Privacy Policy

ColorJoy Privacy Policy

Last updated: June 3, 2026

Effective date: June 3, 2026

ColorJoy is a digital coloring application operated by DDX. This Privacy Policy explains what information we process when you use ColorJoy, including subscriptions, restore purchases, ads, rewarded ads, privacy-filtered analytics and attribution, coloring progress, and support features.

1. Who We Are

This Privacy Policy applies to the ColorJoy mobile application and related services.

If you do not agree with this Privacy Policy, please stop using ColorJoy and related services.

2. Information We Process

ColorJoy processes the following categories of information to provide coloring, gallery, progress, subscription, advertising, support, and save-to-gallery features.

2.1 Device, App, and Guest Session Information

When you use network-enabled features, we may generate, read, and store a guest identifier and session token. This helps us create a guest session, load content, maintain service continuity, sync progress, verify subscription state, decide ad eligibility, and protect the service from misuse.

  • Guest device identifier or app-generated unique identifier.
  • Guest session token, token type, expiration information, and guest user ID returned by our service.
  • App version, platform, bundle or package identifier, Unity/user-agent information, operating system version, system language, and time zone.
  • Request IDs and standard network metadata, such as IP address, that may be processed by our servers or service providers to deliver and secure the service.

2.2 Coloring Progress and App Activity

To let you continue unfinished artwork, restore progress, manage history, and support hint-related features, we may process app activity and progress information, including:

  • Artwork IDs, categories, difficulty labels, image URLs, and artwork resource references.
  • Coloring progress percentage, completion status, progress update time, and history state.
  • Hint quota, hint consumption status, and related app configuration.
  • Subscription or premium status used to unlock ColorJoy Plus features and remove eligible passive ads.
  • Ad eligibility, placement, frequency, cooldown, and reward status used to decide whether an ad may be requested or shown.

ColorJoy does not upload your existing system photo library when syncing coloring progress.

2.3 Local Cache, Snapshots, and Preferences

ColorJoy stores some data locally on your device to improve performance and preserve your experience, including:

  • Artwork resource cache and downloaded gallery images.
  • Local thumbnails, filled-region snapshots, replay/progress snapshots, and recovery data used to restore unfinished artwork.
  • Sound, haptic feedback, hint, and other app preference settings.
  • Local pending purchase records used to retry purchase verification after a failed or interrupted verification flow.

These items are primarily stored on your device and may be removed by deleting app data, clearing local records where available, or uninstalling the app.

2.4 Purchase and Subscription Information

ColorJoy may offer in-app purchases or auto-renewable subscriptions, including ColorJoy Plus. When you start a purchase, restore a purchase, or use paid benefits, we may process subscription-related information such as:

  • Store platform, product ID, plan type, catalog version, and entitlement status.
  • Purchase, transaction, receipt, purchase token, signed purchase data, or similar store-provided data needed to verify the purchase with the relevant store and our backend.
  • Verification result, restore result, expiration time, renewal state, cancellation state, and backend entitlement state where provided by the store or backend.

Payment processing is handled by Apple App Store, Google Play, or the relevant app store payment system. We do not collect or store payment card numbers, payment passwords, bank account numbers, or full payment account credentials in ColorJoy.

2.5 Advertising and Rewarded Ad Information

ColorJoy may show ads, including App Open ads, banners, interstitial ads, and rewarded ads. On Android, ads may be provided through BearLogic SDK and adapter networks such as TopOn, Mintegral, Vungle, and SolarEngine guide-se where enabled. On iOS, ads may be provided through Google AdMob or related Google advertising services where enabled.

When ads are enabled, ColorJoy and its advertising providers may process information related to ad delivery and measurement, including:

  • Ad placement, ad format, load/show/close/click/reward events, request IDs, frequency caps, cooldown state, and whether a test or production ad unit is used.
  • App version, platform, device model, operating system version, IP address, and network-related metadata processed by ad providers.
  • Advertising identifiers, such as Android Advertising ID, Android Privacy Sandbox / AdServices / Topics signals where applicable, or Apple's advertising identifier, where available and permitted by your device settings, platform rules, and applicable law.
  • Non-personalized advertising signals, consent state, or other compliance state where applicable.

