Legal
Privacy Policy
Last updated September 15, 2026
Musical Pig LLC operates PCGDB (https://www.pcgdb.com), including the public API and official iOS and Android apps. This policy describes what we collect and what we do not. It is written to match how the product actually works, not a generic tracker-heavy template.
1. Short version
PCGDB does not offer accounts, does not run advertising, does not sell personal information, and does not store IP addresses, advertising IDs, or search-box text. Watchlist, Compare, and the Owned/wishlist overlay live on this device. Charts that rank popular titles count page opens and search result impressions as totals per game, not as a profile of you. Unique-ish catalog visits are counted once per network address per UTC day the same way. A short-lived first-party cookie lets the website call the API as a browser; it is not an account.
2. What stays on your device
These preferences are first-party cookies or local storage on this browser or phone. We do not sync them to an account because there is no account.
- Watchlist: Steam app ids you saved. Local storage only.
- Owned/wishlist overlay: Steam app ids imported from a public profile, plus the last pasted profile URL on this device. Local storage only. The steamid is not stored on the server.
- Compare: up to three Steam app ids. Local storage only.
- Dismissed site notices: which banners you hid on this device. Local storage only.
- 18+ age acknowledgement and the mature-titles switch.
- Tag, Steam Deck, and Steam AI-disclosure filters.
- Store region for prices, taken from this device's locale unless you change it.
- Which home-page sections are shown.
- pcgdb_site: a 12-hour HttpOnly cookie so this browser can call the API as the website, including library import. Domain .pcgdb.com. Not an account, not used to identify you, not stored in the catalog.
Clear this site's cookies and local storage (or the app's data) and those lists disappear. A cookie inventory with the exact names is on the Disclaimer page.
3. What the service counts
The API keeps an hourly count per route template and Steam appid when the path has one, so we know which endpoints and titles are used. An appid names a game, not a person. The stored row is a count, an hour, and an appid. Not an IP, not a user-agent, not a cookie, not a search string.
The same network address is not counted twice for that template and appid in the same UTC hour. That duplicate check is hashed in RAM and discarded when the hour ends. Charts → Lookups ranks those unique-ish game-page opens. Charts → Searches ranks titles that appeared in search results. Search box text is not stored.
We also keep a unique-ish visit total for the catalog. The same network address counts once per UTC day. That duplicate check is hashed in RAM and discarded when the day ends. The stored row is a count, not an IP.
Library import and refresh are counted as the library route template. Queuing missing owned titles is a separate count: 3 requests per hour per address, every missing title in one request (capped at 20,000 ids). Pending ids sit on the catalog box until they are sampled, then that row is deleted. The stored row is a count and an hour. Not the profile URL, not a steamid, not an IP.
4. Rate limits
The published API limit is 120 requests per minute per connecting address, and 120 distinct titles per hour. Library import is a website feature, not a published API. It requires the short-lived site cookie; requests without it return HTTP 403. With the cookie, import is 6 requests per hour per address and returns owned and wishlist ids only. Queuing missing ids into the catalog is 3 requests per hour per address, every missing title in one request (capped at 20,000 ids), still ids only. Those ids stay on the catalog until sampled, then the pending row is deleted. The website uses a short-lived signed cookie so a browser session is not treated as a script. That cookie is not an account, is not stored in the catalog, and is not used to identify you. Rate-limit windows are in-memory counts, not a visitor log.
5. What we do not collect
- No user accounts, passwords, or profiles.
- No advertising IDs, no fingerprinting for ads, no cross-site tracking.
- No stored IP addresses.
- No precise location.
- No search-box text.
- No extra telemetry in the iOS or Android apps. Those apps are a WebView of this catalog.
6. Email you send us
If you write support@musical-pig.com (support, a bug, or a takedown), we keep the message and your address so we can answer. That is it. We do not add you to a marketing list.
7. Hosting
The computers that serve PCGDB see each request in order to answer it. We do not write visitor addresses into the game catalog. We do not use third-party advertising or analytics pixels.
8. Children
PCGDB is a general-audience catalog. Mature and 18+ titles stay hidden until you acknowledge your age on this device. We do not knowingly collect personal information from children. We do not collect personal profiles from anyone.
9. Your choices
Because we do not keep a personal profile, there is usually nothing to export. You can clear this device's cookies and local storage yourself. You can ask us to delete an email you sent by writing support@musical-pig.com. We do not sell personal information, so there is no "do not sell" switch to flip.
10. Changes
We may update this policy. The new text is effective when posted here with a new Last Updated date.
11. Contact
Operator: Musical Pig LLC. Email: support@musical-pig.com. X: @MusicalPigGames (https://x.com/MusicalPigGames). Site: https://www.pcgdb.com.