The short version. HappyNikki.io is an independent apps and games studio run by Martin Perreault in Quebec, Canada. These terms cover your HappyNikki.io account and the apps and games we publish here.
We collect only the data needed to run your account, the products you use, and to process payments. We do not sell your personal data and we run no third-party advertising or behavioural tracking. Card payments are handled by our payment processors — we never see or store your card number.
Where a product offers optional virtual items, those items have no cash value and cannot be cashed out, transferred, or exchanged for anything outside the product. Some products carry their own additional terms — see §1.3.
Support: our contact form.
1. Terms of Service
Effective 2026-07-29. These terms are an agreement between you and HappyNikki.io, an independent apps and games studio operated by Martin Perreault in the Province of Quebec, Canada ("we", "us", "our"). They cover the happynikki.io website, your HappyNikki.io account, and the apps and games we publish on it.
By creating an account, or by using anything on the site, you agree to these terms. If you do not agree, do not use the site. Individual products may set their own additional requirements — see §1.3.
1.1 Your account
- One account per person. Do not create multiple accounts, and do not share, sell, rent, or transfer your account to anyone else.
- The information you give us — in particular your email address — must be accurate and current. We use it to reach you about your account, your purchases, and support requests.
- You are responsible for keeping your login credentials secret and for everything done through your account. Tell us immediately via our contact form if you believe someone else has access to it.
- We may suspend or terminate an account for abuse, harassment, cheating, attempts to manipulate the game economy or leaderboards, fraud, or payment chargebacks.
- You may close your account at any time from your dashboard. See §2.9 for exactly what that deletes.
1.2 Virtual items & in-product currencies
Some of our products offer optional virtual items or an in-product currency — cosmetic unlocks, consumable balances, and the like. Where a product does, this section applies to them. Read it carefully; it is the most important part of these terms.
Current status: no virtual item or in-product currency is on sale on any of our products today. Where a product displays prices for such items, those prices are shown for testing purposes and no charge is made for them. The terms below govern such purchases from the moment any are switched on.
- Virtual items have no cash value. They are not money, not a deposit, not credit, not a store of value, and not your property. What you get is a limited, revocable, non-exclusive licence to use a feature of the product.
- They cannot be cashed out, redeemed, or withdrawn for money, goods, services, discounts, store credit, prizes, or anything else — inside or outside the product, on this site or any other.
- They cannot be transferred, gifted, traded, or sold to another user, another account, or any third party.
- Virtual items exist only inside the product they belong to, and what they unlock is cosmetic or entertainment.
- Purchases are one-time transactions unless the product states otherwise at the point of sale: no subscription, no recurring charge, no automatic renewal. Every item shows its price and exactly what it contains before you pay, along with a reminder that it is non-refundable once used.
- Virtual items are delivered to your account immediately on successful payment.
- They are non-refundable once used or consumed. See the Refund Policy in Part 3 for the complete rules, including duplicate and erroneous charges.
- We may change prices, bundle sizes, the in-product cost of any item, and the contents of a catalogue at any time, without notice. Changes are not retroactive: something you already bought is not re-priced, and a balance you already hold is not revalued. Nothing is guaranteed to remain available or to remain at a given price.
- Virtual items are forfeited without compensation if your account is terminated for breaching these terms, or if you close your account yourself. They do not survive the account they belong to.
- We may discontinue a product. If we do, unused virtual items and balances expire when it closes and are not exchangeable for money or anything else — the direct consequence of their having no cash value.
- We may adjust balances to correct bugs, exploits, duplication errors, or fraud.
- You are responsible for any taxes that apply to your purchase where you live.
1.3 Product-specific terms
Some products carry their own additional terms. Bianca's Blackjack (a mature-audience game) has its own terms, refund policy and content statement at https://happynikki.io/games/blackjack/legal.html. Where a product's own terms address something these terms do not, or set a stricter requirement, the product's own terms govern that product; these terms govern everything else.
