby code, and acknowledgement records needed to operate a room.
  • Raid-schedule checks: when you choose to report whether an active boss is visible in Pokémon GO, we keep the schedule, selected service country, present-or-absent choice, UTC date, and your account reference. We do not collect a coordinate or precise location for this check.
  • Optional screenshot assistance: up to two trainer screenshots and the extracted profile suggestions. The images are processed for that request and are not saved in Poke Party application storage. Only values you review and submit are saved to your profile.
  • Uploads and safety information: upload metadata and private files you intentionally submit for profile, verification, reporting, moderation, or support features when those features are available.
  • Purchase information: for an existing purchase, or when checkout is available, Poke Party receives offer, checkout, order, transaction, subscription, refund, and access-status identifiers from Creem. Poke Party does not receive or store your full card or bank-account details.
  • Privacy-request information: the request type and status, verification and response dates, temporary export location, and completion reference.
  • Optional marketing information: whether and when you chose to receive Poke Party news by email, the language of that choice, later withdrawal, and the delivery-list synchronization status. We use the verified account email and do not ask you to enter another marketing address.
  • Service-notice information: the verified account email, account eligibility, the language recorded during account entry, and the provider membership, suppression, and synchronization status needed to prepare account or service notices. This information is separate from optional newsletter consent.
  • Device and service information: necessary request, security, rate-limit, and error information used to keep the service reliable and prevent abuse.
  • Analytics and advertising choices: your first-party settings choice, GA4-normalized page routes, and a limited set of sign-in, onboarding, trainer, friend-finder, pricing, checkout-status, and raid-flow events. When advertising is available, Google may also receive the information needed to select, deliver, secure, limit, and measure an ad, subject to the choices and regional controls described below.

3. How and why we use information

Where data-protection law requires a legal basis, we rely on performance of our agreement with you for requested account, coordination, and publication features; your consent for marketing email and where required for optional analytics and advertising; our legitimate interests in security, fraud prevention, support, and service reliability; and legal obligations for tax, accounting, disputes, and lawful requests. A notice acknowledgement confirms that you saw the stated publication scope; we do not treat it as consent when another legal basis applies. You can withdraw optional consent at any time, but withdrawal does not affect earlier lawful processing.

  • To create and secure accounts, provide sign-in, and keep your trainer profiles available across sessions.
  • To create, join, and operate raid rooms, distinguish remote and in-person coordination, show the relevant readiness and invitation progress, enforce room capacity, and prevent repeated or abusive requests.
  • To compare recent country-level raid-schedule checks with confirmed source data. Only a thresholded disagreement is surfaced for operational review; individual choices are not published.
  • To publish only the Trainer name or friend-listing details you select and to create the sharing preview you request.
  • To process a screenshot once and suggest profile values when you choose the optional assisted-entry feature.
  • When checkout is available, to start checkout and confirm paid access; for existing or future purchases, to manage subscriptions, handle cancellations and refunds, prevent payment abuse, and keep required financial records.
  • To answer support and privacy requests, investigate safety reports, protect the service, diagnose faults, and meet legal obligations.
  • To calculate identifier-free daily totals from necessary account, trainer, friend-listing, raid, purchase, and safety records so we can understand whether core service flows are working. During Launch Access, these totals include successful create and join actions that passed the future Free-plan reference threshold, without identifying which account performed them. These aggregate reports do not contain an account, email, Trainer Code, profile, room, friend, checkout, purchase, or provider identifier.
  • To measure whether key sign-in, onboarding, friend-finder, pricing, and raid flows are understandable, only after you separately enable optional analytics.
  • To send Poke Party news and product updates only when you separately opt in to marketing email. This choice is optional and is not required to create an account or use the service.
  • To prepare and send relevant account or service notices, such as material policy or service changes, to eligible verified accounts independently of optional newsletter consent. We respect email-provider blocklists and service-notice opt-outs. A notice email does not by itself record acceptance of updated terms, and service-notice templates do not use opening pixels or click-tracking links.
  • To fund eligible public content with Google AdSense advertising when advertising is available. Advertising is not needed to create an account or use an active paid ad-free benefit.

4. Information you make public

A raid room can display your Trainer name and an optional gym name. The same values may appear in a link preview when a room is shared. For the gym name, enter only a public venue name and do not use it for a home, private meeting place, or information that identifies a person; choose a Trainer name you are comfortable showing publicly. A public room can appear in discovery. A link-only room is unlisted, but it is not confidential: anyone who receives the bearer link can open, join, and reshare it. Poke Party does not include account IDs, email addresses, Trainer Codes, payment information, precise coordinates, or a private-lobby code in the sharing preview.

