Privacy Policy
Last Updated: March 5, 2025
1. Introduction
Welcome to OffsideApp ("we," "our," or "us"). We are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our tournament management platform.
By using OffsideApp, you agree to the collection and use of information in accordance with this policy. If you do not agree with our policies and practices, please do not use our service.
2. Information We Collect
2.1 Personal Information
When you create an account, we collect the following information:
- Full name
- Email address
- Password (encrypted and hashed)
- Organization name (optional)
- Profile avatar (optional)
2.2 Tournament Data
When you create and manage tournaments, we collect:
- Tournament names, dates, and venue information
- Team information and player data
- Match schedules and results
- Tournament logos and team logos
- Announcements and rules
2.3 Payment Information
When you make payments for tournament creation, payment processing is handled by Razorpay, our payment gateway partner. We do not store your credit card or payment details. Razorpay processes payments securely and in compliance with PCI DSS standards.
2.4 Automatically Collected Information
We automatically collect certain information when you use our service:
- Device information (browser type, operating system)
- IP address
- Usage data and analytics
- Cookies and similar tracking technologies
3. How We Use Your Information
We use the collected information for the following purposes:
- To provide, maintain, and improve our tournament management services
- To process your account registration and authenticate users
- To process payments and manage tournament subscriptions
- To send you important notifications about your account and tournaments
- To respond to your inquiries and provide customer support
- To analyze usage patterns and improve user experience
- To detect, prevent, and address technical issues and security threats
- To comply with legal obligations and enforce our Terms of Service
4. Data Storage and Security
4.1 Data Storage
Your data is stored securely using Supabase, a cloud-based backend platform. Supabase provides:
- Encrypted data storage at rest
- Secure data transmission via HTTPS/TLS
- Row-level security (RLS) policies to protect your data
- Regular backups and disaster recovery
4.2 Security Measures
We implement industry-standard security measures to protect your information:
- Password encryption and hashing
- JWT-based authentication
- SQL injection prevention
- XSS (Cross-Site Scripting) protection
- CSRF (Cross-Site Request Forgery) protection
- Regular security audits and updates
5. Third-Party Services
5.1 Supabase
We use Supabase for authentication, database storage, and file storage. Supabase's privacy practices are governed by their own privacy policy. Your data stored in Supabase is subject to their security and privacy standards.
5.2 Razorpay
Payment processing is handled by Razorpay, a PCI DSS compliant payment gateway. When you make a payment, your payment information is processed directly by Razorpay. We only receive payment confirmation and transaction details necessary to activate your tournament.
5.3 Analytics
We may use analytics services to understand how users interact with our platform. These services may use cookies and similar technologies to collect and analyze usage data.
6. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to:
- Maintain your session and authentication state
- Remember your preferences (e.g., theme settings)
- Analyze website traffic and usage patterns
- Improve our services and user experience
You can control cookies through your browser settings. However, disabling cookies may affect the functionality of our service.
7. Your Rights and Choices
You have the following rights regarding your personal information:
- Access: You can access and view your personal information through your account settings
- Update: You can update your profile information, email, and password at any time
- Delete: You can delete your account and all associated data by contacting us
- Data Portability: You can request a copy of your data in a portable format
- Opt-Out: You can opt-out of non-essential communications
To exercise these rights, please contact us using the information provided in the "Contact Us" section below.
8. Data Retention
We retain your personal information for as long as necessary to:
- Provide our services to you
- Comply with legal obligations
- Resolve disputes and enforce our agreements
When you delete your account, we will delete or anonymize your personal information, except where we are required to retain it for legal purposes.
9. Children's Privacy
Our service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately, and we will take steps to delete such information.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by:
- Posting the new Privacy Policy on this page
- Updating the "Last Updated" date at the top of this page
- Sending you an email notification (for significant changes)
You are advised to review this Privacy Policy periodically for any changes. Changes are effective when posted on this page.
11. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Email: heyoffsideapp@gmail.com
Support: heyoffsideapp@gmail.com