1.4 Acceptable use
You agree not to:
- use automated tools, bots, scripts, memory editors, or modified clients to use our products, to accumulate virtual items, or to influence the leaderboards;
- attempt to bypass the login system, rate limits, an access or age gate, or any other access control;
- reverse-engineer, scrape, resell, or redistribute our products, their images, their artwork, their code, or their AI outputs;
- choose a public display name (gametag) that is abusive, hateful, sexually explicit toward real people, impersonating, or unlawful;
- use an AI feature to solicit sexual content involving minors, non-consensual acts, or anything illegal;
- interfere with the service, its servers, or other users.
Content on this site — including all imagery, artwork, product code, and text — is owned by us or used with permission, and is protected by copyright. Your account gives you a personal, non-transferable licence to use it inside our products, and nothing more.
Where a product includes an AI character or assistant, it is a fictional entertainment character driven by a language model. It is not a real person, it is not supervised in real time, and its replies are generated by software and can be wrong, inconsistent, or made up. Nothing it says is advice of any kind — not medical, legal, financial, psychological, or otherwise. Do not share sensitive personal information with it — no real names of other people, addresses, phone numbers, passwords, payment card details, government identifiers, or health information; it is not a secure or confidential channel. See §2.4 for exactly what happens to what you type.
1.5 Availability, changes & termination
- The service is provided as is. We do not guarantee it will be uninterrupted, error-free, or permanently available. Products and features can change, be paused, or be retired.
- Our products are under active development. Content, prices, rules, and any in-product economy can and will change between versions.
- We may update these terms. The effective date at the top of this page reflects the most recent change, and material changes will be announced by email to active users and by a notice on the site. Continuing to use the site after a change means you accept the revised terms.
- You may stop using the service at any time. We may suspend or end your access for the reasons set out in §1.1.
1.6 Disclaimers & governing law
- To the fullest extent permitted by law, we exclude all implied warranties, and our total liability to you for any claim relating to the site is limited to the amount you actually paid us in the twelve months before the claim arose. Nothing here limits liability that cannot lawfully be limited.
- These terms are governed by the laws of the Province of Quebec and the federal laws of Canada applicable in it, and the courts of the judicial district of Montreal, Quebec, have exclusive jurisdiction — without prejudice to any mandatory consumer-protection rights you have where you live.
- If any part of these terms is found unenforceable, the rest stays in force.
2. Privacy Policy
Effective 2026-07-29. This policy replaces the separate privacy policy previously published at /privacy-policy.php (last updated 2026-04-16); that URL now redirects here. There is one privacy policy for happynikki.io and this is it.
2.1 Scope & who we are
This policy applies to the HappyNikki.io website (happynikki.io), the HappyNikki.io account system, and every product published under HappyNikki.io — including our games and the DMCA Harvester Chrome extension. HappyNikki.io is operated as an independent project by Martin Perreault in Quebec, Canada. References to "we", "us", or "our" mean HappyNikki.io. For any privacy question or request, use our contact form.
2.2 What we collect
Account data
- Email address — required to create an account, log in, send transactional email (verification, password reset, purchase confirmation, licence activation, account notices), and reply to support requests.
- Display name — optional, used to personalise the dashboard and emails.
- Password — stored only as a salted bcrypt hash. We never see or store your plaintext password. If you sign in with Google, no password is stored at all.
- Google account identifier — if you use "Sign in with Google", we receive your verified email address and Google user ID. We request no other Google scopes: no Gmail, Drive, Calendar, or Contacts access.
- Login session cookie (
hn_user_token) — a random token that identifies your browser session. It is the only cookie we set for your account, and it is what the game uses to know who you are.
Game & economy data — for games whose progress is saved to your account, stored against that account so it survives across devices, and so the dashboard and leaderboards work:
- Play statistics — rounds and hands played, wins, losses, pushes, streaks, biggest win, and total time played.
- Economy state — your in-game currency balance, net worth, any in-game loan and interest, bonuses claimed, which cosmetic items you own, tips sent to a game character and when you last sent one.
- Economy telemetry — an event ledger of what each in-game action would cost or did cost. During the current testing period this records the price of actions that are not actually charged, so we can see whether the economy is balanced before any of it goes live.
