Kizzey Privacy, in plain words
Privacy Policy Last updated 6 October 2026

Every field named.
Nothing buried.

What Kizzey collects, why, who else receives it, how long it is kept, and how to get a copy or have it removed. Written to be read, with the parts that matter most marked so your eye lands on them.

Never sold No ad networks or data brokers Analytics is a switch Copy or erase from the app Open source

This policy covers Kizzey, the Android app, and the Kizzey services behind it: the check-in, the Kizzey Network, Kizzey Chat and the community, push notifications, KCoin, paid extras, recommended apps and updates. It says what is collected, why, who else receives it, how long it is kept and how to have it removed.

What changed in this version

This is the first version the app asks you to confirm since 26 September 2026. It is the same policy put in a clearer order, with what is new in Kizzey 8.4.4-pre-1:

  • Your weather in Kizzey Chat. Off until you turn it on. It can show beside your status, on your profile, on your activity card and around your messages, with no RPC running, so the server keeps one small weather record for your phone: a code, day or night, a temperature and the extras you choose. Never a place.
  • Your local time. Off until you turn it on. Your shared activity can carry your clock's difference from UTC.
  • What your presence shows. If you switch them on: your mood with an emoji, your RPC streak, time played, the names of recent activities, your media volume and a song's tempo, and six extras: phone and sound, today's numbers, air and sky, phone stats, your RPC buttons and a link of your own. With "Show all my activities" on, up to three more of your own Discord activities are shown as cards.
  • Air quality. With "Air and sky" on, the app asks Open-Meteo's air quality service for one number, with the same rounded position the weather uses.
  • Where each RPC shows. Every RPC can be shown on Discord, in Kizzey Chat, or both.
  • Reactions start again with your RPC. A restarted RPC comes back with no reactions, you can react to your own activity, and a message can be reacted to with a Discord emoji.
  • Live now. By default the row shows members who were in the chat lately; everyone who is live is a viewer's choice.
  • Notifications. They are silent unless you turn sound on, and only mentions, replies and reactions notify unless you ask for every message. The app now tells the server which of these switches are on.
  • Offline mode. A switch in About stops every connection to Kizzey's server.
  • Reports with pictures, and a badge. Pictures on a message the founder marks as a bug or a suggestion are kept with the report, and the founder can give a Bug Hunter badge.
  • Emulation RPC and network state. Both are read on your phone and only become words and a picture on your presence.
  • The presence picture service. How pictures on a presence reach Discord was missing from this policy and is now listed under "Who receives data".
  • Stories. You can post a photo or a video in Kizzey Chat for 24 hours. The server keeps it for that time with its likes, reactions, comments and who opened it, and the member who posted a story can see who viewed it.

Everything added between 26 September and 1 October 2026 is listed at the end, under "Changes to this policy".

The short version

  • Nothing is sold, and there are no ad networks, analytics companies or data brokers.
  • The analytics check-in is a switch. With it off, only the few things listed in "What is sent with analytics off" reach Kizzey's server.
  • Your Discord messages, email, friends and servers are never collected.
  • Card numbers go to Stripe and never to Kizzey.
  • Push notifications are encrypted, so the push service that carries them cannot read them.
  • Everything held about you can be copied or erased with buttons in the app.

Who is responsible

Kizzey is made and run by one person, UnpackedX, an independent developer, as a personal open source project rather than through a company. UnpackedX decides what is collected and why, which makes them the controller for everything in this policy.

  • Contact. cryptdex@protonmail.com, or open an issue at codeberg.org/UnpackedX/Kizzey. For a copy of your data or an erasure, the buttons in the app are faster.
  • Where it is processed. On Cloudflare's network: Workers run the server code, D1 holds the database and R2 holds uploaded files. Cloudflare hosts them and does nothing else with the data.
  • Independent of Discord. Kizzey is an unofficial, modified fork of Kizzy by dead8309. It is not affiliated with or endorsed by Discord Inc. or by the original project. Your Discord account stays under Discord's own privacy policy.

Your Discord account and token

Kizzey signs in to Discord with your Discord token. The token is kept in the app's private storage on your phone and is sent to Discord to set your presence and, if you use them, for features such as profile automation and bulk message removal.

  • Registering on the Kizzey Network. To prove which Discord account is yours, the app sends your token to Kizzey's server over HTTPS. The server uses it for one request to Discord that returns your Discord user id, keeps only that id, and does not store or log the token.
  • When registering happens. When you choose it during setup or in Kizzey Chat, and, while analytics is on and you are signed in to Discord, when the server asks every install to register or to confirm again. With analytics off, the app never registers by itself.
  • What the proved id is for. It is your Kizzey account. Your wallet, level, items and profile hang off it, which is what lets you sign in on a new phone and find them again.
  • If you never register, your token never reaches Kizzey's server. Setup offers "Continue without an account" and lists what you miss.
  • Discord server roles. If you are also a member of the Kizzey Discord server, the Kizzey bot gives your Discord account the roles that match your Kizzey status, such as registered, beta tester, clan owner, VIP or an unlocked feature, and removes them when that status ends.

The check-in, while analytics is on

Analytics is a switch in Settings, and you are asked about it during setup. While it is on, Kizzey checks in with its own server once per launch and then roughly every 15 minutes while the app runs. A check-in carries:

  • Install ID. A random value made on first launch and kept on your phone. It groups your launches so you count as one person. It is not made from your hardware or your Discord account.
  • Device and system. Manufacturer and model, Android version, processor type, chipset, number of cores, memory size, screen size and density, whether Shizuku is set up, your update channel and your language.
  • App version. The version name and build number, so a bug can be tied to a release.
  • Which features are on. On or off per setting, which presence type is running, and a few counts such as how many Smart Detection rules you have and how many times Kizzey has crashed. Never the text Smart Detection reads or which apps it watches.
  • Which of some features are running. Spoofs, Multiple Account RPC, Smart Detection, RPC cycling, Live lyrics and Health, plus Weather and Android Auto only if you allow them to be counted, and whether you chose to show your name on the active counts. The server keeps only the latest set for this install. Everyone sees just how many members use each feature; the names of members who chose to show them are shown only to other members on the Kizzey Network. Where you are is never included, and turning analytics off removes the set.
  • What your presence shows, only if you switch it on. "Share RPC to Developer" in Settings adds the text your presence is showing at that moment, such as a song or a game, so the founder can see it for diagnostics. It is off unless you turn it on.
  • Discord identity. Your Discord user id, username, display name and avatar, and one bit saying whether you are signed in. Never your email, servers, friends or messages.
  • Presence time. Whether a presence is running, which the server turns into presence time for the leaderboard by counting the minutes between check-ins.
  • The device hash. Described in the next section.
  • Check-in times. When the app last checked in and how many times, added by the server.

The founder's activity log notes each new install: its device, Android version, app version and language, and the country that Cloudflare works out from the connection. The IP address itself is not stored. When that install later reports its Discord identity, a second line notes the name and id. The activity log keeps only roughly its most recent 5,000 lines.

