Back to Gapper

Privacy Policy

Last updated:

1. Scope and operator

This notice describes Gapper's current player search, profile and statistics features. A Riot identifier can relate to an identifiable person; game data is not treated as anonymous merely because it uses a screen name or PUUID.

Gapper is an independently operated project, not a registered company. Its operator is responsible for the service and the personal data processing described in the Privacy Policy.

For service questions or privacy requests, email contact.gapper@gmail.com. Never send a Riot password or API key.

2. Riot IDs and player searches

When someone searches for or visits a player profile, Gapper processes the Riot game name and tag line in the request. The searched player may be someone other than the visitor. A successful lookup retrieves the canonical Riot ID, PUUID (Riot's player identifier), profile icon, summoner level, ranked information and recent match data from Riot Games.

After a successful profile lookup, Gapper saves or refreshes the player's PUUID, game name, tag line, profile icon ID and last lookup timestamp in its known-player database. Names, tags and icons can then appear publicly in autocomplete. This is an index of looked-up players, not a record identifying who searched for them.

Partial-name autocomplete queries Gapper's database, not Riot's API on every keystroke. Profile URLs contain the searched Riot ID and may appear in browser history and hosting request logs.

3. Match data and statistics

Gapper retrieves match histories to display results, champions, kills, deaths, assists, minion counts, queues and durations. Loaded history is held in page memory; match responses may also be cached temporarily in server memory.

A separate collector obtains matches involving currently Emerald+ EUW Ranked Solo/Duo seed players. Stored records include match IDs, patch, queue, creation time, duration, participant PUUIDs, champion, team, role, win/loss, summoner spells, item information and complete rune/perk data. All participants in an accepted match may be stored, whether or not anyone has searched for them on Gapper.

These records support aggregated champion, role, matchup, item, rune and summoner-spell statistics. Current-patch display filters do not delete older stored matches. Source information comes from Riot Games APIs; static game metadata and assets also come from Data Dragon and CommunityDragon.

4. Purposes and legal basis

Player identifiers are used to resolve profiles, provide known-player search and associate match records. Match data supports the statistics service. Technical request information supports delivery, troubleshooting and security. Gapper does not make decisions with legal or similarly significant effects about players using these statistics.

Where the GDPR applies, the basis for this processing is legitimate interests in providing and maintaining a community game-statistics service, helping users find player information, and keeping the service reliable and secure. This basis applies only where processing is necessary for those interests and is not overridden by the rights and freedoms of the people concerned. You may object to processing based on legitimate interests as described below. Visiting Gapper or searching for a player is not treated as consent to the processing of that player's data.

5. Hosting, recipients and international processing

Vercel hosts the website and Supabase stores the known-player and match databases. These providers process information needed to operate their services. Hosting infrastructure may process IP addresses, request URLs, browser information, timestamps and diagnostic logs. Exact logging and backup retention depend on deployment settings.

Riot receives identifiers needed for server-side API requests. Browsers request game images from Riot's asset servers and may expose their IP address and ordinary request headers to those servers. CommunityDragon supplies game data to Gapper's server.

Riot Games, Supabase, Vercel and CommunityDragon may process information in countries other than your own, including outside the European Economic Area. Locations depend on the provider, configured regions and infrastructure. This notice does not represent that all information stays in the EU. Contact Gapper for information about the arrangements and safeguards applicable to your data.

Provider notices: Riot Games, Supabase, and Vercel.

6. Cookies and browser storage

The current application does not implement advertising or analytics trackers, account registration, password collection, or email signup. It does not use application cookies, localStorage or sessionStorage for player searches or loaded match history; those interactions use page memory. Ordinary browser caching and infrastructure-level behaviour are separate and depend on the browser and deployment.

7. Retention

Known-player and collected match records currently remain in the database until removed; there is no automatic expiry in the application. Revisiting a profile refreshes its indexed details. Server match caches are bounded by entry count and process lifetime, not a promised deletion period. Page-memory history resets when the page is reloaded.

Database records support the operation and maintenance of the statistics and search services. There is currently no fixed automatic deletion period. You can request deletion or object to processing using the contact below, subject to applicable rights and legal requirements. Provider logs and backups follow the relevant provider settings and arrangements; deletion from the active database does not necessarily remove backup copies immediately.

8. Your rights

Where the GDPR applies, you may have rights to access and obtain a copy of your personal data, correct inaccuracies, request erasure or restriction, object to processing, and receive portable data where the relevant conditions apply. These rights are subject to legal conditions and exceptions. If processing relies on consent, you can withdraw it without affecting the lawfulness of earlier processing.

You can also complain to a competent data protection authority, including in the EU country where you live or work. Gapper cannot change Riot's source records; requests concerning Riot's own processing should be addressed to Riot. Removal of a Gapper record alone does not remove the underlying Riot data.

For a Gapper privacy or data-rights request, email contact.gapper@gmail.com, identify the relevant Riot ID and describe your request. Proportionate identity verification may be needed to protect another player's information; never send a Riot password.

9. Changes to this notice

Changes to features or processing will be reflected here with an updated date. Material changes will be communicated where required by law. Review this notice for the current description of the service.