GameSphere Privacy Policy

Last updated: September 16, 2026

Product: GameSphere for iOS, iPadOS, and tvOS (com.moonlight.gamesphere)

Contact: GameSphere-Source issues

GameSphere streams games from your PC (Sunshine or Apollo) and organizes a cover-art library on Apple devices. This policy describes what the app actually does — not a generic template.

We do not operate a GameSphere account server. We do not sell personal information. We do not include advertising SDKs, analytics SDKs, or tracking pixels. The App Store privacy manifest sets NSPrivacyTracking to false.


1. Information on your device

Stored locally (and, if you use Apple’s iCloud Key-Value Storage, merged across your devices):

Delete the app to remove on-device data. iCloud copies follow Apple’s iCloud controls.


2. Permissions we actually request

These match the shipping iOS Info.plist usage strings:

PermissionWhen it is used
Local NetworkBonjour (_nvstream._tcp) discovery of Sunshine/Apollo, pairing, and the game stream itself.
MicrophoneCo-op party voice and GameSphere Mic (phone mic → host PC). Off until you turn those features on.
BluetoothCompatible accessories (e.g. Citrix X1 mice). Controllers generally use Game Controller framework, not this prompt.
Face IDPro family rating-filter lock, so a child cannot raise the ESRB cap without you.

Background mode is audio only (keep stream/game audio alive). We do not declare camera on the shipping iOS app.

Local HTTP to your PC is required for pairing. The app allows local-network loads for that reason; game-stream video uses the Moonlight protocol (TLS/encrypted session as Sunshine provides).


3. Features that send data off the device

Nothing here is used for advertising. Optional features stay off until you use them.

3.1 Game metadata (library art)

To show covers, summaries, genres, ESRB badges, and platform logos, GameSphere may send game titles (and Steam App IDs when known) to:

We do not send your name, email, or Apple ID to these metadata services.

3.2 Steam (optional)

If you sign in with Steam OpenID, GameSphere reads public profile, playtime, friends-in-game, and achievements for titles already on The Sphere. That uses Steam Community / Steam Web API. You may paste your own Web API key in Settings. Steam does not launch games from the phone. See Steam Privacy.

3.3 RetroAchievements (optional)

If you enter a RetroAchievements username and web API key, GameSphere fetches achievement progress for matching games. See RetroAchievements. This never blocks Play.

3.4 Sunshine / Apollo / Companion (your PC)

Pairing, library publish, Wake-on-LAN, join-PIN, co-op state, and GameSphere Mic talk to your host (and the free Companion Tool on that PC). That traffic stays on your LAN, your mapped ports, or a VPN you install (see ZeroTier below). GameSphere Inc. does not receive the stream.

3.5 Co-op voice

Party voice is a live UDP mix among devices in the shared session (port 48020 on the host path). GameSphere does not record voice, does not store voice, and does not upload voice to a GameSphere server. Mute and level live in Share / Sound.

GameSphere Mic (Pro) sends your phone mic to a PipeWire virtual capture device on the host so Steam / Discord / games can pick GameSphere Mic. That audio is for the PC you paired — not for us.

3.6 ZeroTier / remote play

GameSphere does not operate ZeroTier. If you install ZeroTier (or Tailscale) and join the same network as the PC, the app detects overlay IPs (10.147.x / 100.x) and prefers that path instead of router port forwards. VPN provider policies apply to that traffic.

3.7 Apple services

Sign in with Apple ID is used by the App Store for Shortcuts+ (auto-renewable, $3/mo) and Pro ($15 lifetime). Receipts, billing, Family Sharing (Pro), and refunds are handled by Apple. iCloud Key-Value Storage can merge settings and quota counters so reinstalling cannot zero a higher count.

3.8 Diagnostics

We do not ship a third-party crash/analytics SDK. If you use Report a problem, that opens the public GitHub issues tracker. Only include what you choose to type.


4. What we do not collect


5. Children, families, and COPPA

GameSphere is a general-audience streaming launcher. It is not directed at children under 13, and we do not knowingly collect personal information from children.

How families actually use it: kids in a household may play on a parent’s Apple ID, via Family Sharing on Pro, or as a guest on a gamesphere://join invite. Guests do not pay. Guests see only the titles you share. Hosts can cap titles with the family rating filter; Pro can lock that cap behind Face ID / device passcode.

Optional Steam and RetroAchievements sign-in belong to the person who owns those accounts — do not enter a child’s third-party credentials.

If you believe we have collected personal information from a child, open an issue on the contact link above and we will delete what we control (on-device data is deleted by removing the app on that device).


6. Retention

DataRetention
On deviceUntil you clear library/settings or delete the app
iCloud KVSUntil you delete it in iCloud or the app data
IGDB / SteamGridDB / Steam / RAGoverned by those services; we do not run their stores
VoiceNot retained by GameSphere
Apple IAPApple’s billing records

7. Your choices

EEA/UK and similar regions: contact us via GitHub issues to request access or deletion of anything we control. Most GameSphere data never leaves your devices.


8. International processing

Metadata queries and optional Steam/RA calls go to those operators’ infrastructure. Apple processes IAP and iCloud. Your stream stays between your Apple device and your PC (plus any VPN you choose).


9. Changes

We will update this page and the in-app Legal copy, and bump the “Last updated” date. Material changes may also appear in What’s New.


10. Contact

Privacy and support: https://github.com/trevlars/GameSphere-Source/issues

Hosted policy: https://getgamesphere.pages.dev/privacy.html

Source offer (GPL): https://github.com/trevlars/GameSphere-Source/releases

There is no separate privacy email inbox today; the public issues tracker is the contact method we actually monitor.

Also on this site: Welcome · How it works · Pricing · Terms · Notices