What is sent with analytics off

With analytics off, the check-in above stops completely. These few things still reach Kizzey's server, each for the reason given:

  • The one-time install count. On first launch the app sends its install ID, the device hash, the app version and the device model, once and never again, so an install is counted even with analytics off.
  • The device hash. A one-way hash of your phone's Android ID, salted with the app's package name. It exists only to recognise the same phone after its app data is cleared, so your account is not lost. It cannot be turned back into the Android ID, cannot be matched with what any other app holds, and changes on a factory reset. It rides the one-time install count and every check-in. You can object to it: the stored one is then cleared and your check-ins stop recording it.
  • Promotion view and tap counts. When a promotion card is shown to you or tapped, the app sends the card's id with your install ID, so that each person is counted once a day. See "Promote your content".
  • Certificate pinning reports. See "Security reports".
  • Agreeing to a policy. See "Records kept as proof".
  • Automatic update checks, only if you are on the Kizzey Network. See "Updates". These carry no install ID unless analytics is on.
  • What you do on purpose. Messages you send, things you buy, likes, reports and data requests are sent because you asked for them.

An install that has been forgotten, under the right to be forgotten, sends nothing to Kizzey's server at all.

Where you are, and the weather

Kizzey can put the country, area or town you are in on your Discord presence, and the weather where you are. Both are off until you switch them on, and Android asks you for approximate location only when a feature needs it. Refusing changes nothing else in the app.

  • Only the words you choose go to Discord. A location reading becomes a place name on your phone, and Discord receives only the text your presence shows, such as a town. Your coordinates are never sent to Discord or to Kizzey.
  • Nothing is stored by Kizzey. A place never reaches Kizzey's server. On your phone place names are held in memory, and they are removed from Presence History and from "Share RPC to Developer".
  • Kizzey Chat never shows it. While a presence that shows where you are is running, and for 90 seconds after, your activity is not shared in Kizzey Chat at all.
  • The place name. It comes from Android's own geocoder, which on most phones asks Google's or the phone maker's location service.
  • Approximate only. Kizzey never asks for precise location, so it cannot publish your street. The street option is shown greyed out, with the reason.
  • It is public where you publish it. A presence is visible to everyone who can see your Discord account, and it keeps up as you move.
  • The weather. Kizzey asks Open-Meteo, a free weather service, straight from your phone and never through Kizzey's server. It sends either the city you typed or your position rounded to about 10 kilometres. Open-Meteo sees your IP address as any website would.
  • The weather in Kizzey Chat. Off until you turn on "Show my weather in Kizzey Chat". The server then keeps one small record for your phone: a weather code, day or night, the temperature, your choice of Celsius, Fahrenheit or both, when the reading was taken, how you want it drawn, and only the extras you switch on (feels like, wind, humidity, UV, and your battery level in steps of 5 with whether it is charging). A short label of your own is kept if you write one. Never the city, the area or your position. Members see it in the places you choose (beside your status, on your profile, on your activity card, around your own messages), whether or not an RPC is running, and only while the reading is less than 4 hours old.
  • Keeping that weather fresh. While the switch is on, the app asks Open-Meteo for a new reading at the interval you chose, now with wind, humidity and UV in the same request, also from a small background job while the app is closed, and sends the record to Kizzey when something in it changed. The request to Open-Meteo is made even while the Discord weather presence is off.
  • Air quality. Only with "Air and sky" switched on for your activity card: after each weather reading the app asks Open-Meteo's air quality service for one number, with the same rounded position the weather uses and nothing that names you. The moon phase and the hours of daylight are worked out on your phone.
  • Kept on your phone. The latest weather reading and the position of a city you typed are kept on your phone, so the presence can refresh without asking again.

Kizzey Chat, profiles and the community

These are features you opt into by using them, and they work the only way a community can: what you post is stored so other people can read it. If you never use them, none of this exists for you.

  • Messages. Text, reactions, polls and votes, pins and read receipts are stored in Kizzey's database. Chat text is not sent to Discord. A reaction can be one of your Discord emojis; its name and id are stored with the reaction.
  • Pictures, files and voice notes. What you attach is uploaded, with no name or text attached, through Kizzey's webhook to a private channel on Discord, so Discord stores it and serves it from its network. Kizzey hands it out through its own link. Deleting the message asks Discord to delete its copy too.
  • Link previews. When a message contains a link, Kizzey's server fetches that page to build the preview, so the site sees Cloudflare rather than you.
  • GIF search. Searches go from Kizzey's server to Klipy, the GIF provider, with the words you searched for and a one-way hash of your install ID, never the install ID itself.
  • Your Kizzey profile. Display name, picture, bio, favourite song, showcased presets, level, XP, streak, roles, badges, name effects, profile card, clan and appreciations, and "My device" if you switch it on.
  • Who sees your profile. Your picture, last seen, KCoin, streak, level, about and clan each have their own audience: everyone, your clan or nobody, with always and never lists for named people. A hidden field is not sent to people who may not see it.
  • Leaderboards. Your Kizzey name and picture can appear on the public boards for level, presence time, messages in the last 14 days, bugs fixed and ideas added. You can take yourself off the leaderboards in your profile.
  • Your status. The status you pick (online, away, do not disturb or invisible), with an optional note of up to 60 characters, an emoji and when it ends. Others see it beside your name in the chat and in the list of who is active; on your profile the note follows your last-seen setting. Invisible shows you as offline and keeps you out of that list. While you are muted or suspended your note and emoji are not shown. A new note can be announced in Kizzey Chat by Kizzey, for example "Ann set a status: gaming tonight", only when you have a Kizzey name and a profile visible to everyone, at most once every 30 minutes, never the same note twice a day and never for changing only online, away, do not disturb or invisible. To keep to those limits the server keeps a fingerprint of the note, not its words, and the time, for 2 days. "Announce new notes in the chat" in the status picker turns it off.
  • Who is active. Kizzey Chat shows the members who were there in the last half hour, with their status and, if they share it, their Discord activity. Pictures and last-seen times follow each member's privacy settings.
  • Development marks. The founder can mark a message as a bug report or a suggestion and later record it as fixed, added or declined. That record keeps who wrote the message (their install, account and Discord id), the kind, the outcome, the dates, and the mark's label or the first 120 characters of the message, and it stays after the message itself has been removed from the chat. Your profile and the leaderboards show how many of yours were reported, fixed and added, under your profile's privacy setting. The pictures on a marked message are copied to Kizzey's file storage so the report can still be read after the message has left the chat. They are removed when the mark is taken off, when you delete your message, when you are erased, and 90 days after the item is closed.
  • Bug Hunter badge. The founder can give a member a Bug Hunter badge and take it back. The server keeps who holds it, when it was given and from which tool. It shows on your profile and beside your name in chat, and giving it can be announced in the room.
  • Forums, gallery and the developer wall. Posts, comments, shared presets and Smart Detection setups, votes, reactions and translations you submit are stored and shown as each feature shows them.
  • Supporter tag. If you have a supporter tier and chose to show your name on at least one donation, your tier is shown next to your name in chat, on the leaderboards, on your profile and on the donations board.
  • Audiocord Mobile. If you use Audiocord Mobile with Kizzey Link on, Kizzey's server keeps your Kizzey Link choices by your Discord id and gives your Kizzey app only the call details you allowed. The channel name is shared only if you allow it.
  • Encrypted group chats. Message content is encrypted on the phones in the group, and the server stores only the encrypted text, the group's name and members, and each member's public keys, so it cannot read what is said. The group's member list currently shares each member's install ID with the other members' apps.
  • Reports and moderation. If you report something, or something of yours is reported, that record is kept while it is dealt with. Mutes, suspensions and appeals are recorded too.