If a host enables a private game lobby, its three-Pokémon code is shown only in the authenticated management view for the host and active room members. It is kept in the active room state, excluded from public room detail, discovery, sharing images, queues, and logs, and removed when the room completes, is cancelled, or expires.

A friend listing is published only when you choose to list it. Signed-out visitors can see its Trainer name, country, language, activity pattern, and purposes. The Trainer Code is returned only to a signed-in visitor. You can remove the listing at any time, and it expires 30 days after publication or refresh.

We remove the public Trainer-name snapshot when the room lifecycle or account action requires it. A person who already received a link, or a search, messenger, or social network cache, may keep an earlier preview for a limited time outside Poke Party’s control.

5. Service providers and international transfers

Cloudflare provides hosting, security, real-time coordination, private storage, delivery, and optional screenshot analysis. Cloudflare may process information on its global network. For screenshot assistance, Cloudflare treats submitted images and results as Customer Content and states that it does not use that content to train Workers AI models or improve Cloudflare or third-party services without explicit consent.

Creem (Armitage Labs OÜ, Estonia) is the Merchant of Record and contractual seller for purchases. Creem collects checkout contact and payment details, calculates applicable taxes, issues invoices, and processes subscription, refund, and dispute activity under its own Buyer Terms and Privacy Notice.

Google or Kakao processes information when you choose that provider to sign in. Google receives optional Google Analytics measurements only after you enable Google Analytics. When Google AdSense advertising is available on an eligible page, Google and the advertising providers disclosed through the applicable consent message may process device, browser, approximate-location, consent, ad-delivery, interaction, fraud-prevention, and measurement information under the choices available to you.

Our self-hosted Listmonk service and configured email-delivery provider process verified account emails for authentication, account or service notices, and separately requested newsletters. Service notices and newsletters use distinct private lists. Newsletter membership requires your separate choice; service-notice eligibility does not add newsletter consent. Provider-level blocking may prevent either kind of email. We do not copy Trainer Codes or detailed trainer profiles into these lists.

These providers may process information outside your country. Where required, transfers are supported by the provider’s contractual safeguards, recognized adequacy arrangements, or another lawful transfer mechanism. We review provider access and limit the information sent to what is needed for the selected feature.

We may disclose information when required by law, to protect users or the service, to investigate fraud or abuse, or as part of a business transfer subject to appropriate confidentiality and notice. We do not sell personal information or send Poke Party account, trainer, raid-room, friend-code, or purchase identifiers to GA4 as event properties. Google advertising is separate from optional GA4 product analytics and follows the advertising choices and regional consent controls described below.

  • Cloudflare Workers AI data usage
  • Creem Privacy Notice
  • How Google uses data from sites that use its services
  • How AdSense uses cookies

6. How long we keep information

When no fixed period applies, we keep information only while it is reasonably needed for the purpose described above, then delete or de-identify it. Backups and provider systems may take additional time to cycle out securely.

  • Account and trainer information: while the account is active, then deleted or de-identified through the account-deletion process unless a longer period is required by law or for a dispute.
  • Friend listings and Trainer Codes in those listings: 30 days after publication or refresh, or sooner when you unpublish, delete the profile, or delete the account.
  • Active friend-listing moderation blocks: while a reviewed restriction remains necessary. If you delete a restricted listing, its public content is deleted but an account, listing, report reference, and timestamps may remain to prevent immediate republication until the restriction is lifted or the account is deleted.
  • Trainer screenshots: no Poke Party application-storage period. The image is used for the live analysis request; only profile values you review and save are retained.
  • Incomplete uploads: 24 hours. Rejected verification evidence: 7 days. Approved verification evidence: 30 days. Evidence for a closed safety report: 90 days.
  • Temporary checkout intents: 30 days after their one-hour checkout window expires.
  • Repeated-request results: 72 hours. Pseudonymous room-assignment audit records: 30 days. Temporary privacy exports: 24 hours.
  • Account-linked raid-schedule checks: 30 days, or sooner when the account is deleted.
  • Analytics-choice cookie and GA4 first-party identifiers: up to 180 days from the latest choice or visit under our configuration. GA4 event-level data is configured for the shortest standard retention period we use, currently two months.
  • Marketing-email consent and list membership: while you remain subscribed. When you withdraw, we keep the withdrawal and provider suppression status only as long as reasonably needed to honor the opt-out, prevent accidental resubscription, resolve complaints, and meet legal obligations.
  • Service-notice contacts: while needed for an eligible account and to honor provider suppression. After an old address or ineligible account is removed from the service-notice list, the local retirement record is deleted after seven days; a completed account-deletion workflow removes it after confirming provider retirement. A failed retirement remains pending until it can be completed. The email provider may retain a minimal unsubscribe or blocklist record to prevent accidental resubscription. Notice content, document versions, campaign identifiers, template snapshots, and aggregate audience counts are retained as operational history, without a separate copy of the recipient list in each notice record.
  • Advertising cookies, local storage, consent records, and ad-delivery or measurement information: according to the choice you make and the retention controls of Google, the applicable consent platform, and disclosed advertising providers. You can revisit the available privacy choices as described below.
  • Purchase, refund, tax, fraud-prevention, and dispute records: for the period required by applicable accounting, tax, consumer-protection, anti-fraud, and legal-claims rules. No new checkout is currently available during Launch Access. Before checkout reopens, we will review the applicable retention schedule and update this policy if the resulting period materially changes this description.