- Gametag — the public display name you choose for leaderboards. It is visible to other players, so do not use your real name if you don't want it seen.
- AI memory — short facts an AI game character "remembers" about you between sessions (for example a preference you mentioned). You can view and erase these from inside the game at any time.
- AI usage metering — the number and size of AI requests made from your account, so we can measure and cap what the AI costs us to run. This records request counts and token counts, not the content of your chat.
Payment data
- Purchase records — what was bought, when, the amount, the currency, and the processor's transaction reference. Kept for accounting and so we can show you your receipts and resolve billing disputes.
- Credit card details are never stored on our servers, and we never see your full card number. All card data is collected and processed directly by our payment processors, on their own payment pages — see §2.5 for who they are and what each one receives. We receive only the outcome of the transaction and a reference to it.
Device data (software licence enforcement — DMCA Harvester only)
- Device fingerprint — a hashed identifier derived from non-sensitive browser properties (browser, operating system, screen resolution, timezone). Used to enforce the per-licence device limit and to show you your "Activated Devices" list. It is not linkable across websites and is not shared with anyone.
- Friendly device name — a human-readable label such as "Chrome 146 on Windows 11", derived from your browser's user agent, so you can tell your own devices apart.
Support & feedback
- Messages you send through the contact form or the in-game feedback panel — including any screenshots you attach — are emailed to us with your account email address attached so we can reply.
Diagnostic & audience data
- Server logs — like every web server, ours records request URLs, IP addresses, user agents, and timestamps for security, abuse prevention, and debugging. Rotated and discarded on a routine schedule.
- First-party analytics — we run our own page-view and click counter on our own server (
/api/track.php). It records the page URL, the referring URL, the user agent, a derived device / browser / OS label, a country code, a short-lived analytics session id (the hn_sid cookie), and a salted hash of your IP address that is re-salted daily — so yesterday's visits cannot be matched to today's. The raw IP address is not stored.
- We do not use Google Analytics, Facebook Pixel, or any third-party advertising or behavioural-tracking product, on any page of this site or in any of our games.
2.3 How we use it
We use the data above only to:
- run your account — log you in, recover your password, verify your email, show your dashboard;
- deliver the games and products you use — save your progress, credit your purchases, unlock what you own, run the leaderboards;
- process payments through our payment processors, and reconcile, refund, or dispute a charge;
- send transactional email — verification, password reset, purchase confirmations, account notices. We do not send marketing email without your explicit opt-in, and every marketing email has a one-click unsubscribe;
- answer support requests;
- keep the service working and safe — rate limiting, fraud and abuse detection, capacity planning, and measuring what the AI costs to run;
- improve our AI game characters, and only under the specific, consent-gated conditions described in §2.4 below;
- comply with the law when we are legally required to.
We do not use your data for advertising or behavioural profiling, and we do not sell, rent, or trade personal data to anyone. The only machine-learning use of anything you provide is the opt-in chat corpus in §2.4 — which contains no personal data by construction.
2.4 AI chat & the training corpus
How a reply is produced. When you send a message to one of our AI game characters, your message is sent to our server, which forwards it to a third-party GPU hosting provider (Modal, in the United States) that runs the language model and returns the reply. What is sent with your message is: the character's persona instructions, the recent turns of the current conversation, and any short "memory" facts you have let the character remember. Your email address, your real name, and your account id are not sent to the model host. Modal is a compute provider running the model on our behalf: it processes the request in order to return the reply, and is governed by its own privacy policy, linked in §2.5.
The training corpus — opt-in only. While a game is in testing, we would like to keep the conversations with our AI game characters to train a future AI character of our own. This only happens if you explicitly agree: the first time you open the chat you are shown a consent screen explaining what is kept, and nothing is retained unless you accept it. If you decline, you can still chat, and nothing is stored.
If you do agree, each exchange is written to a file that is not reachable from the web, containing only:
- your message and the character's reply;
- a timestamp, and a turn number so the order of a conversation can be reconstructed;
- a random, throwaway session key that is regenerated every time the page loads, purely to group the turns of one conversation together;
- technical labels — which model produced the reply, whether the reply was a canned fallback, and which knowledge-base entry (if any) was used.