Nothing here is scanned or mined. Your messages are not read for analytics, not fed into Kizzey Learning and not used to profile you.

Your Discord activity in Kizzey Chat

  • On by default. While sharing is on, the activity on your Discord presence is shown in a line above your messages in Kizzey Chat, and on your chat profile, the leaderboards and the donations board.
  • What is shared. The activity type and name, its two lines of text, its pictures and their hover text, and when it started or ends, as Discord shows them, for example "Listening to Spotify" with the song. With "Include apps outside Kizzey" on, it also carries the custom status on your Discord account, its text and emoji.
  • Apps outside Kizzey. With "Include apps outside Kizzey" on, which is the default, the line can also show activity set by other apps, such as a game on your computer or Spotify. Kizzey reads it from your own Discord account, on your phone, only while Kizzey Chat is open.
  • Never your location. Nothing is shared while a presence that shows where you are is running.
  • Who sees it. Everybody who can read Kizzey Chat.
  • Live now. The Live now row at the top of Kizzey Chat shows the members who were in the chat in the last half hour, with their status and, if they share one, their activity, and their status note, or else their Discord custom status, over their picture. A viewer who turns on "Show everyone who is live" also sees members who share an activity without being in the chat, and older versions of the app show them all. "Show me in Live now" in RPC settings or Kizzey Chat takes your activity out of the row while it still shows above your messages.
  • Lyrics in time. With lyrics in Kizzey Chat on, the activity carries the current line and up to 8 upcoming lines of the song with their timing, so others see each line as it is sung. They are part of your current activity and are not kept after it.
  • Your phone's clock. Your phone sends its clock with the activity, so the server can line up the times others see when your clock is off. It is not stored.
  • Your local time. Off until you turn on "Show my local time in Kizzey Chat". Your shared activity then carries the difference between your clock and UTC, in minutes, so others can see what time it is for you. Never a time zone name or a place, though the difference does narrow down which part of the world you are in.
  • Your media volume and a song's tempo. Each off until you turn it on: your media volume as a percentage, and the tempo of the song in beats per minute, either the one Kizzey Lyrics knows or a number you tap or type yourself in the chat.
  • Your mood. A short line you write, up to 80 characters, and an emoji you pick, shown with your activity until it ends. Words on Kizzey's blocked list are masked.
  • Your streak, time played and recent activities. Each off until you turn it on. Your streak is how many days in a row you have had an RPC; for it the app reads your own profile, at most every 6 hours. Time played is the minutes your phone has counted on the current activity since you switched this on. Recent activities are the names of up to five activities you showed in the last 24 hours, with their type and time; a location is never listed.
  • More on your activity card. Six more switches, each off until you turn it on, each only while an activity is shared. Phone and sound: your phone's maker and model, and whether sound plays through the speaker, wired headphones or Bluetooth, never the name you gave your phone or the name of a headset. Today's numbers: minutes on screen today in the app your activity shows (only if Kizzey already has usage access), how many times the current song has played today, and how many RPC sessions you started. Air and sky: an air quality number, the moon phase and the hours of daylight rounded to the hour, never sunrise or sunset times. Phone stats: memory and storage in use as percentages, battery temperature, connection type and link speed, Android version, and time since the phone started, never a network's name. RPC buttons: the labels and addresses of the buttons your RPC shows on Discord. A link of your own: one label and one address. Only https addresses are shown, and a member who taps a button sees the real address and is asked before it opens, in their own browser.
  • All your activities. With "Show all my activities" on, which it is unless you turn it off, up to three more of the activities on your Discord account are shown as cards of their own, with their type, name, two lines, and their picture and start and end time where your phone has them. Before, only their number was sent. It needs "Include apps outside Kizzey" to be on.
  • Where each RPC shows. Every RPC has its own choice: Discord, Kizzey Chat, or both. "Discord only" keeps that RPC out of Kizzey Chat, and while it runs Kizzey Chat shows none of your other Discord activities either. "Kizzey Chat only" keeps it off Discord, also while Kizzey's server cannot be reached. If you are not on the Kizzey Network, every RPC is Discord only.
  • Following a song, and saving a picture. Opening the small live window on a member's music activity sends nothing new about you: it reads what the chat already reads. Saving an activity's picture downloads it from the address already on the card into your own gallery.
  • When your phone reports it. While Kizzey Chat is open, and in the background every few minutes, only if analytics is on, you are registered and you have opened Kizzey Chat before.
  • How long it is kept. Only your current activity, on your chat profile. It stops showing about 4 minutes after your phone last reported it, and is cleared at once when you turn sharing off. No history of it is kept.
  • Reactions. Members can react to the activity shown for you with any emoji, including their own Discord emojis, and you to theirs and to your own. The server keeps which member reacted to which activity, with the emoji, while that activity runs and never longer than 48 hours, and shows the counts. An activity that has been gone for 15 minutes, or an RPC you stopped and started again, comes back with no reactions. To tell the two apart, your phone sends a short fingerprint with each activity, made from what is playing, the kind of RPC and when it was started, and the server keeps for 2 days when each of your activities began and when it was last seen. While you are in Kizzey Chat you are shown who reacted to yours in the last 10 minutes, by name only when their profile is visible to everyone. You can also be notified when somebody reacts, see "Push notifications".
  • Reactions announced in the room. The first reaction a member gives an activity, each time that activity runs, can be posted in Kizzey Chat by Kizzey, with both Kizzey names, the emoji and the activity, for example "Ann reacted to Bea's Listening to Spotify". Only when both members have a Kizzey name and a profile visible to everyone, and never more than 20 a day for one member, 5 for one activity or 30 an hour for the room. A reaction to your own activity is never announced. Making your profile private stops your name appearing in these lines.
  • Turning it off. RPC settings, Home and Kizzey Chat: "Share my Discord activity" and "Include apps outside Kizzey". Privacy in your Kizzey profile, under What my presence shows, holds the switches for your weather and where it appears, mood, local time, streak, time played, recent activities, media volume, tempo, all your activities and the six extras. "Show other members' activity" hides everybody else's line on your phone.

Stories

A story is a photo or a video you post in Kizzey Chat for 24 hours. Posting one costs KCoin. Nothing here happens unless you post, open, like, react to, comment on or report a story.

