Kin Kin

Privacy Policy

Effective date: September 15, 2026

This describes what Kin (kincalc.net) actually does with data today: what it collects, why, and how you can reach a person about it.

Who this policy covers

This policy covers Kin, operating at kincalc.net (the "Service"), and the same operator's kin-auth backend that the Service calls for sign-in, subscriptions, and account data. It does not cover any other site or product.

How you sign in

Kin uses Discord OAuth for sign-in. You authorize Discord to share your Discord account id, username, and avatar with Kin. Kin's backend exchanges the Discord authorization code for a Kin session token server-side - your Discord access token itself is never sent to or stored by your browser (src/lib/auth.js). The browser keeps only the Kin session token, in your browser's local storage, and sends it back on the X-Session-Token header on every signed-in request. Signing out clears it from your browser; it is not usable after that.

Kin's backend resolves your live Discord username and avatar on each visit so your profile picture stays current (src/lib/auth.js, GET /kin/me).

Linking an Epic Games account

If you choose to link an Epic Games account, Kin records your Epic account id, a display name, how the link was verified, and when it was linked. A link verified directly through Epic's own sign-in is marked verified; an interim, staff-confirmed link is marked unverified until it is replaced by a real Epic sign-in. Linking an Epic account is optional and is never required to use the free tier of the Service.

Subscriptions and payments

Kin is a subscription product with no license keys. Payments are processed directly by Stripe and, where offered, PayPal, on their own systems - Kin's servers never receive or store your full card number. What Kin's backend stores is limited to the subscription id, the account it belongs to, the tier purchased, its status, and its renewal date, used to determine what the Service unlocks for your account.

If a payment is disputed or charged back, the related subscription can be suspended and the account flagged while the dispute is reviewed. An account in that state can always reach the appeal process described below.

Fortnite gameplay and tournament data

The tournament standings, match results, and player statistics shown on Kin are not submitted by visitors. They are built from Epic's own publicly published competitive results and tournament data. A player's name is shown only when Epic's own data resolves it; Kin never guesses a player identity.

Cookies and analytics

Kin uses two categories of cookies, and you choose which apply through the cookie banner or Cookie settings in the footer at any time:

Data retention and deletion

Kin keeps your account data for as long as your account is active, to operate the Service and to meet reasonable legal, accounting, and anti-fraud obligations for payment records. Deleting an account is not yet a self-service button in the app; it is handled by a person on request, through the contact method below. A full deletion removes your session records, your stored diagnostics, your drop-tool request history, and your account record.

Data protection contact

The working contact channel for a data or privacy request today is the appeal and support form at kincalc.net/appeals. It requires no sign-in and is read by Kin staff. A dedicated data-protection mailbox may be added later; this page will be updated to list it when it exists.

Changes to this policy

This policy may be updated as the Service changes. The version in effect at the time you use the Service is the one that applies.