Effective date: July 22, 2026 · Last updated: July 22, 2026
1. The short version
This website sets zero cookies, runs zero analytics or tracking scripts, shows zero ads, and creates zero visitor profiles. Every image, font, and script on this site is served from our own domain — your browser makes no requests to advertising or social-media companies when you visit. The only personal information we ever receive is what you choose to type into the contact form or send us by email, and we use it for exactly one purpose: replying to you. We never sell, rent, trade, or share personal information for advertising. If you want anything you sent us deleted, email bryan@tdangrycubes.com and it will be removed — see Section 11.
The rest of this policy explains all of that in detail, because we believe you should not have to take our word for it.
2. Who we are and what this policy covers
This website, tdangrycubes.com, is operated by BHN Consulting Inc. ("we," "us," or "our"), the developer and publisher of the video game Angry Cubes, created by Bryan Natter. This policy covers only this website. It does not cover third-party platforms where Angry Cubes may later be available (such as Steam or Xbox), which have their own privacy policies, and it will be updated before any future version of the game or website changes how data is handled.
Questions about anything in this policy can be sent to bryan@tdangrycubes.com.
3. What this website does not do
Most privacy policies describe the data a site collects. Ours mostly describes what we deliberately chose not to collect. Each statement below is a design decision built into the site, not just a promise:
- No cookies of any kind. This site does not set first-party cookies, third-party cookies, session cookies, or persistent cookies. This is also why you do not see a cookie-consent banner: there is nothing to consent to.
- No analytics or telemetry. There is no Google Analytics, no tag manager, no measurement pixel, no session recording, no heat mapping, and no page-view beacon of any sort.
- No advertising or ad-tech. No ad networks, no retargeting pixels, no conversion trackers, and no "interest-based" advertising technology exist anywhere on this site.
- No social-media plugins. There are no embedded like buttons, share widgets, or social feeds, all of which are common ways visitor data leaks to other companies.
- No third-party requests at all. Fonts, images, video, styles, and scripts are all hosted on our own domain. Your browser does not contact any font service, CDN of another company, or embed provider to display this site. The single exception is when you submit the contact form, which sends your message to our own form endpoint hosted on Amazon Web Services — described in Section 4.
- No accounts, profiles, or logins. The site has no registration, so we hold no account data, passwords, or profiles about anyone.
- No device fingerprinting. We do not run scripts that probe your hardware, canvas, or installed fonts to identify you.
- No local storage tracking. The site does not write identifiers into your browser's localStorage or sessionStorage.
- No selling or sharing of personal data — ever. We do not sell personal information, we do not rent it, and we do not share it for cross-context behavioral advertising. There is no "data business" here of any kind.
4. Information you choose to send us
The only personal information we receive through this website is information you decide to send:
- The contact form asks for your name, email address, an optional organization, a reason for contacting, and your message. Submitting it delivers those fields to our business mailbox, bryan@tdangrycubes.com, as an email. Your email address is attached as the reply address so we can answer you. Nothing else about your visit is captured with it.
- Direct email to bryan@tdangrycubes.com naturally includes whatever you write and your email address.
Protections built into the form: every field is validated and length-limited; submissions are rate-limited to resist abuse; a hidden "honeypot" field silently rejects spam robots; the connection is encrypted in transit with modern TLS; and our form service is configured to never write your message contents or email address into server logs. Details are on the Data & Security page.
5. Technical information involved in delivering the site
Like every website on the internet, this site is delivered by servers that momentarily process standard connection data — your IP address, browser type, requested page, and request time — because that is how the web works. Our hosting infrastructure is Amazon Web Services (Amazon S3 private storage behind the Amazon CloudFront content delivery network). Two honest details about that:
- We keep CloudFront access logging turned off. We do not build or review visitor logs, and we have no dashboard of who visited.
- AWS, as any infrastructure provider, processes connection data transiently to serve requests, maintain security, and prevent abuse of its network. That processing is governed by AWS's own privacy commitments and happens whether or not a site operator enables logging.
Our error monitoring counts only aggregate totals (for example, "the contact service returned three errors this hour") and contains no personal information.
6. How we use the information you send
We use contact-form submissions and emails only to: (a) respond to you; (b) keep ordinary business correspondence records; and (c) meet legal obligations if any ever apply. We do not use your information for marketing lists, we do not send newsletters, and we will never add you to any mailing without your explicit request.