  • What you post. The photo or video, your description, and a song tag if you add one (a title, an artist and one line of words). The server also keeps which install and account posted it, its size, type and dimensions, and when.
  • Photos are cleaned, videos are not. A photo is redrawn on your phone before it is sent, which removes the details a camera writes into the file, such as where it was taken. A video is sent as you picked it, so anything your camera wrote into the file goes with it.
  • Who sees a story. Every member in Kizzey Chat: the story, your Kizzey name and picture (your picture follows your photo privacy setting), the description, the song tag, how many likes, reactions and comments it has, and the comments with their writers' names.
  • Who viewed. When you open somebody's story the server keeps that you did and when, and shows it to the member who posted it and to the founder. The app tells you this once, before the first view is sent.
  • Likes, reactions and comments. Kept with your account and the time. Everyone sees the counts and the comments; who liked and who reacted is shown to the member who posted the story and to the founder.
  • Reports. A report keeps who reported, the reason and your note, for the founder. Three open reports hide a story until the founder has looked at it.
  • Telling the chat. If you switch it on when you post, Kizzey puts one line in Kizzey Chat saying that you posted a story, with your Kizzey name. It stays in the chat like any other message from Kizzey.
  • Saving. If you switch it on when you post, other members get a button that saves your story to their own phone, and that copy is theirs to keep. With it off the app saves nothing, though anyone who can see a story could still capture their screen.
  • The founder's tools. The founder can see every story, hidden ones included, with its comments and who liked, reacted to and viewed it, and can delete a comment, or hide, keep or delete a story, with or without giving the KCoin back.
  • On other phones. A story is shown from the server and is not kept on the phones of members who open it, unless you allowed saving and they pressed Save.
  • The KCoin. Your KCoin record gets a line saying a story was posted and what it cost, like any other spend.

Push notifications

Kizzey can deliver notifications through UnifiedPush, an open standard in which a push app you choose, such as ntfy or Sunup, keeps one connection open for all your apps. It is on by default and starts working once a push app is installed. Without one, or with "Classic check", Kizzey checks for news itself as before.

  • What the server keeps. For each phone using it: your install ID, the push address your push app gave Kizzey, the two encryption keys that belong to it, which kinds of notification you want, your app version, when it was last used and how often delivery failed.
  • Encrypted all the way. Every notification is encrypted on Kizzey's server with your phone's keys before it leaves. The push app and its server only ever carry the encrypted message and see when it was sent and how big it was, never what it says.
  • What a notification can hold. A title, a short text and a link, such as "Dom mentioned you" with the opening of the message, a new update, an announcement, the answer to a preset you shared, or who reacted to your presence and with which emoji.
  • Mentions and replies. To notify somebody the moment they are mentioned, the server reads each new Kizzey Chat message for @names and reply headers and matches them against the display names of members who turned mention notifications on. Nothing is kept from that check. A member whose Kizzey status is Do not disturb is sent none.
  • Reactions to your presence. When somebody reacts to your live activity in Kizzey Chat, Kizzey can tell you: one notification at once, then at most one summary every 5 minutes for the same activity, and no more than 30 a day. The reactor is named only when a room line could name them. Nothing is sent while your status is Do not disturb or while you are reading the chat. To build the summary the server keeps, for each of your activities, up to 3 names, up to 6 emojis and a count, for 2 days. It is in the copy of your data and erased with it. The switch is with the other kinds of notification.
  • Your notification settings. So the founder can see how many members a notification can reach, the app tells the server, with its check-in or when your phone registers for push, whether Android allows Kizzey's notifications, whether a Kizzey Chat channel is switched off in Android, whether a push app is connected, and which of your switches are on: mentions, replies, reactions, every message, sound, vibration, Do not disturb and the style. One row for each phone, replaced when something changes, shown to the founder as totals and as a list with your Kizzey name, and erased with your data.
  • Counts for the founder. How many phones use push, how many notifications were sent or failed, and which push services are used, such as ntfy.sh, as totals without install IDs.
  • How long it is kept. Until you turn push off or choose Classic check, or the push service reports the address as gone. The row is then deleted.
  • Turning it off. Kizzey Chat settings, or the UnifiedPush pill on Home. Each kind of notification also has its own switch.

Promote your content

Any member with a Kizzey profile can pay to show their own card on Home or above Kizzey Chat for a number of days. If you buy one:

  • What you submit. A title, one line of text, an optional https link with a button label, an accent colour, where it shows and whether it can be closed, and optionally a banner picture and a photo that you upload.
  • Your name and picture are shown with it. Every promotion says it was promoted by you, with your Kizzey display name and profile picture, to everybody who sees it. The app tells you this before you pay, and a promotion cannot be bought without a Kizzey display name.
  • Pictures you upload. They are stored privately in Kizzey's file storage and can be seen only by you and the founder until the promotion that uses them is paid for and approved. Uploading is free; you pay only for a promotion that uses them.
  • Review. The founder reads every promotion before it goes live, unless review has been switched off, and may send you a note about it.
  • An announcement. When a promotion is bought, Kizzey Chat can show a line such as "name bought ad space on Home for 7 days".
  • Likes and dislikes. Every ad and banner has a details sheet with its views, likes and dislikes. Your like or dislike is stored with your install ID, one per card, and shown only as totals.
  • App banners. A banner for an app offers a download served by Kizzey's server, checked the same way as a recommended app.
  • Views and taps. Each person who sees or taps a promotion is counted once a day, using their install ID. Those per-install rows are deleted after about 30 days, and you and the founder see only the totals.
  • The founder's log. Purchases, reviews and refunds are noted in the founder's log with your Kizzey name, the option and the price.
  • Your promotions list. Shows each promotion you bought, where it is up to, the founder's note, the price, the refund if any, and the view and tap totals.
  • After an erasure. Your promotions are unlinked from you, their text, link and name are blanked, and a running one comes down. The price and dates are kept as the accounting record of a payment.

Seeing promotions is up to you. About > Ads has a switch that hides every card marked Ad. If you are not on the Kizzey Network, community promotions are hidden unless you switch on "Show community promotions" there. Both choices are stored on your phone only. Announcements from the founder are not promotions and still show, unless they are marked Ad.

Payments

Donating, promoting your content and buying streak items are optional, and nothing here applies unless you pay.

  • Card payments go through Stripe. You type your card details into Stripe's own payment sheet, which also offers Google Pay where your phone has it. Your card number, expiry date and security code go to Stripe, never to Kizzey.
  • What Stripe receives from Kizzey. The amount, the currency, a short description such as "Kizzey ad space", and Kizzey's own references for the purchase, including your install IDs, so a payment can be matched to what it paid for. Stripe also collects what a card payment needs, such as a postcode for fraud checks, under its own privacy policy.
  • What Kizzey keeps. The amount, the currency, the date, whether it went through, Stripe's payment reference, what it was for and which Kizzey account it belongs to.
  • What Kizzey never receives. Your card number, expiry date or security code, your billing address or your email address.
  • Ko-fi. If you donate through Ko-fi, Ko-fi tells Kizzey the name you gave it, the amount, the currency and a transaction reference.
  • The donations board. Your name appears only if you tick the box for it. A card payment for a promotion can also be listed there if you tick "List me on the donations board"; it is a thank you and gives no donor benefits.
  • Prices in your currency. The app chooses a currency from your phone's region setting, for example Brazil gives BRL, and sends only that three-letter code. It does not send your region or your location.
  • The donor discount. Whether you get it is worked out from the donations already recorded against your Kizzey account. Nothing new is collected for it.
  • Refunds. KCoin is paid back through your wallet's history. A card refund goes back through Stripe to the card you paid with.