ColorJoy's backend ad-event reporting is designed to avoid sending payment credentials, full store receipts, full purchase tokens, complete ad unit IDs, full BearLogic credential values, raw SDK errors, or full ad callback payloads as analytics events. Third-party advertising providers may process their own ad-serving data under their own privacy policies.

Rewarded ads are optional. If you choose to watch a rewarded ad, we may process reward status so the app can grant the relevant in-app reward after the ad provider reports that reward conditions were met. ColorJoy Plus may remove eligible passive ads; rewarded ad features may still be offered as optional reward flows if the app configuration allows them.

2.6 Analytics and Attribution Information

ColorJoy uses analytics services to understand app stability, feature usage, subscription and ad funnel behavior, and campaign or attribution performance. Analytics providers may include Firebase Analytics, Facebook / Meta App Events, SolarEngine as an analytics and attribution SDK provider, and Matomo when enabled by app configuration.

When SolarEngine or Matomo is enabled by client-safe app configuration, ColorJoy mirrors the existing Analytics V2 custom events through the shared analytics facade. These events may include app lifecycle, screen views, artwork selection, coloring progress checkpoints, completion, history actions, sharing or saving results, ad placement and reward status, subscription paywall actions, purchase or restore result status, entitlement state, and notification permission or receive status where those app paths exist.

ColorJoy's custom analytics events are designed not to send raw receipts, purchase tokens, transaction IDs, order IDs, complete pending purchase IDs, raw device identifiers, raw URLs, IP address fields, backend raw bodies, SDK raw error text, or stack traces to Firebase, Facebook / Meta App Events, SolarEngine, or Matomo. Purchase receipts, purchase tokens, transaction identifiers, and signed purchase data may still be processed by app stores and our backend only where needed for purchase verification, entitlement, restore, fraud prevention, and legal compliance as described in Section 2.4.

SolarEngine event definitions are not manually created in the SolarEngine portal by ColorJoy for the current integration. They are expected to appear after the app first sends valid events from a device.

Current SolarEngine identifier and permission status:

  • Advertising identifier behavior: disabled for SolarEngine and still blocked unless a later product and privacy decision approves it.
  • App Tracking Transparency (ATT): disabled for SolarEngine and still blocked for SolarEngine-dependent tracking.
  • Android Advertising ID: disabled for SolarEngine custom analytics. The Android app may declare or use Android Advertising ID for the BearLogic advertising adapter stack where ads are enabled and permitted, as described in Section 2.5.
  • IMEI: disabled.
  • OAID: disabled.
  • Android ID: disabled.
  • IP address: not sent as a ColorJoy custom analytics event property. Standard network metadata, including IP address, may be processed by backend, advertising, analytics, attribution, hosting, or security providers when network requests are made.
  • Android READ_PHONE_STATE optional permission: disabled and not requested for SolarEngine.
  • Matomo visitor ID: when Matomo is enabled, ColorJoy uses a locally generated random 16-character hexadecimal visitor ID for analytics continuity. It is not a raw device identifier or advertising identifier.

2.7 Feedback Information You Choose to Send

If you use the feedback feature, ColorJoy may open your system email app and prefill diagnostic details so we can troubleshoot your request. The prefilled details may include:

  • App name and version.
  • Platform, operating system version, device model, bundle or package identifier, and system language.
  • Any message, attachments, email address, or other information you choose to include before sending the email.

Feedback is sent only when you choose to send it through your email app. Your selected email provider may process the email under its own policies.

2.8 Artwork You Save to Photos or Media Library

If you choose to save completed artwork, ColorJoy generates the artwork image on your device and writes it to your system Photos library or media gallery.

  • We use photo or media write access only when you ask ColorJoy to save artwork.
  • We do not scan, upload, or analyze your existing photo library.
  • We do not use camera or microphone access for this feature.

