COMPY ← Home

Compy — Privacy Policy

Status: DRAFT v0.6 (2026-08-25). v0.6 discloses anonymous results sharing ("Receipts") — a sending path that now exists in Compy's source code but is switched off at the source, so no build can send anything, and which is off for you even after it is switched on, until you turn it on yourself. It sends nothing today; it is written here before it can ever run, so no build can transmit something this policy has not already described. See Anonymous results sharing under Network use for the exact fields, endpoint and switches. v0.5 added four things the software already did but this policy did not describe — the local session history (including the game executable name), the application-start notes taken during capture, the rig fingerprint, and the licence file — and names the second GitHub host the update check redirects to. Nothing about the software changed; the policy was stricter than the build, and this closes that gap in the honest direction. Reflects how the software AND the website behave today, with one stated exception: v0.4 added the local support record, which is written and tested in the source but is not yet in a released installer — it is disclosed here ahead of shipping rather than after, so no build can ever collect something this policy has not already described. (v0.3 disclosed the signed, consent-first app updater that went live on 2026-07-22, and the Settings switch that turns its automatic checks off.) It is not legal advice — the owner should still have it reviewed by a qualified professional before public distribution. Owner/contact identity: Pootytxng — GitHub issues, or compysupport@gmail.com.

Doctrine pointer (updated 2026-08-25): This policy describes current runtime behavior. Receipts is built but disabled: the send path exists in source as of 2026-08-25, and its gate is fixed to off in code, so a shipped build has no way to reach the network through it. Arming that gate is a separate, owner-signed change that cannot land without this policy already describing it — which, as of v0.6, it does. Even armed, sharing stays opt-in and off by default (owner ruling 2026-08-24, issue #207). Tier 1 signed case intelligence is approved as a dark design but has no module, endpoint or traffic today. Before any Capability Exception Gate outbound tier is armed, this policy and generated site copy must be updated in the SAME release with its exact endpoint, payload, consent, retention/deletion and off-switch behavior; Tier 1 cannot authorize Tier 2 or 3. src/outbound-claim-guard.test.ts enforces the current outbound claims.

The short version

Compy's analysis and saved history stay on your PC. It does not collect, transmit, sell, or share any of your data — no accounts, no telemetry, no analytics, no advertising, and no upload of your hardware, sessions, or results. Its one automatic network use is a signed update check, which carries none of your data and which you can switch off in Settings; an installer downloads only after you approve it. A second path — anonymous results sharing — is written into the software but switched off in code, sends nothing in any build you can install, and would stay off for you until you switched it on; it is described in full below so it can never arrive unannounced. The only personal data we ever collect is on our website: if you join the launch waitlist, we store your email (to send one launch message) and a hashed version of your IP (for spam prevention) — nothing else, and no third-party trackers. Details below.

What Compy reads

To give hardware-aware, per-rig recommendations, Compy reads information locally on your machine, including:

This information is displayed to you and used only on your device. Compy does not include it in the update request, and does not upload it anywhere.

What Compy stores (locally)

Nothing sends the support record. Compy has no way to upload it. You can read it in the app, export it to a file under %APPDATA%\Compy\exports\, and attach that file to a support conversation yourself — you are the transport, and you can read exactly what you are sending before you send it.

The FPS working files and the first-run flag are safe to delete — Compy just recreates them as needed. Deleting history.json is different: it erases your Trust Ledger, so past changes stop being reversible from it. Compy will start a fresh, empty ledger, not restore the old one. The support record can be cleared or deleted at any time and Compy simply starts a new empty one; the only consequence is that if you later ask for help with something that already went wrong, there is no record of it left to show — so clear it after a support conversation, not before.

What Compy does NOT do

Network use

Compy makes one kind of automatic network request: a signed update check. (A second path exists in the source but is switched off in every build — see Anonymous results sharing at the end of this section.)

Separately, some advisory recommendations may open a link in your default web browser (for example, a GPU driver download page) — but only when you click the link. Once a link opens, your browser, not Compy, handles it under your browser's own privacy terms.

Anonymous results sharing ("Receipts") — built, switched off, and opt-in if it is ever switched on

Compy's source code contains a second network path, which sends nothing in any build you can install today. It is disclosed here in full, ahead of ever running, so that it can never appear on your PC as a surprise. Two independent switches stand in front of it:

Exactly what one receipt would contain, and nothing else:

What a receipt never contains: your name, email, IP address, Windows username, machine name, serial numbers, hardware IDs, file paths, installed program lists, browsing data, or any identifier that could tie two receipts to the same PC. There is no account, so there is nothing to attach it to.

About "telemetry" recommendations: Some of Compy's optional recommendations help you disable Windows or NVIDIA telemetry services. That is a privacy feature that reduces what other software collects about you. It is unrelated to Compy's own data practices — Compy itself collects nothing.

The Compy website & waitlist (separate from the app)

Everything above describes the app. The Compy website (the Pages site / future compy.gg) is separate, and one part of it collects data — only if you choose to give it:

This website data collection is separate from the app. The installed Compy app does not send the website — or anyone else — your hardware, session history, Trust Ledger, or settings. Its only automatic connection is the signed update check described above.

Future: signed rule updates (currently disabled)

Compy contains the groundwork for downloading cryptographically signed recommendation rule files in the future. This capability is disabled in the current build and performs no network activity of its own — it is separate from the update check described above. If it is ever enabled, it would only download signed rule files to keep recommendations current — it would never upload information about you or your PC. Any such change will be reflected in an updated version of this policy before it ships.

Administrator access

Some actions (and the FPS capture helper) require Windows Administrator permission and will prompt you (UAC). Compy uses these rights only to read state and to apply/undo the specific change you requested. It installs no kernel driver and injects nothing into your games.

Children's privacy

Compy is a PC utility, not directed at children, and collects no personal information from anyone.

Changes to this policy

If Compy's data behavior ever changes, this policy will be updated and dated, and shipped with the corresponding version.

Contact & governing law

Pootytxng (Compy). Privacy questions, concerns, or a request to delete your waitlist email: reply directly to any email you receive from the waitlist — replies reach the owner.

This policy, and any dispute relating to it, is governed by the laws of the United States and the owner's state of residence (see the EULA's governing-law clause for the specific venue).