KCoin, streaks and the shop

  • Your wallet. Your KCoin balance and a history of every amount earned, spent, gifted or refunded, with the reason.
  • Items. What you own from the shop, what you have equipped, unlocks and when they end, gifts you sent or received, giveaway entries, redeemed codes and your clan.
  • Your chat streak. The number of days in a row you have sent a message, with any freezes, streak saves and recoveries, stored on your Kizzey Chat profile.
  • Streak saves and recoveries. A streak save protects your streak for the number of days you choose, and a recovery puts back a streak that broke in the last few days. What you bought, when, and what it cost are recorded like any other purchase.
  • Moments. Collectibles earned from running counts the server keeps for you: minutes with a presence live, your presence streak and level, the RPC modes you used, presences you shared in Kizzey Chat and those shared with a lyric line, reactions given and received, and messages sent. It keeps which moments you earned and when. A new one can be announced in Kizzey Chat with your Kizzey name, at most twice a day, and your earned moments show on your profile under the same privacy settings as the rest of it. Two more counts sit behind the newer moments: how many different features you have used and on how many days you chatted. You can choose up to three earned moments to show beside your name in Kizzey Chat and on your profile; those are shown even when your profile is private, because you picked them to show. Pinning moments to your Home stays on your phone.

The progress card, notices and What's new

  • The progress card. A live card on Home showing what is being built for the next version. Each step names who worked on it, which can be an AI model such as "Opus 5.5" or the founder.
  • Likes on a step. Stored with your install ID so that each install can like a step once and take the like back. The app and the founder's console show only how many likes a step has, never who gave them.
  • Seen. Opening the card marks your install as having seen it, once for each new progress list, and the card shows only the total number of people who have seen it.
  • Notices from the founder. While analytics is on, the app records that a notice was shown to you and which button closed it, by the notice's id only. The server keeps one line per notice and install, so the founder can see how many people received and closed each notice. A rating you give a notice is stored.
  • What's new after an update. Shown once, on the first launch after you update. Your phone decides this by comparing version numbers it keeps itself. The request for the text carries the version number, not your install ID. A first install never sees it.

Updates and the Kizzey Network

  • On the Kizzey Network, Kizzey checks for updates by itself. A quick check asks only for the newest version on your update channel. The full check carries your phone's processor type, your version number, your channel and whether "Update automatically" is on, and no install ID unless analytics is on.
  • With analytics on, the server also records which update was offered to you, how far the update screen got, and whether automatic updates are on, so that an update that fails half way can be found and fixed.
  • Downloads. An update is downloaded over HTTPS and checked against its published SHA-256 fingerprint before Android is asked to install it. The download is counted against the release, not against you.
  • Not on the Kizzey Network, Kizzey makes no automatic update checks and shows no update screen or update card of its own. Settings > Updates points you to the releases on Codeberg, at codeberg.org/UnpackedX/Kizzey/releases, and has a Check button that runs only when you press it. Codeberg sees your visit as any website would.
  • Is the network there. To notice when Kizzey's server cannot be reached or has been switched off, the app asks one small address now and then while it is open. The request carries the app version and nothing about you. When the server is away, the screens that need it are hidden and a "Kizzey Network Offline" line says so.
  • Offline mode. A switch in About stops every connection from the app to Kizzey's server until you turn it off again: the check-in, Kizzey Chat, update checks, push, the gallery, promotions and the rest. Notifications that still arrive through your push app are dropped on the phone. Your Discord presence keeps working, and lyrics lookups and the weather go to their own services as before.

Kept on your phone only

  • Logs. Kizzey's own Logs record what it did, and now also why Android closed Kizzey last time, such as low memory, and who stopped a presence. They stay on your phone unless you send them, or the founder asks for a diagnostics snapshot as described below.
  • Presence History. The presences you ran, with their lines and pictures, kept on your phone only, at most 80 entries, with place names removed. You can delete entries or clear it.
  • Live lyrics. The lyrics you import, paste or look up, their timing, your sync nudges, tempo readings and anything worked out from a song file stay on your phone, outside Google backup. Nothing about them leaves it unless you look lyrics up online, turn on Lyrics learning, or use Enhanced Processing.
  • Settings backup. Export settings writes a file to Documents/Kizzey on your phone. It holds your Discord login only if you turn that on, and goes nowhere unless you share it.
  • Emulation RPC. To name the game you are playing, Kizzey reads the game notification that the Mupen64Plus AE emulator posts on your phone: its title and its cover. Nothing else from your notifications is used. The name and the cover become your presence on Discord, and in Kizzey Chat unless that RPC is set to Discord only.
  • Network state on your presence. If you place a network line on an RPC, Kizzey reads the kind of connection and its speed estimate on your phone and puts those words on your presence. Never the network's name, your carrier or an address.

Crash reports, diagnostics and Kizzey Learning

  • Crash reports are sent only while analytics is on. With analytics off, a crash is written to the log on your phone and nothing leaves it, and anything still waiting to be sent is deleted.
  • What a crash report holds. The kind of failure, a fingerprint of where it happened, the first line of the error, the stack trace, the thread name, the Kizzey version, the Android version, your phone's maker, model and chipset, and the time.
  • No IP address and no country. A crash report is never used to locate anybody. At most 20 are accepted per install per hour, and a repeat of the same fault within ten minutes is counted rather than stored again.
  • Diagnostics snapshots. While analytics is on, the founder can ask your phone for a snapshot of Kizzey's own log, to look into a problem such as a bug on the Beta channel. Never other apps' data, your messages or your token.
  • Enhanced diagnostics. Off by default. It is offered as crash reports in setup and as Enhance Diagnostic Collection in the Shizuku section. When on, a requested snapshot can also include the media, audio and battery state Kizzey reads through Shizuku, and the founder can ask for one even while analytics is off.
  • Kizzey Learning. A separate choice, off until you agree. It counts how reliably the app runs and which community features get used, such as connection type and speed, how cleanly presence connects, start time and how many presets you create. It counts that something happened, never what it was, and can be switched off on its own.

Lyrics learning

  • Off until you agree. A separate choice in Live lyrics, under Learning. Turning it on shows what is sent before anything is sent.
  • What is sent, for each song you play with Live lyrics. The song's title, artist, album and length, which player app was playing it, its tempo and how that was found (tapped by you, measured from the song file on your phone, looked up online, or Enhanced Processing), whether lyrics were found, what kind (timed, plain, none or instrumental) and where from, how the lines were timed, how far you nudged the sync, how many taps, how sure Kizzey was, and how often and for how long you played it.
  • Never sent. The lyric text, any audio, or anything you type.
  • Why. So that songs without a timed lyric file get better timing for everyone. The founder sees totals and per-song measures.
  • Tied to your install. So that it can be deleted. Turning it off deletes everything it sent, and so does erasure.
  • When it is sent. Only while the switch is on, only for songs Kizzey is already following, in batches of at most 50.