3. How We Use Information

We use the information described above to:

  • Create and maintain guest sessions.
  • Load gallery content, artwork resources, recommendations, and app configuration.
  • Sync, restore, and display coloring progress, history, completion state, and hint status.
  • Provide, verify, restore, and manage subscription entitlements.
  • Decide whether ads may be requested or shown, enforce ad frequency controls, and grant rewarded-ad benefits.
  • Measure app functionality, reliability, analytics funnels, ad and subscription funnel status, and attribution performance using privacy-filtered analytics events.
  • Save generated artwork to your device's system gallery when you request it.
  • Respond to feedback, troubleshoot issues, and improve reliability.
  • Maintain service security, prevent misuse, debug network issues, and comply with legal obligations.

4. Permissions and System Access

4.1 Internet Access

ColorJoy uses internet access to connect to backend services, create guest sessions, load gallery and artwork content, download resources, sync progress, retrieve hint and configuration data, verify purchases, request ads, and open legal or support pages.

4.2 Photo Library or Media Write Access

ColorJoy may request photo library or media write access only when you choose to save generated artwork to your system gallery.

  • On iOS, ColorJoy may request add-only photo library access or an equivalent Photos permission so it can save artwork.
  • On Android, ColorJoy may use MediaStore or request storage/media write permission on older Android versions when needed to save artwork.

If you deny this permission, you can still use core coloring features, but you may not be able to save artwork directly to your system gallery.

4.3 Advertising, Tracking, and Consent Controls

Where required by platform rules or applicable law, the app or advertising provider may request consent or use platform controls before accessing advertising identifiers or serving personalized ads.

You can manage advertising personalization, advertising identifiers, tracking permission, and related privacy settings through your device settings and applicable platform account settings. If personalized advertising is unavailable, disabled, or not permitted, ads may still be shown in non-personalized or contextual form where allowed.

5. How We Share Information

We do not sell your personal information.

We may share or make information available only in the following limited circumstances:

  • Service providers: We may use hosting, backend API, object storage, content delivery, network infrastructure, support, purchase verification, ad delivery, ad measurement, adapter-network, rewarded-ad, analytics, attribution, event measurement, and campaign measurement providers to operate ColorJoy, including SolarEngine and Matomo where enabled.
  • App stores and payment platforms: Apple App Store, Google Play, or related payment providers may process purchase, billing, account, subscription, and refund information under their own policies. We receive or process only what is needed to verify purchase status, provide entitlement, prevent fraud, support restore flows, and comply with legal obligations.
  • Advertising providers: When ads are enabled, advertising providers such as BearLogic and its Android adapter networks, or Google AdMob on iOS, may receive or process ad request data, device and app information, IP address, advertising identifiers where permitted, ad interaction data, paid/revenue callback data where provided by the SDK, and consent or non-personalized advertising signals for ad delivery, fraud prevention, frequency capping, reporting, and measurement.
  • Analytics and attribution providers: When analytics services are enabled, providers such as Firebase Analytics, Facebook / Meta App Events, SolarEngine, and Matomo may receive privacy-filtered app activity, app and device information, custom event names, event properties, and standard network metadata for analytics, attribution, campaign measurement, troubleshooting, fraud prevention, and service improvement. SolarEngine is used as an analytics and attribution SDK provider for ColorJoy's custom Analytics V2 event mirror, and Matomo is used as an analytics HTTP tracking destination when enabled. These providers are not used as channels for raw purchase receipts, purchase tokens, transaction or order IDs, raw device identifiers, raw URLs, SDK raw errors, or stack traces.
  • User-initiated actions: If you send feedback through your email app, your email provider and the recipient process that email. If you save artwork, the operating system writes the file to your local Photos library or media gallery.
  • Platform operators: Apple App Store and Google Play may independently process information related to app distribution, downloads, reviews, store account activity, purchases, subscriptions, and refunds under their own policies.
  • Legal and safety reasons: We may disclose information if required by law, legal process, regulatory request, or where reasonably necessary to protect the rights, safety, and security of ColorJoy, users, or the public.

6. Retention and Deletion

We retain information only for as long as reasonably necessary for the purposes described in this Privacy Policy, unless a longer period is required or permitted by law.