7. Cookies, analytics, and advertising choices

Poke Party uses necessary first-party storage for language, theme, security, sessions, and your settings choices. Optional analytics are off by default. Google Analytics is loaded only after you enable it.

Google Analytics may set _ga and _ga_<measurement-id> cookies. Poke Party requests advertising storage, advertising user data, personalized advertising, and Google Signals as denied. We send normalized page locations without query strings or opaque room and sharing-link identifiers.

When Google AdSense advertising is available, ads appear only in designated areas of eligible public content pages. Google advertising can use cookies or similar storage for ad delivery, frequency control, fraud prevention, and measurement; non-personalized ads can still use such storage. Where required, an applicable Google-certified consent message asks for advertising choices before an ad request that needs consent is made. The providers and purposes available in that message may vary by location and the current advertising configuration.

Cookie settings are available in the footer on every page. Withdrawing optional analytics stops new GA4 product measurements, sends denied consent signals, and attempts to remove known first-party analytics cookies. Advertising choices can be revisited through the advertising privacy controls made available for your region. A new choice applies going forward; information already received by a provider remains subject to that provider’s retention and deletion controls.

An active Ad-Free Lifetime benefit suppresses Poke Party advertising placements while you are signed in to that account. It does not remove necessary service messages, legal notices, external provider screens, or advertising that may appear on a third-party service outside Poke Party.

  • Google Analytics cookie information
  • Google advertising privacy and terms
  • How Google uses data from partner sites

8. Your rights and choices

Depending on where you live, you may have rights to access, correct, delete, restrict, or receive a copy of your information; object to certain processing; withdraw consent; or complain to a data-protection authority. Use the signed-in Privacy & data page or email privacy@1990.company. We may ask you to confirm control of the account before acting.

You can withdraw marketing-email consent in the signed-in Privacy & data page or with the unsubscribe control in a marketing email. Signing in again without selecting the optional newsletter box does not subscribe or unsubscribe you.

Account deletion disables access and sessions, removes public raid identity, schedules known subscriptions not to renew, and starts deletion of account-linked data. Some purchase, refund, security, or legal records may remain where retention is required. If you need a refund reviewed, contact support before deleting the account when possible.

9. Age, automated decisions, and security

Poke Party is not directed to children and does not ask for a date of birth. Do not create an account if you are under 13 or under a higher minimum age required in your country. In the Republic of Korea, users under 14 must not create an account. In the EEA, the applicable digital-consent threshold can be between 13 and 16 depending on the member state. A user who meets the local minimum but is still a minor must have a parent or legal guardian review and permit the use where local law requires it. If you believe a child used the service without required permission, contact us so we can review and remove the information as appropriate.

Poke Party does not make decisions that produce legal or similarly significant effects solely by automated means. Screenshot assistance only suggests profile values and requires your review before saving.

We use access controls, encryption in transit, private storage, restricted public fields, rate limits, and deletion processes designed to protect information. No online service can guarantee absolute security, so please use a unique email account, protect sign-in codes, and report suspected misuse promptly.

10. Changes and contact

We may update this policy as the service, providers, or law changes. We will update the effective or last-updated date and provide additional notice when a change materially affects your rights or choices. Contact privacy@1990.company for privacy matters or support@poke.party for service and purchase support.

Questions or requests

1990Company
601, 7, Cheonjung 1-gil, Dongnam-gu, Cheonan-si, Chungcheongnam-do, South Korea
privacy@1990.company
Poke PartyIndependent coordination service. Not affiliated with Niantic, The Pokémon Company, or Nintendo.© 2026 1990Company · 601, 7, Cheonjung 1-gil, Dongnam-gu, Cheonan-si, Chungcheongnam-do, South Korea
RaidsFind friendsHow it worksPricingTrainer toolsMy accountSupportPrivacyTermsRefund policy

Cookie settings

Essential preferences always work. Google Analytics loads only if you allow it.
Essential preferencesKeeps language, theme, security, and this consent choice working.
Always on
Measures privacy-safe page and raid funnel events without account, profile, or room identifiers.
Read the analytics and cookie notice