Privacy Policy
Last updated: August 28, 2026
This Privacy Policy explains what data Vrayd accesses, how we use it, and the choices you have. Vrayd is a desktop companion app and statistics website for League of Legends. We aim to limit access and processing to what is needed to operate the app, public statistics and search, and coaching features.
Vrayd is operated by Vrayd LLC, a North Carolina limited liability company. For support, privacy, or security questions, the sole monitored contact address is support@vrayd.com.
01League data we access
Vrayd reads League of Legends data through Riot's official web APIs, the locally exposed League Client API, and the Live Client Data API on your computer. When you request or enable the corresponding feature, Vrayd can write a selected rune page, summoner spells, or item set, and can send a manual champion hover, lock, or ban action. Auto Apply is off for new users. If you explicitly enable it, champion lock can trigger the selected build writes without another Apply click. These local client calls stay on your computer. The native application does not expose ready-check accept or decline writes. League data we read includes:
- •Summoner name and PUUID (your account identifier).
- •Match history and detailed match timeline data.
- •Ranked information (tier, division, LP).
- •Champion mastery data.
- •Champ-select and active-game data read from Riot's local client endpoints.
02How we use this data
We use Riot data to operate Vrayd's product features: to display stats and rank, produce aggregate champion statistics and public Riot ID search suggestions, generate champ-select recommendations, and produce coaching analysis.
We do not use your data for advertising, profiling unrelated to gameplay, or any purpose beyond running Vrayd's features.
03Caching & storage
Your VOD package is device-owned: recorded video and audio, thumbnails, exported clips, recording metadata, and local review results stay on your computer and are not uploaded to Vrayd. Hosted account deletion does not remove these files. Any device-wide purge is a separate, explicit local action and is not performed by an account deletion request.
Notes and game plans that are not part of the VOD package are account-scoped and are handled separately from device-owned recordings. The account and hosted AI-processing data Vrayd stores server-side is described below.
Public match data, meaning the match histories and statistics Riot makes available through its API, is cached on Vrayd's servers so repeated requests do not have to fetch the same match from Riot again. Match details are normally retained for five rolling calendar months based on game creation time. Match timelines are normally retained for 30 days based on last access. Deletion and maintenance work can be periodic, and shared match bodies may remain until their retention limit when removing one player's indexes. Aggregated statistics and their source data follow separate retention processes.
Vrayd also builds a public Riot ID autocomplete index from names and taglines found in public match data. The published shards contain the Riot game name, tagline, platform region, and games-seen count; they do not publish the PUUID. The index currently has no age-based expiry. You can request removal at support@vrayd.com. During alpha, requests are handled manually, and suppression is retained to help prevent a removed name from being republished. Until the process is fully automated and verified, a manually removed name can be collected again, including after a Riot ID rename.
Caching keeps Vrayd fast and reduces the number of calls we make to the Riot API. Cached and source data support app displays and analysis, aggregate website statistics, and the public Riot ID search described above.
Vrayd does not store your Riot password. There is no Riot login in Vrayd, so we never receive your Riot credentials.
04Vrayd accounts
Vrayd offers user accounts, used to sign in to the app during the alpha. You sign in with your email address (we send you a one-time code) or through Discord. A Vrayd account has no password, so there is no Vrayd password for you to lose or for us to leak. Vrayd does not authenticate you with Riot or receive your Riot credentials, although an account may store an optional linked Riot PUUID when a feature links that identity.
For your account we store on Vrayd's servers: your email address, a display name (derived from your email or Discord profile), account tier, optional linked Riot PUUID, and sign-in security metadata. If you sign in with Discord, we also store your Discord account ID and use your verified Discord email as your account email; the Discord access token is used for the exchange and is not stored. Account tokens and one-time login codes are stored as one-way cryptographic digests rather than plaintext.
AI access is controlled by the hosted service's current entitlement and fair-use rules. The app does not expose a user-facing balance or per-feature price. When an AI request runs, the service may temporarily retain the bounded request and result data needed to queue, process, poll, and troubleshoot that request; this is separate from your device-owned VOD package.