  • Local cache, preferences, artwork snapshots, thumbnails, local pending purchase records, and recovery data remain on your device until deleted in the app where available, cleared through device settings, overwritten by newer data, or removed when you uninstall the app.
  • Guest session, progress, history, hint, and configuration-related server records may be retained for service continuity, troubleshooting, security, abuse prevention, and legal compliance, then deleted or anonymized when no longer needed.
  • Subscription verification, entitlement, and restore records may be retained for as long as necessary to provide paid benefits, support restore flows, resolve disputes, prevent fraud, and comply with app store or legal obligations.
  • Advertising event records may be retained for as long as necessary for ad delivery, frequency control, reward verification, fraud prevention, reporting, troubleshooting, and legal compliance.
  • Analytics and attribution event records may be retained by us or analytics providers for as long as necessary for measurement, attribution, troubleshooting, fraud prevention, service improvement, reporting, and legal compliance.
  • Feedback emails and support communications may be retained for as long as needed to handle your request and maintain reasonable support records, then deleted or anonymized when no longer needed.

You may request deletion of server-side data associated with your guest identifier, progress records, history records, hint records, subscription-related records, advertising event records, or feedback records by contacting us at [email protected]. To protect users and prevent unauthorized deletion, we may ask for information reasonably necessary to verify the request.

7. Your Choices and Controls

  • Permissions: You can manage Photos, media, and related permissions in your device settings.
  • Local data: You can clear local app data through device settings, delete available in-app records, or uninstall ColorJoy.
  • Purchases and subscriptions: You can manage, cancel, renew, or request refunds for subscriptions and in-app purchases through Apple App Store, Google Play, or the applicable platform account settings. The Restore Purchase feature may be used to ask the store and our backend to restore eligible entitlements.
  • Advertising choices: You can use device and platform settings to limit ad tracking, reset advertising identifiers, manage App Tracking Transparency permission on iOS where applicable, or manage ad personalization settings provided by Google, Apple, or your operating system.
  • Feedback: Feedback is sent only if you choose to send the email from your email app. You may edit or remove the prefilled text before sending.
  • Deletion requests: You can contact us at [email protected] to request deletion of data associated with your guest session where applicable.
  • Consent withdrawal: Where processing depends on a permission or your direct action, you can withdraw consent by disabling the permission, stopping use of the relevant feature, or contacting us.

8. Security

We use reasonable administrative and technical safeguards designed to protect information against unauthorized access, disclosure, alteration, and loss. These safeguards may include access controls, data minimization, logging for operational security, and limiting information processing to what is needed for the app's features.

No method of electronic transmission or storage is completely secure. We cannot guarantee absolute security, but we work to protect information in a manner appropriate to the nature of the data and the services we provide.

9. Children and General Audience

ColorJoy is a general-audience app and is not specifically directed to children under 13. We do not knowingly collect personal information from children in violation of applicable law.

If you are a parent or guardian and believe a child has provided information to us without appropriate consent, please contact us at [email protected]. We will review the request and take appropriate action as required by law.

10. International Processing

Depending on your location and the configuration of our hosting, content delivery, backend, support, advertising, purchase verification, and platform services, information may be processed in countries or regions other than where you live. Where applicable, we take reasonable steps to protect information in accordance with this Privacy Policy and applicable law.

11. App Store and Google Play Disclosures

ColorJoy's App Store and Google Play privacy disclosures should remain consistent with this Privacy Policy and with the app's actual data practices.

  • Privacy and data safety forms should reflect guest identifiers, progress/app activity, app/device information, support data sent by the user, photo/media write access, in-app purchase and subscription verification, advertising identifiers where used, Android BearLogic adapter-network data practices where ads are enabled, iOS AdMob data practices where ads are enabled, SolarEngine analytics/attribution where enabled, Matomo analytics where enabled, and notifications where enabled.
  • Payment card numbers, payment passwords, and full payment account credentials should not be described as collected by ColorJoy unless the app's payment architecture changes.
  • If the live configuration changes ads, personalized advertising, analytics, crash reporting, account systems, push notifications, or uploads, this Privacy Policy and the applicable platform disclosures should be updated to match.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect feature changes, operational needs, legal requirements, or platform policy requirements. When we update it, we will revise the "Last updated" date and make the updated policy available through the app, website, or another appropriate channel.

If changes materially affect your rights or expectations, we will provide additional notice where required by law.

13. Contact Us

If you have any questions, comments, or requests about this Privacy Policy or ColorJoy's data practices, please contact us: