1. Identity of the data controller
Data controller: RG RESTORANT GIDA VE PAZARLAMA LİMİTED ŞİRKETİ (RG Technology). MERSIS No: 0735230059900001, Trade Registry No: 1102427, address: Habibler Mah. A-1 Cad. B No: 21-23 İç Kapı No: 13, Sultangazi / Istanbul / Türkiye.
This notice covers website visitors, people who contact us by email, support-request owners and current or future users of the EVREN mobile game.
2. Categories of personal data
The website has no membership system. When the support form is used, only the identity, contact, device/platform and message information entered in the form is processed to receive and answer the request. Progress in the current EVREN development build is stored locally on the device; the definitive data set will be updated when online accounts and ranking features are released.
3. Purposes of processing
- Providing, operating and securing the website and mobile game.
- Operating player accounts, progress, scores, rankings, challenges and store functions.
- Receiving and answering communication and support requests and monitoring service quality.
- Detecting and preventing errors, outages, cheating, fraud and abuse.
- Managing information security, business continuity and technical capacity.
- Meeting legal obligations and responding to authorised-authority requests.
- Establishing, exercising or protecting a right and managing disputes.
4. Legal grounds
Depending on the processing activity, personal data is processed under Article 5/2 of the KVKK where expressly provided by law, directly related to entering into or performing a contract, necessary for the controller's legal obligation, necessary for the establishment, exercise or protection of a right, or necessary for a legitimate interest without harming fundamental rights. Processing that legally requires explicit consent is not started without that consent.
5. Collection methods
Data may be collected automatically or partly automatically through the support form, web-server and security logs, corporate email correspondence, the mobile application, local device storage and, if enabled, app-store and platform-account integrations; and by non-automatic means through written applications.
6. Recipients and transfer purposes
Infrastructure providers
Hosting, email, security, error tracking and technical continuity.
Platforms and stores
Account, download, payment verification, cloud-save and store functions.
Advisers
Technical incidents, audits, legal requests and dispute management.
Authorised authorities
Meeting a legal obligation or a duly issued official request.
Transfers are relevant, limited and proportionate to their purpose. Necessary controls are applied so service providers process data only under instructions and contract.
7. International transfers
If website hosting, email, app-store, account or security infrastructure is located outside Türkiye, personal data may be transferred abroad subject to the conditions, appropriate safeguards and transfer mechanisms in Article 9 of the KVKK. Recipient groups and transfer information will be updated in the relevant policies when production providers are finalised.
8. Retention and disposal
Data is retained only for the period required by the processing purpose and applicable legal retention or limitation periods. Local game data remains until cleared from the user's device; support correspondence for resolution and legal requirements; and technical logs for the shortest period needed for security. When the period ends, data is deleted, destroyed or anonymised.
9. Data-security measures
Access to personal data is limited according to need; account and system access is protected; secure connection methods are used; access and incident records are maintained; and up-to-date software and provider controls are applied. Incident assessment and legally required notification processes are operated for potential breaches.
10. Your rights under Article 11 of the KVKK
- Learn whether your personal data is processed and request information if it is.
- Learn the purpose of processing and whether data is used in line with that purpose.
- Know the third parties to whom data is transferred in Türkiye or abroad.
- Request correction of incomplete or inaccurate data.
- Request deletion or destruction under the conditions in the law.
- Request that correction and deletion/destruction be notified to recipients.
- Object to a result against you produced exclusively by automated analysis.
- Request compensation if you suffer damage through unlawful processing.
11. How to apply
Send your application to info@rgtechnology.com.tr with “Personal Data Request” in the subject line, or submit it in writing to the company's registered address. Include your name, request, preferred response channel and sufficient information to help verify identity. For security, do not send more identity documentation than necessary.
Applications are concluded as soon as possible according to their nature and within the period prescribed by law. If the process creates an additional cost, a fee under the tariff set by the Personal Data Protection Board may be requested.