It contains no user id, no name, no email address, no gametag, no IP address, and no game context. You have to be logged in to chat — but that identity is used only to rate-limit abuse and is never written to the corpus. Because the session key is random and resets on every page load, the stored conversations are not linked to you or to each other across visits. If you also rate a reply (thumbs up/down, or a suggested rewrite), that rating is stored the same way — against the throwaway session key only.
This collection stops at the product's official launch and is limited to that testing period. Your consent is remembered on your device; clearing your browser storage for the game clears it and you will be asked again.
2.5 Third-party services
These are the outside services we use, what each one receives, and where their own policy lives. We share data with no one else.
| Service | What it receives | Why |
| CCBill |
Your name, email, billing address and card details, entered on CCBill's own payment form |
Processes payments for the products that name it as their payment processor. We never see the card number. Privacy policy |
| Stripe |
Your name, email, billing address and card details, entered on Stripe's own checkout |
Processes software licence payments (DMCA Harvester). We never see the card number. Privacy policy |
| Modal |
The text of your chat message plus the character's prompt and recent conversation. No name, email, or account id. |
Runs the AI language model that generates our AI game characters' replies. Privacy policy |
| Google — Sign in with Google |
Authenticates you and returns your verified email and Google user ID |
Optional login method. Privacy policy |
| Google reCAPTCHA |
Device and interaction signals, per Google's policy |
Blocks automated abuse on the login, registration, password-reset and contact forms |
| Google Fonts |
Your IP address and user agent, when your browser fetches the font files |
Page typography |
| ip-api.com |
Your IP address, sent once to look up a country code |
Country-level audience counts in our own analytics. The IP is not stored by us; only the country code is. |
| Email delivery |
Your email address |
Transactional mail is sent from info@happynikki.io over standard SMTP |
2.6 Cookies & local storage
We use a small number of essential cookies. We set no advertising or cross-site tracking cookies.
hn_user_token — your login session. Set when you log in, cleared when you log out. HttpOnly, Secure, SameSite=Lax.
hn_sid — a random first-party analytics session id, so a single visit isn't counted as many. Expires after 30 days. Not linked to your account.
- reCAPTCHA cookies — set by Google on pages with a protected form, to detect automated abuse.
- Payment processor cookies — set by our payment processors on their own payment pages, not on ours, for fraud prevention and session continuity.
- Game storage — our games keep a number of entries in your browser's local storage on your own device: an age confirmation where a game asks for one, your chosen options and cosmetics, local play stats and event queue for offline play, chat history, whether you agreed to the chat-corpus consent, and which one-time notices you have seen. These stay on your device. Clearing your browser data for the site clears them.
2.7 DMCA Harvester (Chrome extension)
The DMCA Harvester Chrome extension is one of our products. It is installed locally in your browser and exchanges a small amount of data with happynikki.io to deliver paid features. This section is the canonical privacy disclosure for the extension and matches the data-handling declarations made on its Chrome Web Store listing.
What the extension stores locally on your device
- Your contact details for DMCA templates — name, organization, address, artist name, IP role. Saved in
chrome.storage.local so the extension can pre-fill DMCA takedown notices. This data never leaves your browser. It is not transmitted to our servers or any third party. It is included in the email body only when you click "SEND EMAILS" and your local email client opens with a pre-filled message.
- Harvest filter rules and bookmark lists — saved in
chrome.storage.sync so they're available across your Chrome instances. Synced through Chrome's own infrastructure, not ours.
- Cached account state — your login email, license status, and subscription details, mirrored from happynikki.io after each popup open. Cleared automatically when you log out. Used only to render the extension UI offline-friendly.
- Device fingerprint — generated locally and cached, used as your identifier when calling our API.
What the extension sends to our server
- Login session cookie — read from your existing happynikki.io login cookie via
chrome.cookies, sent with each API call so we can verify you're authenticated.
- Device fingerprint & friendly device name — sent on each popup open so we can update the "Activated Devices" list on your dashboard and enforce the per-license device limit.
