Privacy
Local-first by default.
QuoAnno does not require an account. Endless Mode, Four Points and Daily results remain local-first, while the Daily archive, multiplayer modes and question-review queue store only the information needed to provide those features.
Endless Mode
Your display name, selected categories, score, streak and played-question IDs are stored in this browser using local storage. Clearing site data or using another browser or device can reset that progress.
Four Points
Your current Four Points session, selected categories, answers, score and mode-specific statistics are stored only in this browser. They do not sync between browsers or devices and are removed when you clear site data. Naming yourself on the result screen is optional and uses the same local player profile as the other modes.
Daily Mix
Today's progress, guesses, score, completion time, Daily streak and best-score statistics are stored only in this browser. Practice replays do not change the official result. QuoAnno stores each Daily's UTC date, number, generation version and ordered question IDs in PostgreSQL so previous Dailies survive deployments; this archive contains no player names, guesses, scores or browser identifiers. Daily results do not sync between browsers or devices. Naming yourself on the result screen is optional; the name is kept in the same local player profile the other modes use, and the Daily is fully playable without one.
Live Party
When you create or join a room, QuoAnno temporarily stores your display name, room membership, guesses, scores and operational timestamps in PostgreSQL. Anonymous reconnect credentials are stored in your browser. No email address or account is required, and IP addresses are not used as player identities.
Room expiry
Active rooms expire after six hours. Finished rooms are retained for up to 24 hours so players can reconnect to the final results, after which the room, memberships, answers and scores are deleted together. The V1 service also uses short-lived, non-reversible address fingerprints in application memory for abuse-rate limiting; they are not stored in the database and disappear when the process restarts.
Challenge
When you create or accept a Challenge, QuoAnno temporarily stores the challenge name, creator display name, selected categories, fixed question IDs, participant display names, guesses, scores and operational timestamps. An anonymous participant token is stored in your browser so the same official attempt can be restored. Display names are labels, not verified identities.
Challenge expiry
Challenges and all associated memberships, answers and scores are deleted after 30 days. New attempts and result viewing stop when that deletion occurs. Short-lived, non-reversible address fingerprints used for creation and join rate limits remain only in application memory.
Question suggestions
If you suggest a question, QuoAnno stores the event title, category, BC or AD year, date certainty, explanation, source link, optional editorial notes and review status in PostgreSQL. The form does not ask for your name, email address or an account. Suggestions remain private to the editorial review process and never enter the game automatically. They are retained until reviewed or deleted.
Submission rate limiting uses the same short-lived, non-reversible address fingerprint described above. The fingerprint remains in application memory and is not stored with the suggestion.
Acquisition analytics
Analytics is disabled by default. When a deployment enables it, QuoAnno records a small set of product events such as landing, starting a mode, completing the Daily, and sharing. Standard campaign tags — source, medium, campaign, and content — are stored as first-touch attribution in local storage for up to 90 days and as current-session attribution in session storage. Values are shortened and restricted to campaign-safe characters; email addresses, URLs, and control characters are rejected. QuoAnno does not include player names, room or challenge codes, questions, dates, guesses, answers, full page URLs, or referrer URLs in these events.
The built-in console provider is for development and sends no analytics traffic over the network. The product-event pipeline described above loads no third-party tracking script. A deployment that adds a further external provider must update this notice and meet its applicable consent and legal requirements before enabling it.
Visitor measurement
QuoAnno loads Simple Analytics to count page views. It is cookieless and sets no identifier in your browser, so it cannot follow you between sessions, devices or other websites. It records aggregate information about the visit — the page viewed, the referring site, and coarse country, browser and device type — and does not build a visitor profile or sell data. No player name, score, guess, room code or challenge code is sent to it.
This deployment is configured with collect-dnt enabled, which means page views are counted even when your browser sends a Do Not Track signal. To opt out entirely, block simpleanalyticscdn.com in your browser or an extension; QuoAnno remains fully playable without it.