Effective date: July 20, 2024 · Version v1.0.0

PicksHub Privacy Policy

PicksHub is provided by Leucocholy Media, LLC. This policy explains how we handle personal information when you use our web application, emails, or APIs (the "Service").

1. Information We Collect

  • Account data such as email address, display name, and authentication metadata.
  • Pool configuration, membership, entries, picks, overrides, and associated audit logs.
  • Transactional details for organizer purchases (amount, currency, Stripe identifiers).
  • Notification metadata (deliveries, bounces, unsubscribes) and support ticket history.
  • Device and usage data for security logging, rate limiting, and analytics.

2. How We Use Information

  • Operate and maintain secure pool workflows and authentication.
  • Send transactional emails and reminders requested by organizers or participants.
  • Monitor for abuse, enforce content standards, and investigate incidents.
  • Analyze feature usage to improve reliability, performance, and accessibility.
  • Comply with legal obligations and respond to lawful requests.

3. How We Share Information

  • Service providers acting on our behalf, including Supabase (hosting/auth), Vercel (hosting), Resend (email), Stripe (payments), Sentry (error reporting), and observability tooling.
  • Pool organizers who manage their pool rosters, audit trails, and entries.
  • Regulators or authorities when required by law or to protect rights and safety.
  • Successors in interest if we engage in a merger, acquisition, or asset transfer.

4. Cookies and Local Storage

We use strictly necessary cookies and local storage to maintain sessions, remember preferences, and store pending pick submissions. We do not run third-party advertising pixels.

5. Data Retention

We follow the retention schedule documented in our data retention policy, including three-year retention for audit logs, 18 months for notification metadata, and rolling 24-month windows for analytics.

6. International Transfers

Primary customer data is hosted in the Supabase US region. Vendors processing data outside your jurisdiction are bound by contractual safeguards and security standards.

7. Security

We employ encryption in transit and at rest, row-level-security policies, audit logging, rate limiting, and vulnerability management as described in our security runbooks. Report security concerns to security@pickshub.com.

8. Your Rights

Depending on your jurisdiction, you may request access, correction, deletion, portability, or restriction of your personal data. Contact privacy@pickshub.com and we will verify and respond within applicable timelines. Some transactional notices are required while you remain in a pool.

9. Children's Privacy

The Service is not directed to children under 13. We delete any information inadvertently collected from a child once identified.

10. Policy Updates

We may update this policy as the Service evolves. We will log revisions in the legal changelog and provide advance notice of significant changes when feasible.

11. Contact

Privacy questions: privacy@pickshub.com · General support: support@pickshub.com · Abuse reports: abuse@pickshub.com.

Last updated July 20, 2024.