Privacy Policy
Calculations and saved analyses
ManaTuner calculates results in your browser and saves analyses on this device. No account is required. This does not mean the site makes no network requests.
External services
Card lookups send card names, identifiers or search terms to api.scryfall.com to retrieve card rules and metadata, including during analysis and card-image lookup. Card images load from cards.scryfall.io. These requests can reveal which cards you are looking up; the analysis result and saved history are not uploaded by these lookups. Local caches reduce repeat requests.
Google Fonts (fonts.googleapis.com and fonts.gstatic.com) supplies the display font. jsDelivr (cdn.jsdelivr.net) supplies the mana-symbol stylesheet and font. The page also preconnects to Scryfall. The site host and external services receive connection information such as your IP address and browser request metadata. Their retention practices are not controlled by the local Reset button. Loading the site is therefore not fully offline.
Browser storage and deletion
Local storage holds saved analyses, the current deck, preferences and library progress until you delete them or your browser clears them. Public card metadata is cached in IndexedDB (30 days), land metadata in local storage (30 days), and mana-producer metadata in local storage (7 days). Expiration is checked when caches are read; it is not a scheduled erasure. Session storage holds temporary navigation and recovery flags for the browser session.
Reset requests deletion of ManaTuner local and session storage and asynchronously clears its IndexedDB cache. This is best effort if browser storage is blocked; it does not verify every deletion. Reload after resetting to release in-memory caches. For a broader cleanup, use your browser’s site-data controls. Reset does not delete exported files, shared links, browser history, third-party logs or copies on other devices. Export a backup first if needed; browser storage can also be lost in private browsing or when site data is cleared.
Sharing
Share links encode the deck in the URL fragment. Anyone with the link can recover the deck. Copying or sending a link or an exported backup discloses it to its recipients; deleting the local analysis does not revoke those copies. Legacy links can contain deck data in the URL query, which may reach the hosting service and its logs.
Optional error monitoring
Error monitoring is disabled in this build. Sentry initializes only in a production build with a configured DSN. There is no session replay configured. The application does not configure audience analytics.
Before enabling Sentry, the operator must review the actual event payloads with non-sensitive fixtures, confirm redaction and retention, verify the permitted monitoring destination in the Content Security Policy, determine the required information and user controls with a competent reviewer, and update this policy. Redaction is a safeguard, not a guarantee that arbitrary error text contains no sensitive data. This technical description does not constitute a declaration of legal compliance.