Pick'em Club Logo
Login

Privacy Policy

Last updated: April 24, 2026

Pick'em Club respects your privacy. This policy explains, in plain language, what information we collect when you use our website and mobile apps, how we use it, who we share it with, and the choices you have. If anything here is unclear, email us at privacy@pick-em.club.

Information We Collect

  • Account information: your name, email address, optional phone number, and optional avatar image.
  • Gameplay data: the picks you submit, the entries you create, and your season standings across the clubs you participate in.
  • Communications:chat messages, reactions, and @mentions inside a club's chat, along with delivery and read-state metadata.
  • Device data: push-notification tokens, IP address, and browser or operating-system information used for session security and abuse prevention.
  • Usage analytics: page views, interactions, performance metrics, and session recordings used to debug issues and improve the service.

How We Use Information

  • Operate the service — process your picks, compute standings, and show leaderboards.
  • Send email and push notifications for pick deadlines, score updates, and manager messages.
  • Content moderation — automated filtering on user-submitted content plus human review when content is reported.
  • Improve the service — analytics, debugging, and diagnosing crashes or errors.
  • Account recovery and security — detecting suspicious sign-ins and helping you recover access to your account.
  • Service Providers We Share Data With

    We use a small set of third-party service providers to run Pick'em Club. Each provider only receives the data it needs to perform its function.

    • Supabase — database hosting, authentication, and real-time sync. Stores your account, picks, standings, and chat data.
    • Vercel — web hosting, analytics, and speed insights. Receives request-level data (URL, IP, user agent) for each page view.
    • Resend — transactional email delivery. Receives your email address and the contents of messages we send you.
    • Expo — iOS and Android push-notification delivery. Receives your push token and notification payloads.
    • FullStory — session replay for debugging and usability improvement. Receives page interactions and anonymized session metadata.
    • SportsDataIO — public tournament and game data. We receive data from SportsDataIO; we do not send any user data to them.
    • OpenAI — used internally by our admin tooling only. No user chat content is sent to OpenAI.
    • Twilio — SMS delivery when phone-based notifications are enabled. Receives your phone number and the contents of messages we send you.

    What We Don't Do

    • We don't sell your personal information.
    • We don't share your data with advertisers.
    • We don't use your chat messages to train AI models.

    Your Choices and Rights

    • Access and update your profile — change your name, email, phone, or avatar from Account settings at any time.
    • Delete your account— available under Account → Danger Zone. Deletion follows a 30-day grace period, after which your personal data is permanently removed.
    • Opt out of marketing email — every marketing email includes an unsubscribe link. Transactional emails about your active picks, standings, and account security continue as needed for service operation.
    • Disable push notifications— use your device's system notification settings for the Pick'em Club app.
    • Block other users — long-press a message in chat and choose Block to prevent further contact from that user.

    Data Retention

    • Active accounts: your data is retained for as long as the account exists.
    • Deleted accounts: personally identifying information is anonymized immediately on request, and the underlying rows are permanently removed after 30 days.
    • Backups: deleted data may persist in encrypted backups for up to 90 days before being rotated out.

    Children

    Pick'em Club is intended for users 13 years of age or older (or 16 and older in applicable jurisdictions). We do not knowingly collect personal information from anyone younger. If you believe a child under this age has created an account, contact us at privacy@pick-em.club and we will investigate and, where appropriate, remove the account.

    Security

    We use industry-standard encryption in transit (TLS) and at rest. Our core infrastructure providers, Supabase and Vercel, are SOC 2 compliant. No system is completely secure, so please report suspected vulnerabilities to security@pick-em.club promptly.

    Changes to This Policy

    We may update this policy from time to time. When material changes are made we will notify you by email or in-app before the changes take effect. Continued use of the service after changes become effective constitutes acceptance of the updated policy.

    Contact

    For privacy questions or data requests, email privacy@pick-em.club. For general service issues, email support@pick-em.club.