Privacy Policy
HockeyShare ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website and services (collectively, the "Service").
Table of Contents
1. Information We Collect
1.1 Information You Provide to Us
We collect information you provide directly to us, including:
- Account Information: Username, email address, password, first name, middle name, last name
- Profile Information: Coaching preferences, team affiliations, subscription level
- Team Management Data: Team names, player names, roster information, statistics, schedules
- Content You Create: Drills, practice plans, playbooks, messages, announcements
- Communication Data: Messages sent through our platform, support requests, feedback
- Payment Information: Processed securely through Stripe (we do not store credit card numbers)
1.2 Information We Collect Automatically
When you use our Service, we automatically collect certain information, including:
- Usage Information: Pages viewed, features used, actions taken, dates and times of access
- Device Information: IP address, browser type, device type, operating system
- Session Information: Login times, session duration, referring website
- Performance Data: Error logs, performance metrics, system diagnostics
1.3 Information from Third Parties
We may receive information about you from third parties, such as:
- Payment processors (Stripe) for transaction verification
- Analytics providers for usage insights
- Security services (Cloudflare Turnstile) for bot protection
2. How We Use Your Information
We use the information we collect to:
- Provide and maintain our Service: Create accounts, manage teams, deliver features
- Process transactions: Handle subscriptions and payments through Stripe
- Communicate with you: Send service updates, respond to inquiries, provide support
- Improve our Service: Analyze usage patterns, fix bugs, develop new features
- Ensure security: Detect fraud, prevent abuse, protect accounts
- Comply with legal obligations: Meet regulatory requirements, respond to legal requests
- Personalize your experience: Remember preferences, provide relevant content
3. How We Share Your Information
We do not sell, trade, or rent your personal information. We may share your information in the following circumstances:
3.1 With Your Consent
- When you make content public or share it with other users
- When you authorize third-party integrations
3.2 With Service Providers
We work with trusted third-party services that help us operate our platform:
| Service Provider | Purpose | Data Shared |
|---|---|---|
| Stripe | Payment processing | Payment information, billing details |
| Bytescale | File storage and delivery | Uploaded files, images, documents |
| UploadCare | File storage and delivery | Uploaded files, images, documents |
| Meilisearch | Search functionality | Content metadata for indexing |
| PlanetScale | Database hosting | All application data |
| Cloudflare Turnstile | Bot protection | IP address, interaction data |
| BetterStack | Error logging | Error messages, system logs |
| EmailOctopus | Newsletter management | Email address, subscription preferences |
3.3 For Legal Reasons
We may disclose information if required to:
- Comply with legal obligations or court orders
- Protect our rights, property, or safety
- Prevent fraud or security issues
- Enforce our Terms of Service
4. Third-Party Services
Our Service integrates with several third-party providers. Each has their own privacy policy:
- Stripe: https://stripe.com/privacy
- Bytescale: https://www.bytescale.com/legal/privacy-policy
- UploadCare: https://uploadcare.com/legal/privacy/
- EmailOctopus: https://emailoctopus.com/legal/privacy
- Cloudflare: https://www.cloudflare.com/privacypolicy/
5. Data Security
We implement appropriate technical and organizational measures to protect your information:
- Encryption: HTTPS for all data transmission, encrypted database storage
- Access Controls: Limited access to personal data on a need-to-know basis
- Authentication: Secure password storage, session management, CSRF protection
- Monitoring: Regular security audits, vulnerability scanning, intrusion detection
- File Security: Virus scanning for all uploaded files
While we strive to protect your information, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.
6. Data Retention
We retain your information for as long as necessary to provide our services and comply with legal obligations:
- Active Accounts: Data is retained as long as your account is active
- Inactive Accounts: Accounts with no login for 3 years and no active subscription may be deleted
- Deleted Accounts: Personal data is removed within 90 days of account deletion
- Backups: May retain data in backups for up to 90 days
- Legal Requirements: Some data may be retained longer if required by law
7. Your Rights and Choices
You have certain rights regarding your personal information:
7.1 Access and Portability
You can access and download your data through your account settings or by contacting support.
7.2 Correction
You can update your account information at any time through your profile settings.
7.3 Deletion
You can request deletion of your account and personal data by contacting support. Note that some information may be retained for legal purposes.
7.4 Communication Preferences
You can opt out of non-essential communications through your account settings or by clicking unsubscribe links in emails.
7.5 Do Not Track
We do not currently respond to Do Not Track browser signals.
8. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Essential Cookies: Required for authentication and security (session management, CSRF protection)
- Functional Cookies: Remember your preferences and settings
- Analytics Cookies: Understand how you use our Service to improve it
8.1 Cookie Settings
Essential cookies cannot be disabled as they are necessary for the Service to function. You can control other cookies through your browser settings.
8.2 Session Management
We use secure session cookies with the following attributes:
- HttpOnly: Prevents JavaScript access
- Secure: Only transmitted over HTTPS (in production)
- SameSite: Provides CSRF protection
9. Children's Privacy
Our Service is not intended for children under 18. Users must be 18 years or older, or have parental consent. We do not knowingly collect personal information from children under 18 without parental consent. If we learn we have collected such information, we will promptly delete it.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your own. These countries may have different data protection laws. By using our Service, you consent to such transfers. We ensure appropriate safeguards are in place to protect your information.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- Posting the new policy on this page
- Updating the "Last Updated" date
- Sending an email notification for significant changes
Continued use of our Service after changes constitutes acceptance of the updated policy.
12. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us:
- Email: [email protected]
- Support: https://hockeyshare.com/support
Your Privacy Matters
We are committed to protecting your privacy and being transparent about our data practices. If you have any concerns or questions, please don't hesitate to reach out to us.