Omnipass

Legal

Privacy policy

How Joseph Clover, trading as OmniPass, collects and uses personal data when you use the Pass app and this wiki.

Effective 20 September 2026

Who is responsible

Joseph Clover, trading as OmniPass, is the controller of personal data for this service. Contact hello@omnipass.gg. We follow UK GDPR and the Data Protection Act 2018.

This policy covers https://omnipass.gg (the Pass app) and https://read.omnipass.gg (this wiki).

What we collect

  • Account email when you sign in
  • Billing details Polar collects to take payment
  • Waitlist email, plus optional Discord handle, chosen tier, and game
  • The hostname you pick
  • Logs needed to run the world
  • World and save files you generate on the server

Who else processes it

Polar processes payments. Cloudflare carries email to hello@omnipass.gg and DNS. We store account and waitlist data in our database (Supabase). Game worlds run on servers we rent in the EU. TikTok processes advertising measurement, and only if you accept it.

Analytics

PostHog is the only vendor we use to measure the product and record errors. On https://omnipass.gg, analytics cookies and identify (account id and email) run only after the cookie banner grants analytics. Ingest is https://using.omnipass.gg (PostHog EU). Server-side we send lifecycle and error events without request bodies or credentials. You can opt out via the banner.

Advertising

We advertise on TikTok, and TikTok's pixel measures whether those adverts lead to purchases. It runs on https://omnipass.gg only, never on this wiki, and it is not loaded at all until you accept the Marketing category on the cookie banner. Refuse it and nothing is requested from TikTok.

Where you accept, the pixel sets a cookie on our domain and tells TikTok the address, title and referring page of the pages it runs on, together with four things you do: reaching a page, opening the pass chooser, starting a checkout, and completing a purchase. It is told which pass tier, and never what you paid. We limit it to our public pages and the dashboard, so the addresses of your individual servers are never sent, and it is blocked outright while a sign-in is completing.

Withdraw at any time through the banner, which stops the pixel and revokes the consent already given. TikTok may use what it has received to show you our adverts and to build audiences of people who have visited us.

Fonts and session cookies

This wiki loads fonts from Google Fonts. Session cookies on https://omnipass.gg are necessary to stay signed in.

Legal bases

  • Contract: running the Pass
  • Legitimate interests: security, capacity, and basic product analytics after consent where the banner applies
  • Consent: optional analytics cookies, and advertising cookies separately
  • Legal obligation: tax and accounting via Polar

How long we keep it

  • Account and billing: as long as you have a Pass, and as long as tax law requires
  • Waitlist: until you buy or ask to be removed
  • World files: while the Pass exists, and in freeze snapshots
  • Logs: for a short operational period

Your rights

You can ask to access, rectify, erase, restrict, or object to processing, and to data portability. You can withdraw consent where we rely on it. You can complain to the ICO at ico.org.uk. Email hello@omnipass.gg to exercise these rights.

What we do not do

We do not sell personal data. We do not use it to train third-party AI models.

International transfers

Polar, Cloudflare, PostHog EU, and Google Fonts may process data. TikTok does too where you have accepted advertising, and processes outside the UK and EEA. Transfers use their published safeguards.

Children

The service is not aimed at under-18s buying alone.

Changes

The date at the top is the current version. The terms of service are at /terms.