7. Legal bases for visitors from the EEA and UK
If you are in the European Economic Area or the United Kingdom, the legal bases on which we process the information you send are: consent (you chose to contact us — Article 6(1)(a) GDPR), legitimate interests (answering enquiries and keeping business records — Article 6(1)(f)), and, where a conversation relates to a potential agreement, steps prior to entering a contract (Article 6(1)(b)). You may withdraw consent at any time by asking us to delete your correspondence.
8. Service providers we rely on
We use exactly one infrastructure provider: Amazon Web Services, Inc., which hosts the website files, delivers them over its content network, operates the contact-form endpoint, and transports email for our domain. AWS processes data on our instructions as a service provider and does not receive rights to use it for its own advertising. We have no analytics vendors, no marketing platforms, no data brokers, and no other processors. If that ever changes, this policy will be updated first.
9. Where information is processed
Our infrastructure is located in the United States. If you contact us from outside the U.S., your message is transferred to and answered from the U.S. We keep what we hold small (correspondence only), we protect it in transit with TLS encryption and at rest in access-controlled private storage, and we honor the rights in Section 12 for everyone, regardless of country.
10. How long we keep correspondence
We keep email and contact-form correspondence only as long as it is reasonably needed to handle the conversation, maintain ordinary business records, or satisfy legal requirements. Correspondence with no ongoing purpose is periodically deleted. You can shortcut all of this at any time by asking us to delete your messages (next section).
11. Getting your information removed
You have a simple, real path to deletion:
- Step 1: Email bryan@tdangrycubes.com — ideally from the address you originally used, or tell us what name/address you used. A subject line like "Privacy Request" helps us spot it quickly.
- Step 2: Tell us what you want: deletion of everything you sent, a copy of it, or a correction.
- Step 3: We act on verified requests within 30 days, and usually much faster. Deletion means removing your messages from our mailbox and stored mail archive.
We may decline or partially fulfill a request only where the law requires us to keep something (for example, records of a legal dispute), and if so we will tell you what was kept and why. We will never treat you worse for exercising privacy rights.
12. Your privacy rights
Depending on where you live — including under the EU/UK GDPR and U.S. state privacy laws such as the California Consumer Privacy Act as amended by the CPRA — you may have rights to: know what personal information we hold about you; access a copy of it; correct it; delete it; object to or restrict processing; portability of what you provided; and non-discrimination for exercising any of these rights. Because this site collects nothing beyond your own correspondence, exercising these rights is short work: everything we could hold about you is the mail you sent. Requests go to bryan@tdangrycubes.com; we verify by corresponding with the email address involved.
For California residents specifically: we do not sell personal information, we do not share it for cross-context behavioral advertising, and we have not done either in the preceding 12 months. The categories we collect are limited to identifiers and message contents you voluntarily submit. Authorized agents may submit requests on your behalf with written permission.
EEA/UK visitors also have the right to lodge a complaint with their local supervisory authority, though we would appreciate the chance to resolve any concern directly first.
13. Children's privacy
Angry Cubes is a family-friendly game, but this website is a general-audience business site, not a service directed to children. We do not knowingly collect personal information from children under 13 (or the higher age some jurisdictions apply), consistent with the U.S. Children's Online Privacy Protection Act (COPPA). The site has no accounts, chat, or profiles a child could create. If you believe a child has submitted personal information through the contact form, email bryan@tdangrycubes.com and we will delete it promptly.
14. "Do Not Track" and Global Privacy Control
Some browsers send "Do Not Track" or Global Privacy Control signals. Many sites ignore them. We effectively honor them for everyone by default, because we track no one in the first place — there is no tracking here to opt out of, and no personal-information sale for a GPC signal to block.
15. How we protect information
Security measures on this site include: HTTPS everywhere with modern TLS (1.2+) and HTTP Strict Transport Security; a strict Content-Security-Policy and other hardening headers; website files stored in private, non-public storage readable only by our content network; least-privilege access controls on every backend component; and a contact pipeline that avoids logging message contents entirely. No system can be guaranteed 100% secure, but our best protection is structural: we simply do not hold data about visitors beyond the correspondence they send. A deeper technical description lives on the Data & Security page, along with how to report a security concern to us.
16. Changes to this policy
If the website ever changes in a way that affects privacy — for example, if privacy-respecting, cookie-free visit counting were ever added — this policy will be updated before the change goes live, with a new effective date at the top. The current version will always be available at this address. Material changes will be summarized in plain language at the top of the policy.
17. How to contact us
Privacy questions, requests, or complaints: bryan@tdangrycubes.com. This website is operated by BHN Consulting Inc., developer and publisher of Angry Cubes. We answer privacy correspondence personally — there is no ticket robot on the other end.