Match Tracker
MatchTracker

PRIVACY POLICY

Effective Date: October 10, 2025

Last Updated: October 10, 2025

Document Version: 1.0

INTRODUCTION AND SCOPE

This Privacy Policy ("Policy") governs the collection, processing, storage, and disclosure of personal information by Match Tracker ("we," "us," "our," or "the Service") in accordance with applicable data protection laws, including but not limited to the General Data Protection Regulation (EU) 2016/679 ("GDPR"), the California Consumer Privacy Act ("CCPA"), and other relevant privacy legislation.

By accessing or using our services, you ("User," "you," or "your") acknowledge that you have read, understood, and agree to be bound by this Policy.

1. INFORMATION WE COLLECT

1.1 Personal Data Categories

Identity and Contact Information:

  • Email address (required for account creation and authentication)
  • Display name (optional, user-provided)
  • User-generated team and player names

Sports Performance Data:

  • Match results, scores, and statistics
  • Player performance metrics (goals, assists, match participation)
  • Team management information and match scheduling data
  • User-generated notes and match commentary

Technical and Usage Data:

  • IP address, browser type, and device information
  • Session data, login timestamps, and access patterns
  • Application performance metrics and error logs
  • Anonymized usage analytics and feature interaction data

1.2 Data Collection Methods

Direct Collection

Information you provide when creating an account, entering match data, or contacting support.

Automatic Collection

Technical data collected through your use of the application and standard web technologies.

2. LEGAL BASIS FOR PROCESSING

In accordance with Article 6 of the GDPR, we process personal data under the following legal bases:

Consent (Article 6(1)(a))

Scope: Account creation, match data processing, and team management features

Withdrawal: You may withdraw consent at any time by deleting your account

Effect: Withdrawal will not affect the lawfulness of processing prior to withdrawal

Legitimate Interests (Article 6(1)(f))

Scope: Service improvement, security monitoring, and technical maintenance

Balancing Test: Our interests do not override your fundamental rights and freedoms

Right to Object: You may object to processing under this basis

3. PURPOSES OF PROCESSING

We process your personal data for the following purposes:

Primary Functions

  • • Providing core match tracking and team management services
  • • Maintaining user accounts and authentication
  • • Storing and organizing sports performance data
  • • Generating statistics and performance analytics

Secondary Functions

  • • Improving application functionality and user experience
  • • Ensuring platform security and preventing unauthorized access
  • • Providing customer support and resolving technical issues
  • • Analyzing usage patterns for service optimization

4. YOUR DATA PROTECTION RIGHTS

Under applicable data protection laws, including the GDPR, you have the following rights regarding your personal data:

Right of Access (Article 15)

Obtain confirmation of processing and access to your personal data.

Response Time: Within 30 days of request

Right to Rectification (Article 16)

Correction of inaccurate or incomplete personal data.

Process: Available through account settings or by request

Right to Erasure (Article 17)

Deletion of personal data under specific circumstances.

Note: Subject to legal and technical limitations

Right to Restrict Processing (Article 18)

Limitation of processing under specific conditions.

Effect: Data stored but not actively processed

Right to Data Portability (Article 20)

Transfer of data to another service provider.

Format: Structured, machine-readable format

Right to Object (Article 21)

Object to processing based on legitimate interests.

Result: Processing will cease unless compelling grounds exist

Exercising Your Rights

To exercise any of these rights, contact us at info@matchtracker.co.uk. We will respond within 30 days and may require verification of your identity for security purposes.

5. DATA SECURITY AND RETENTION

5.1 Security Measures

Technical Safeguards:

  • • End-to-end encryption for data in transit (TLS 1.3)
  • • Encryption at rest using industry-standard algorithms
  • • Multi-factor authentication and secure session management
  • • Regular security audits and vulnerability assessments
  • • Automated backup systems with encryption

Organizational Measures:

  • • Access controls and principle of least privilege
  • • Staff training on data protection and security protocols
  • • Incident response and data breach notification procedures
  • • Regular review and update of security policies
  • • Vendor security assessments and contractual safeguards

5.2 Data Retention Periods

Active Account Data:

  • • Account information: Retained until account deletion
  • • Match and player data: Retained until user deletion
  • • User preferences: Retained until account deletion

System Data:

  • • Security logs: 90 days maximum
  • • Performance analytics: 2 years maximum
  • • Error logs: 30 days maximum

Account Deletion: Upon account deletion request, personal data is permanently removed within 30 days, except where retention is required by law or for legitimate business purposes.

6. THIRD-PARTY SERVICE PROVIDERS

We engage certain third-party service providers to support our operations. These providers are contractually bound to protect your personal data and process it only as instructed.

Current Service Providers:

Supabase Inc.

Service: Database hosting and authentication

Location: United States

Safeguards: Standard Contractual Clauses (SCCs)

Vercel Inc.

Service: Application hosting and CDN

Location: United States

Safeguards: Standard Contractual Clauses (SCCs)

Clerk Dev Inc.

Service: Authentication and user management

Location: United States

Safeguards: Standard Contractual Clauses (SCCs)

All third-party providers maintain industry-standard security certifications (SOC 2, ISO 27001) and comply with applicable data protection regulations including GDPR.

7. INTERNATIONAL DATA TRANSFERS

Your personal data may be transferred to and processed in countries outside your jurisdiction. We ensure appropriate safeguards are in place for all international transfers.

Transfer Safeguards:

  • • European Commission Standard Contractual Clauses (SCCs)
  • • Adequacy decisions where applicable
  • • Additional security measures and impact assessments
  • • Regular review of transfer arrangements and safeguards

8. CONTACT INFORMATION AND COMPLAINTS

Data Controller Contact

Privacy Inquiries: info@matchtracker.co.uk

Data Protection Officer: info@matchtracker.co.uk

General Support: support@matchtracker.co.uk

Response Time: Within 30 days of receipt

Supervisory Authority

You have the right to lodge a complaint with your local data protection authority if you believe your rights have been violated.

EU Residents: Contact your national data protection authority

UK Residents: Information Commissioner's Office (ICO)

9. POLICY UPDATES AND CHANGES

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.

Notification Process:

  • • Material changes will be communicated via email or in-app notification
  • • Updated policies will be posted on this page with revision date
  • • Continued use of the service constitutes acceptance of changes
  • • For significant changes, we may seek explicit consent where required by law

DOCUMENT INFORMATION

Document Version: 1.0

Effective Date: October 10, 2025

Last Reviewed: October 10, 2025

Next Review Date: October 10, 2026

Governing Law: This policy is governed by applicable data protection laws

This Privacy Policy complies with the EU General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), and other applicable privacy laws.

MatchTracker

Making grassroots football tracking simple for coaches and parents everywhere.

Legal

  • Privacy

©2026 MatchTracker. All rights reserved.