Public review access - no account required

How RoundTrace handles player consent.

RoundTrace is a working Cloudflare-hosted prototype for a VALORANT match-history and statistics product. The service health, compliance metadata, OpenAPI document, legal pages, and complete intended player flow are public. Actual Riot account linking awaits the production application and RSO client.

Test live API
Prototype disclosure

The walkthrough below uses empty interface states and explanatory copy. It does not call a mock player API, impersonate a Riot login, or expose a real player's information.

One player, four controlled stages.

The player remains the authority over whether identifiable match data can be stored and displayed.

1.0

Connect Riot account

The player starts on RoundTrace, reads the purpose of linking, and continues to Riot's OAuth authorization page. Riot handles credentials and returns an authorization result to RoundTrace.

  • No Riot password enters RoundTrace.
  • State validation protects the callback.
  • The RSO button remains in preview mode until Riot supplies client credentials.
Interface previewConnect your Riot account

Linking verifies which player is granting access. You will continue on Riot's website.

Activates after RSO approval.
3.0

Review match-derived statistics

RoundTrace retrieves the opted-in player's match list and match details through supported Riot endpoints, then calculates retrospective statistics.

  • Match history, K/D, ACS, agent usage, map results, and recent form.
  • No MMR or ELO estimate.
  • No opponent scouting or live tactical advice.
Empty dashboard state
Matches
—
K/D
—
ACS
—

Values appear only after this player opts in and official match data is available.

4.0

Revoke and delete

A connected player can revoke sharing from account settings. RoundTrace immediately disables API visibility, stops collection, and schedules stored personal gameplay data for deletion.

  • Revocation is available without contacting support.
  • Developer clients receive an unavailable response after revocation.
  • Security and legal records are retained only where required.
Account controlDisconnect Riot account

Stops collection and removes your player statistics from RoundTrace and authorized API responses.

Preview only - no player data is currently stored.

Supported ingestion.

  • Riot Sign On for player identity and opt-in.
  • VAL-MATCH for match lists and match details.
  • VAL-CONTENT for current game content.
  • VAL-RANKED for the official competitive leaderboard.
  • VAL-STATUS for platform status.

Explicitly excluded.

  • Undocumented or private client services.
  • Arbitrary Riot ID statistics lookup.
  • MMR, ELO, or alternative skill rankings.
  • Opponent scouting and hidden-player analysis.
  • Real-time performance-changing overlays.

Production readiness checklist.

Items dependent on Riot approval are separated from features already live and testable.

Live

Public HTTPS prototype

Hosted at api.codeoce.com with no reviewer login.

Live

Terms and privacy

Public legal pages explain collection, retention, consent, and acceptable use.

Live

Consent-ready storage

The production database records policy version, consent, revocation, and deletion state.

After approval

Riot Sign On credentials

RoundTrace will activate the demonstrated OAuth flow when Riot provides the RSO client.

After approval

Production Riot API key

The key will be stored as a Worker secret and never exposed to browsers or API consumers.

After approval

Player statistics

Only opted-in players will be collected and exposed through authenticated RoundTrace endpoints.