Enhanced Processing

  • Off until you turn it on. A separate choice in Live lyrics, under Learning, shown only when Kizzey offers it. Turning it on shows what is sent before anything is sent.
  • What it does. For a song with plain lyrics, it works out when each line is sung by listening to the song file you pick, on processing hardware Kizzey runs. No other company processes it.
  • What is sent, only for a song you choose to process. A low quality, mono copy of that song file, made on your phone, with its lyric lines, title, artist and length.
  • What comes back. When each line starts and ends, how sure Kizzey is, and the song's tempo. They are saved on your phone.
  • How long the audio is kept. Deleted as soon as processing ends, and never kept longer than an hour, whatever happens. The lyric lines you sent are deleted when the job ends.
  • A usage record. When, which song, how long it took, the app version and the country your connection came from, never your IP address, kept for 30 days for fair use limits.
  • Turning it off. Cancels anything waiting and deletes its audio. There is a daily limit per member so everybody gets a turn.

Security reports

Kizzey checks that it is really talking to its own server by comparing the server's certificate with a list built into the app. If the certificate matches none of them, which is what an interception would look like, the app sends a report, at most once an hour and whether or not analytics is on.

  • What a report holds. Your install ID, the server name, the fingerprints of the certificates your phone was shown, and whether the check was being enforced.
  • What is kept. The server stores the report as an event line keyed by a one-way hash of your install ID, not the ID itself, and posts the server name and fingerprints, without any id, to the founder's log.

Records kept as proof

  • Agreeing to a policy. When you agree to this policy, the terms of use or the licence agreement, Kizzey records your install ID, your Discord id if known, which document, which revision, your app version and the time. This is kept even after an erasure, because it is the record of what you agreed to.
  • Data requests. When you ask for a copy or an erasure, the request, the decision, the reason given and what was removed are recorded. This record is kept even when everything else is erased, because it is the proof your request was honoured. It holds no messages, no device data and no IP address.
  • A right to be forgotten block. Your install ID and a flag, kept for as long as the block stands, because keeping the door closed is what you asked for.

Getting an old account back

If you clear the app's data and a second profile is created, you can ask for your old account back. The founder has a tool for this, checked first with a dry run that lists every step. It makes the install you use now the holder of everything the old one had: wallet and history, items, clan, profile cards, donor records, promotions and payments, device links, chat XP, streak and active days. Blank profile details are filled in from the old profile, and the old profile is taken off the leaderboards but kept, because old messages still name it. Messages sent in the last 14 days stay counted against the install that sent them.

Who receives data

Everyone who handles any of it, in full:

  • Cloudflare. Hosts the server, the database and uploaded files. A processor: it does nothing else with the data.
  • Discord. Your presence and the account features you use, sent from your phone with your token. Your own activity, read by your phone while Kizzey Chat is open. The one registration check. Chat pictures, files and voice notes, stored through a private channel. The roles the Kizzey bot gives in the Kizzey Discord server, and short log lines in that server: the founder's own channel, and a staff channel where install IDs and Discord ids are removed but Kizzey names can appear.
  • The presence picture service. Discord only shows pictures it hosts itself. So the album art, app icon, game cover or picture on your presence is uploaded from your phone to the picture service the app is built to use (kizzy-api.cjjdxhdjd.workers.dev), which places it on Discord's network and returns its address. The upload carries the picture and nothing that names you.
  • Stripe. Card payments, including Google Pay inside Stripe's sheet.
  • Ko-fi. Only if you donate through Ko-fi.
  • Klipy. GIF searches, sent by Kizzey's server with a one-way hash instead of your install ID.
  • Open-Meteo. Only if you use the weather: the city you typed or a rounded position, sent from your phone. With "Air and sky" on, its air quality service is asked with the same rounded position.
  • LRCLIB. Only if you look up lyrics online in Live lyrics: the song's title, artist, album and length, sent from your phone to lrclib.net.
  • Your push service. Only if you use push notifications: the push app you chose and its server, such as ntfy.sh, carry encrypted notifications.
  • Google or your phone maker. Only if you use Where you are: Android's geocoder turns a reading into a place name.
  • Codeberg. Hosts the source code, the releases and the website. It sees your visits as any website host would.

Data is processed on networks that span several countries, including outside the UK and the EEA, and each provider's own transfer safeguards apply.

What is never collected

  • Your Discord messages. Nothing you send or read on Discord itself. Kizzey Chat is a separate thing, described above.
  • Your Discord token, kept. It is used once to prove who you are when you register, and never stored on the server.
  • Account details. Your email address, your server list, your friends or your direct messages.
  • Card details. Your card number, expiry date or security code.
  • Media content. No song files, audio, screen or video, only whether a feature is on. The one exception is a song you choose to send with Enhanced Processing, which is deleted as soon as it has been processed.
  • Your IP address, stored. Cloudflare sees it in order to deliver each request. Kizzey does not store it, and uses only the country Cloudflare works out from it, for the new install line in the founder's log and the Enhanced Processing usage record.
  • Precise location, files and contacts. Never requested. Approximate location stays on your phone, apart from the rounded position sent to Open-Meteo if you choose the weather for your area.
  • Special category data. Nothing about health, biometrics, politics, religion, sexual orientation or ethnicity, and no feature that would need it.
  • Profiling. There is no automated decision making and no profiling that has an effect on you.

Why each thing is allowed

Under the UK GDPR and the EU GDPR, holding data needs a stated reason. Here it is for every category above:

  • The one-time install count and the device hash. Legitimate interests: counting installs once, and making sure clearing app data does not destroy the account you built. It is not covered by your analytics consent and is not claimed to be. You can object.
  • The analytics check-in, crash reports, notices and update records. Consent: you choose analytics in setup and can switch it off in one tap.
  • Registering on the Kizzey Network. Contract: it creates the Kizzey account that the community features run on.
  • Where you are and the weather. Consent, and it never reaches Kizzey's server.
  • Push notifications and mention checks. Legitimate interests and contract: delivering the notifications you asked for, on by default and off in one tap.
  • Your Discord activity in Kizzey Chat. Legitimate interests: showing what members are doing is part of the room, weighed against your interests. It never includes location, is off in one tap, and nothing is kept once it stops.
  • Kizzey Learning, Lyrics learning, Enhanced Processing and enhanced diagnostics. Consent: separate, off by default, each with its own switch.
  • The Enhanced Processing usage record. Legitimate interests: fair daily limits and keeping the service from being abused, kept for 30 days.
  • Your name on the active counts. Consent: off by default, with its own switch.
  • Kizzey Chat, profiles, the community, statuses, who is active, development records, reactions and moments, the gallery, recommended apps, KCoin, promotions and purchases. Contract: you asked to take part, and storing and showing what you post or buy is the service itself.
  • Promotion view counts, security reports, moderation and the founder's log. Legitimate interests: keeping counts honest, spotting interception, keeping a shared room usable and running the service, weighed against your interests.
  • Payment records. Contract and legal obligation: a payment has to be recorded, and accounting rules require it to be kept.
  • Agreement and data request records. Legal obligation and legitimate interests: proof of what you agreed to and that your request was honoured.

