Privacy Policy

Last Updated: February 15, 2026

1. Introduction

Welcome to Sports Betting Analyzer ("we," "our," or "the Service"). This Privacy Policy explains how we collect, use, and protect your information when you use our beta testing platform.

By creating an account and using the Service, you agree to this Privacy Policy. If you do not agree, please do not use the Service.

2. Information We Collect

Account Information:

  • Username: Your chosen display name (visible to other users)
  • Password: Securely hashed (we never see your actual password)
  • User ID: Randomly generated unique identifier
  • Role: User role (admin or beta user)
  • Created Date: Account creation timestamp

Usage Data:

  • Picks: Any betting picks you make (admin users only)
  • Activity: Pages visited, features used, actions taken
  • Session Data: Login time, IP address, session duration
  • Device Info: Browser type, operating system, screen size

What We DON'T Collect:

  • ❌ Email address (not required)
  • ❌ Phone number
  • ❌ Payment information (no purchases)
  • ❌ Location tracking (beyond IP address)
  • ❌ Third-party cookies or ads

3. How We Use Your Information

We use collected information to:

  • Provide the Service: Enable account access and core features
  • Improve the Platform: Analyze usage to enhance user experience
  • Track Performance: Display picks, stats, and leaderboards
  • Prevent Abuse: Monitor for security threats and violations
  • Communicate: Send important updates about the beta (future)
Beta Testing Purpose: During beta, we may analyze your usage patterns to identify bugs, improve features, and enhance the overall experience. This includes reviewing error logs, feature usage, and user feedback.

4. Data Sharing

Public Information:

  • Your username is visible to all users
  • Your picks and stats are visible on leaderboards and profiles
  • Your performance data (win rate, ROI) is publicly displayed

Private Information:

  • Your password is never shared (securely hashed)
  • Your IP address is never shared publicly
  • Your session data is kept private

Third-Party Sharing:

  • We do NOT sell your data to third parties
  • We do NOT share data with advertisers
  • We MAY use third-party services for hosting (e.g., cloud servers)

5. Data Security

How We Protect Your Data:

  • Password Hashing: Passwords encrypted with scrypt (32-byte salt)
  • HTTPS Connection: All traffic encrypted via ngrok tunnel
  • Session Security: Session cookies with HttpOnly flag
  • SQL Injection Protection: Parameterized queries (audited)
  • Account Lockout: 5 failed login attempts = 15-minute lockout
  • Daily Backups: Automated database backups (3am daily)
Beta Environment Notice: This is a beta testing environment. While we implement security best practices, data protection is not at production-grade levels. Do not use sensitive passwords or share confidential information.

6. Data Retention

How Long We Keep Data:

  • Account Data: Until you request deletion or account is inactive for 1 year
  • Picks & Stats: Stored indefinitely for historical analysis
  • Session Logs: Kept for 30 days, then automatically deleted
  • Error Logs: Kept for 30 days, then automatically deleted
  • Backup Data: 7-day rolling backups (older backups deleted)

Beta Data Resets:

During beta testing, we may need to reset all data (picks, stats, users) for testing purposes. We will provide advance notice when possible, but data persistence is not guaranteed during beta.

7. Your Rights

You have the right to:

  • Access Your Data: View all your picks, stats, and account info
  • Update Your Data: Change your password via Settings page
  • Delete Your Account: Request deletion via admin (cannot self-delete)
  • Export Your Data: Request data export (future feature)
  • Opt-Out: Stop using the Service at any time

To Exercise Your Rights:

Contact the admin (Sean) to request account deletion, data export, or any privacy-related questions.

8. Cookies

What Cookies We Use:

  • Session Cookie: Keeps you logged in (HttpOnly, 12-hour expiry)
  • CSRF Token: Prevents cross-site request forgery attacks

What We DON'T Use:

  • ❌ Tracking cookies
  • ❌ Advertising cookies
  • ❌ Third-party analytics cookies

Cookies are essential for the Service to function. By using the Service, you consent to our use of session cookies.

9. Children's Privacy

The Service is not intended for users under 18 years of age. We do not knowingly collect information from minors. If you are under 18, do not create an account or use the Service.

If we discover that a minor has created an account, we will delete it immediately.

10. Changes to This Policy

We may update this Privacy Policy as the Service evolves. Changes will be posted on this page with an updated "Last Updated" date.

Continued use of the Service after changes constitutes acceptance of the updated policy. We recommend reviewing this page periodically.

11. Contact

For privacy-related questions, concerns, or data requests, contact:

Admin: Sean
Platform: Sports Betting Analyzer
Contact: Via in-app admin contact