- Harvested URLs — sent only when you click "SEND EMAILS". Our server uses them to compose the grouped DMCA email drafts and returns the resulting
mailto: URLs to your browser. The harvested URLs are not retained on our server after the response is returned. They exist only in memory during the request.
What the extension does NOT do
- It does not read or analyze the content of any web page. It only collects URLs from open tabs (and only when you explicitly click "CURRENT TAB" or "ALL TABS"), or from links you click via the right-click drag-select harvester.
- It does not automatically send any email. Every DMCA email is composed and opened in your local email client for you to review and send manually.
- It does not collect telemetry, behavioral data, or product usage analytics.
- It does not sell or share data with anyone.
- It does not load or execute any remote code. All extension code is bundled with the package, in compliance with Chrome Web Store policy.
Why each Chrome permission is requested
tabs — to read URLs from your open browser tabs when you click "CURRENT TAB" or "ALL TABS" to harvest links.
storage — to save your harvest settings, bookmarks, DMCA template fields, and account state locally.
cookies — to read your existing happynikki.io session cookie to authenticate API requests.
scripting — to inject a tiny clipboard helper into the active tab when you copy harvested URLs to your clipboard.
clipboardWrite — to copy harvested URLs to your system clipboard when you click "COPY".
notifications — to show a brief desktop notification when a background URL resolution job completes.
sidePanel — so the extension can open as a Chrome side panel (alongside the popup mode).
<all_urls> host permission — required so you can harvest links on any website where you find piracy of your own content. The extension does not access page content beyond what you explicitly action.
2.8 Data retention
- Account data — kept while your account exists. Deleted immediately when you delete your account.
- Game statistics, economy state and AI memories — kept while your account exists, then deleted with it (see §2.9).
- Purchase records — the copy we hold in your account is deleted with your account. The underlying transaction records held by our payment processors (listed in §2.5) are retained by them, and by us for accounting purposes, for the period their own policies and our tax obligations require — typically 7 years. We cannot delete a processor's record of a payment you made, and neither can they before that period is up.
- Chat training corpus — retained for the purpose described in §2.4. It contains no personal data and is not linked to any account, so it cannot be searched for or deleted by user — which is also why nothing goes into it without your consent.
- Login session cookies — until you log out or the session expires.
- Device fingerprints — until you remove the device from your dashboard.
- Analytics rows — retained in aggregate. The IP hash they carry is re-salted daily and cannot be reversed to an address.
- Server logs — rotated on a routine schedule (typically 30 days).
2.9 Your rights & deleting your account
Wherever you live, you can:
- Access — ask for a copy of the data we hold about you, via our contact form.
- Correct — change your name, email, and account details from your dashboard.
- Delete — permanently delete your account yourself, from the dashboard.
- Export — ask for your data in a machine-readable format.
- Withdraw consent — log out, uninstall the extension, clear the game's browser storage, or delete your account, at any time.
- Complain — if you think we have mishandled your data, you may contact your local data-protection authority. In Quebec that is the Commission d'accès à l'information.
What deleting your account actually does. It runs immediately and cannot be undone. It permanently deletes your user record, your login sessions, your licences and activated devices, your subscription records, your newsletter subscription, your payment-history rows, your game profiles (currency balance, net worth, statistics, gametag, items owned, tips), your in-game economy event ledger, and everything our AI game characters remembered about you. Any active subscription is cancelled.
Two categories are kept but stripped of identity rather than deleted, because they are aggregate records of activity rather than records about you: historical game session rows and AI usage-metering rows are disconnected from your account (the link to your user id is set to null), leaving anonymous counts that no longer identify anyone. Puzzle-game play records are anonymised the same way — name, email and player id are all cleared. As noted in §2.8, the transaction records held by our payment processors survive account deletion; that is outside our control. If you want your data removed rather than anonymised in any of these, email us.
We answer privacy requests within 30 days.