How long it is kept

Unless a line here says otherwise, what Kizzey holds is kept until you ask for it to be deleted. There is no rolling purge. What there is instead of a timer is a button.

  • Promotion view and tap rows. About 30 days, then deleted. The totals stay with the promotion.
  • Recommended app views, opens and downloads. 120 days, then deleted.
  • Your push registration. Until you turn push off or the push service reports the address as gone.
  • Your Discord activity in Kizzey Chat. Only the current one, which stops showing about 4 minutes after your phone last reported it.
  • Reactions to a presence. While the activity runs, and never longer than 48 hours. When each activity began and was last seen: 2 days.
  • Records behind reaction notifications. 2 days.
  • Records behind status announcements. 2 days, a fingerprint of the note and the time only.
  • Your notification settings. One row for each phone, replaced when something changes.
  • Your time, mood, streak, time played, recent activities, volume, tempo and the extras on your card in Kizzey Chat. Part of your current activity only, gone when it ends.
  • Your weather in Kizzey Chat. One record for each phone, replaced when it changes, deleted at once when you switch it off, and dropped after a day without an update. Shown to others only while the reading is less than 4 hours old.
  • Your status. Until you change it. A status with an end time goes back to online when it ends.
  • Which features are running. Only the latest set, replaced at each check-in and removed when you turn analytics off.
  • Development records. Until you ask for erasure, which removes them with everything else.
  • Pictures on development marks. Until the mark is taken off, you delete the message, you are erased, or 90 days after the item is closed.
  • Bug Hunter badge. Until it is taken back or you are erased.
  • Stories. The photo or video, its description, likes, reactions, comments, views and reports: until the story ends 24 hours after posting, or at once when you or the founder delete it. An upload that was never posted: 1 hour. The KCoin line, a moderation log line without the content (that a story of a given size was posted, reported or removed), and a count of your uploads for the day stay as other records of those kinds do.
  • Lyrics learning. Until you turn it off or ask for erasure. The day by day counts behind the founder's charts are kept for 120 days.
  • Enhanced Processing. The audio is deleted as soon as processing ends and never kept longer than an hour, the lyric lines when the job ends, and the usage record after 30 days.
  • Gallery pictures. Kept with the preset. Pictures never submitted are deleted after a day.
  • The founder's activity log. Roughly its most recent 5,000 lines.
  • Your approximate location. Never kept by Kizzey. The last weather reading stays on your phone.
  • Payment records. Kept for accounting. After an erasure they stay, but are no longer linked to you.
  • Agreement records, data request records and a forgotten block. Kept, for the reasons in "Records kept as proof".
  • Pictures uploaded for a promotion. Kept in Kizzey's file storage. An erasure removes your rows from the database; if you also want these pictures deleted, say so in your request or email cryptdex@protonmail.com.
  • What Stripe, Ko-fi or Discord hold. Their own retention applies to what they collect, and some payment records must be kept by law.

Reinstalling on the same phone is not a clean break. The device hash lets the server reconnect a new install to the account the old one held. If a clean break is what you want, ask for erasure, which clears the hash and that link with everything else.

Your rights, as buttons

Open Kizzey Profile, then Your data. Each button opens a request that a person reads and answers, normally within a few days and always within one month, at no charge. You see it as waiting, then approved or declined, always with a written reason.

  • Request a copy of my data. A machine readable JSON copy of every row held against your install ID, offered once approved as a single download that stays available for 48 hours.
  • Request message erasure. Every message you sent in Kizzey Chat is deleted, with its pictures, audio, polls, pins and reactions, and so are your reactions on other people's messages. Your profile, KCoin and level are not touched.
  • Request deletion of my data. Everything goes: profile, messages, presets, appreciations, wallet, diagnostics, donation links and the install row. You can start again afterwards.
  • Right to be forgotten. Erasure, and chat access closed permanently. Only the install ID needed to enforce that is kept. Reversible only by asking to be restored, to an empty profile.
  • Correction. Everything that describes you is editable by you in the app.
  • Withdrawing consent and objecting. Each switch in "Turning things off" works at once. To object to the device hash or anything else held under legitimate interests, email cryptdex@protonmail.com.

If you are unhappy with an answer, email cryptdex@protonmail.com and it will be looked at again. You can also complain to a data protection authority: in the UK the Information Commissioner's Office, and in the EU the authority for the country you live in.

Turning things off

  • Analytics. Settings: off stops the check-in, crash reports, notice records and automatic registration.
  • Kizzey Learning, Lyrics learning, Enhanced Processing and enhanced diagnostics. Each has its own switch. Lyrics learning and Enhanced Processing are in Live lyrics, under Learning: turning Lyrics learning off deletes what it sent, and turning Enhanced Processing off cancels anything waiting and deletes its audio.
  • Your presence text. "Share RPC to Developer" in Settings.
  • Where you are and the weather. Switch them off, or take the location permission away in Android settings.
  • Push notifications. Kizzey Chat settings, or the UnifiedPush pill on Home.
  • Your Discord activity in Kizzey Chat. RPC settings, Home and Kizzey Chat.
  • Recommended apps and the gallery on Home. RPC settings, Home and Kizzey Chat.
  • Promotions. About > Ads hides every card marked Ad. Off the Kizzey Network they are hidden unless you switch them on.
  • Leaderboards and profile fields. Your profile's privacy settings.
  • Your name on the active counts, and counting Weather and Android Auto. Kizzey Chat's privacy settings. All three are off unless you switch them on.
  • Your status. Pick Invisible, or clear it, in Kizzey Chat.
  • Status announcements. "Announce new notes in the chat" in the status picker.
  • Live now. "Show me in Live now" in RPC settings or Kizzey Chat.
  • Notifications for reactions. Kizzey Chat settings, with the other kinds of notification.
  • Updates. "Update automatically" is a switch in Settings > Updates.
  • Everything that goes through Kizzey's server. Offline mode in About.
  • What your presence shows in Kizzey Chat. Privacy in your Kizzey profile, under What my presence shows: weather and where it appears, mood, local time, streak, time played, recent activities, media volume, tempo, your other activities, and the extras: phone and sound, today's numbers, air and sky, phone stats, RPC buttons and your own link. Switching the weather off removes its record from the server at once.
  • Where an RPC shows. The choice on each RPC's own screen.
  • Sound, vibration and every-message notifications. Off unless you turn them on, in Kizzey Chat settings.
  • Stories. Do not post one, and do not open others': a view is only sent when you open a story. Telling the chat and saving are each off unless you switch them on for that story. Delete your own story from the story itself, which removes it for everyone at once; a copy somebody already saved, and the line in the chat, are not removed by that.