During the alpha, creating a new account requires an invite code, and we record which account used each invite. There is no self-serve account deletion yet; to request account deletion or make a privacy request, contact support@vrayd.com. Deleting the hosted account removes hosted account data subject to security, abuse-prevention, legal, and backup-integrity needs. It does not remove the device-owned VOD package, and no device purge is implied. We aim to respond to account deletion and privacy requests within 30 days.
05AI coaching & third-party processing
When an AI coaching feature runs, Vrayd sends the feature-scoped League data and coaching context needed for that analysis to OpenRouter. Depending on the feature, this can include team compositions, match or timeline statistics, and Focus Thread targets or progress. The Vrayd proxy does not add your email address, internal account ID, account token, Riot password, or raw game video to the prompt.
Vrayd sends that data to request the coaching output; Vrayd does not sell it or use it for advertising. AI processing occurs when you request an AI surface or use a feature that is documented as including an AI-generated brief.
Vrayd uses Google Cloud Run and Cloud SQL PostgreSQL for the hosted Go service, plus applicable Cloudflare services for website delivery, Worker execution, caching, and published data. Resend handles transactional email, Discord handles optional sign-in, and OpenRouter handles requested AI inference. The desktop app and website load some League images and metadata directly from Riot Data Dragon and CommunityDragon, so those services receive ordinary browser or WebView request metadata such as your IP address and request headers.
Crash reports and usage analytics are optional, off by default, and controlled by your explicit consent in separate settings in the app. If you explicitly enable crash reporting and a Sentry endpoint is configured, Vrayd sends scrubbed crash reports to Sentry without user identity, account identifiers, or raw game video. If you explicitly enable usage analytics, Vrayd sends bounded product-use events to Google Analytics 4 using a random installation identifier; the event vocabulary excludes account, Riot ID, PUUID, match, recording, and game identifiers. Turning either setting off stops future reporting and sending.
06What we do NOT do
- •We do not sell your data to anyone.
- •We do not use your data for advertising.
- •We do not store your Riot password or Riot login credentials.
- •We do not upload your screen recordings, VODs, thumbnails, clips, or recording audio.
07Data retention
Local app state lives under %APPDATA%\VraydApp\; completed recordings and exported clips live under the Windows Videos\Vrayd folder. Uninstalling Vrayd removes the app binaries but does not remove those user files. The device-owned VOD package, including recording metadata, thumbnails, clips, and local review results, survives hosted account deletion. Device data must be removed separately on that device; the private-alpha app does not yet expose one self-serve wipe for the whole package. Contact support for current local-cleanup instructions. Vrayd's own Windows Credential Manager entries are prefixed VraydApp/.
08Your choices & rights
You control whether to use Vrayd, whether to use AI features, and whether to enable crash reports or usage analytics. Depending on where you live, you may have rights to access or request deletion of personal data. To request account deletion or make a privacy request, contact support@vrayd.com. A hosted account deletion request does not include the device-owned VOD package; any device purge is separate and explicit.
09Children
Vrayd is intended for users who meet Riot Games' minimum age requirements for a Riot account. We do not knowingly collect data from anyone who does not meet those requirements.
10Changes to this policy
We may update this Privacy Policy as the app evolves. Material changes will be reflected by the "Last updated" date above. Continued use of Vrayd after changes take effect means you accept the updated policy.
11Contact
Questions about your privacy or this policy? Reach Vrayd LLC at support@vrayd.com. This is the sole monitored address for support, privacy, and security requests.
12Alpha waitlist
If you join the alpha waitlist, we store the email address you provide so we can send you an invite code and updates about product availability. We do not sell this address. It is processed by the infrastructure and email providers needed to operate the waitlist and may otherwise be disclosed when required by law. You can ask us to remove it at any time by contacting support@vrayd.com.
Vrayd is not endorsed by Riot Games and does not reflect the views or opinions of Riot Games or anyone officially involved in producing or managing Riot Games properties. Riot Games and all associated properties are trademarks or registered trademarks of Riot Games, Inc.