2.10 Security
We protect your data with HTTPS on all traffic, bcrypt password hashing, prepared SQL statements, CSRF protection, rate limiting on authentication and API endpoints, reCAPTCHA on public forms, and HttpOnly + Secure + SameSite session cookies. Payment credentials never touch our servers. No system is perfectly secure and we cannot promise absolute safety, but we work continuously to keep your data safe.
2.11 Children
This site is not directed to children, and no part of happynikki.io is intended for anyone under 13. Some products are age-restricted and state their own minimum age in their own terms (see §1.3). We do not knowingly collect data from children. If you believe a child has given us personal data, contact us and we will delete it promptly.
2.12 Changes to this policy
We may update this policy. The effective date at the top of this page reflects the most recent change, and material changes will be announced by email to active users and by a notice on the site.
3. Refund & Cancellation Policy
Effective 2026-07-29. This policy covers purchases of virtual items and in-product currencies made on happynikki.io. It is public and requires no login to read.
Current status: no virtual item or in-product currency is on sale on any of our products, so no charge is being made for one. This policy applies from the moment purchasing is switched on.
3.1 What you are buying
- You are buying a virtual item, or a balance of in-product currency, for use inside the product you bought it in. It has no cash value and cannot be cashed out, redeemed, transferred, or exchanged for anything outside that product (see §1.2).
- Each purchase is a one-time transaction unless the product states otherwise at the point of sale. Where it is one-time there is nothing to cancel: no recurring charge is ever set up, so no future billing can occur.
- Virtual items are a digital product delivered instantly — they appear in your account the moment payment succeeds.
- Some products carry their own additional refund terms; where they do, those apply on top of this policy. See §1.3.
3.2 Refunds
- Virtual items are non-refundable once used or consumed. A balance that has been spent inside a product, an unlock you have redeemed, or anything you have given away in-product has been used, and cannot be refunded.
- Because they are delivered instantly and are consumable, a completed purchase is generally final.
- If you have an unused, untouched purchase and you contact us within 7 days of the charge, write to us — we will look at it in good faith and, where it is genuinely unused, we will normally refund it and remove the item from your account.
- Spending down an in-product balance in the normal course of using a product is a normal outcome, not a fault, and is not a ground for a refund.
- Refunds are not given for a change of mind about a cosmetic item you have already unlocked, or for anything you have already given away inside a product.
- We do not refund virtual items forfeited when an account is terminated for breaching the Terms of Service.
- Where local consumer law gives you a stronger right than this policy, that law applies.
3.3 Duplicate or erroneous charges
- If you were charged twice for the same purchase, charged an amount you did not authorise, charged and never received what you bought, or believe a charge on your statement is wrong, contact us within 7 days of the charge via our contact form.
- Include the date, the amount, and the transaction reference from your receipt or statement. We will investigate and, where the charge was duplicated or erroneous, refund it in full.
- Please contact us before opening a chargeback with your bank. A chargeback is slower for you than a direct refund, and accounts with chargebacks may be suspended under §1.1.
3.4 Billing & who to contact
- Payments on happynikki.io are taken by an authorised third-party payment processor. The processor's name is what appears as the billing descriptor on your card or bank statement — that charge is from us, through them. The processors we use are listed in §2.5, and each product's own terms name the one that handles it.
- For questions about the charge itself — the descriptor, your receipt, or a payment you cannot identify — the processor's own consumer support can help you directly. Its contact details are on your receipt and in the terms of the product you bought from.
- For questions about your account, your purchases, or a product — including a refund request under this policy — contact us via our contact form. We aim to reply within 2 business days.
- Approved refunds are returned to the original payment method. Depending on your bank, funds typically appear within 5–10 business days.
We are a small independent studio and we answer our own email.
- Customer support, billing questions, refund requests, privacy requests, and everything else — our contact form. We aim to reply within 2 business days; privacy requests are answered within 30 days.
- Contact form — happynikki.io/#contact
- Website — https://happynikki.io
- Billing enquiries about a card charge — start with our contact form. If you need the payment processor directly, its consumer support details are on your receipt and in the terms of the product you bought from.
- Product-specific terms — see §1.3.
- Operator — HappyNikki.io, an independent project of Martin Perreault, Province of Quebec, Canada.