How it is protected

  • In transit. Every request to Kizzey's server is HTTPS, and the app checks the server's certificate against its own list.
  • At rest. The database is Cloudflare D1, which Cloudflare encrypts at rest.
  • Access. Only the founder can reach the database and the console. The admin routes are locked by a secret held by Cloudflare, never in the app or in the public source.
  • If there is ever a breach. It will be announced in the app within 72 hours of being found, naming what was affected, and the relevant authority will be told where the law requires it.
  • An honest limit. Kizzey is one person's open source project, not an audited service. What it offers instead is a small data set, published source code anyone can read at codeberg.org/UnpackedX/Kizzey, and erasure on request. If the code and this policy ever disagree, the code is the truth and this policy is the bug: report it and it gets fixed.

Children

Kizzey needs a Discord account, and Discord's terms set a minimum age of 13, or higher where local law requires it. Kizzey is not meant for anyone below that age and does not knowingly hold their data. If you believe a child's data is held here, email cryptdex@protonmail.com and it will be erased without a formal request.

Changes to this policy

The date at the top is the last time this document changed. A changed version is announced in the app and asks for your agreement again rather than being edited in quietly. Every earlier revision can be read in the app, from this document's history, with the date it took effect.

What earlier versions added, as each of them described it:

Updated on 1 October 2026 for Kizzey 8.4.4. New:

  • Notifications for reactions. When somebody reacts to your live presence in Kizzey Chat, Kizzey can notify you. To gather several reactions into one notification, the server keeps a small record for 2 days. See "Push notifications" below.
  • Live now. The Live now row lists every member sharing a live activity, and members with a status note, even when they are not in the chat. "Show me in Live now" takes you out of it.
  • Your Discord custom status. With "Include apps outside Kizzey" on, the custom status on your Discord account, its text and emoji, is shared with your activity and shown over your picture in Live now.
  • Lyrics in time. When lyrics in Kizzey Chat are on, your shared activity carries the next few lines of the song with their timing, and your phone sends its clock so the times others see line up. The clock is not kept.
  • Status notes in the room. A new status note can be announced in Kizzey Chat, unless you switch that off in the status picker.
  • Your data. An approved copy of your data can now be downloaded once within 48 hours, instead of within 10 minutes.
  • Your counts on the profile card. The Kizzey profile card you send into Kizzey Chat can show your bugs fixed and your suggestions, if you tick them.

On 30 September 2026, for Kizzey 8.4.3-pre-4:

  • Statuses. You can pick a status in Kizzey Chat (online, away, do not disturb or invisible) with a short note and an emoji. The server keeps your choice until you change it or it ends. See "Kizzey Chat, profiles and the community" below.
  • Who is active. Kizzey Chat lists the members who were there in the last half hour, with their status and, if they share it, their Discord activity. Invisible members are never listed.
  • Active counts for more features. The check-in now says which of a few features are running, so Kizzey can show how many members use each one. Weather and Android Auto are counted only if you allow it, your location never is, and your name is shown on these counts only if you choose it, to other members on the Kizzey Network. See "The check-in, while analytics is on" below.
  • Development marks. A message the founder marks as a bug or a suggestion now keeps a record of the outcome, after the message itself has left the chat, so your profile and the leaderboards can show how many of your reports were fixed and your ideas added.
  • Moments. More moments, two new counts behind them, and you can choose up to three to show beside your name in chat and on your profile.
  • Reactions. Reactions to a presence can use any emoji and your own Discord emojis, and the member you reacted to is shown who reacted recently.

On 29 September 2026, for Kizzey 8.4.3-pre-3:

  • Lyrics learning. A new choice, off until you agree. It sends details about the songs you play with Live lyrics and how their lyrics were timed, never the lyric text and never audio. See "Lyrics learning" below.
  • Enhanced Processing. A new choice, off until you agree. For a song you pick, a low quality copy of its audio is sent to Kizzey to time its lyrics, and deleted as soon as that is done. See "Enhanced Processing" below.
  • Reactions to a presence. Members can react to each other's activity in Kizzey Chat. Who reacted is kept for 48 hours, and a first reaction can be announced in the room by name.
  • Moments. Collectibles earned from your presence and chat activity, which can be announced in Kizzey Chat and shown on your profile.
  • Notices. The server now keeps, for each notice, which installs with analytics on were shown it and which button closed it.
  • Corrections. Live lyrics, added in 8.4.3-pre-2, looks lyrics up on LRCLIB when you ask and keeps your lyrics on your phone. Both are now described here.

The version of 26 September 2026, written for Kizzey 8.4.3, replaced the policy of 11 September 2026 at kizzeyrpc.xyz/privacy and was the first published inside the app. New in 8.4.3:

  • Push notifications. Kizzey can deliver notifications through UnifiedPush. The server keeps your phone's push address and two encryption keys, and the push service only ever carries encrypted messages.
  • Mentions. The server now reads new Kizzey Chat messages for @mentions and replies, so the person mentioned can be notified at once.
  • Your Discord activity in Kizzey Chat. What your Discord presence shows is now shared above your chat messages. It is on by default, and the switch is in RPC settings.
  • Supporter tag. Supporters who chose to show their name on a donation carry a supporter tag in chat.
  • Recommended apps and app banners. Kizzey's server now serves app downloads and stores reactions, views and download counts.
  • Likes and dislikes on promotions. Every ad and banner has a details sheet with views, likes and dislikes.
  • The preset gallery. A shared preset can carry an icon and a screenshot, waits for review before it is public, and can be reported.
  • Location and weather. Place names are now kept out of Presence History and out of "Share RPC to Developer", and the weather can use a rounded position instead of a typed city.
  • Why Kizzey closed. Kizzey's own Logs now record why Android closed the app last time, on your phone only.

Also changed since 11 September 2026:

  • Promote your content. Paid promotions are new. This policy says what you submit, how uploaded pictures are held, how review and refunds work, and that your Kizzey name and picture are shown on every promotion you buy.
  • Card payments for extras. Promotions and streak items can be paid for by card through Stripe, as donations already could. Kizzey never sees your card number.
  • Prices in your own currency. The app sends a currency code chosen from your phone's region setting, and donors can get a discount.
  • Streak saves and recoveries. New items that protect your chat streak for the number of days you choose, or put back one that broke.
  • Likes and seen on the progress card. Counted once per install and shown only as totals.
  • What's new after an update. A screen shown once after an update, decided on your phone.
  • Not on the Kizzey Network. Kizzey then makes no automatic update checks and shows no community promotions unless you switch them on.
  • Getting an old account back. The founder can move an old account onto the install you use now when you ask.
  • Reports the app sends by itself. Certificate pinning reports, crash reports and promotion view counts are each described, including which ones are sent with analytics off.
  • Corrections. The previous policy said your Discord token never reaches Kizzey, that chat is relayed to Discord, that the check-in never carries what your presence shows, and that nothing about where you connect from is kept. The truth is below: registering sends your token to Kizzey's server to prove who you are, chat text stays on Kizzey's own database while pictures and files are stored through a private Discord channel, the optional "Share RPC to Developer" switch sends what your presence shows, and the founder's log notes the country of a new install. Earlier wording also said a place shown on your presence was never stored: before 8.4.3 the Location card's town could be saved in Presence History on your phone and was included in "Share RPC to Developer" when that switch was on.