Privacy Policy
We process the minimum personal data needed to run the game: your display name, email, and your predictions/scores. Hosting is in the EU.
What we store
Account details, notification preferences, predictions, league memberships, and basic security logs (e.g. login events).
We send transactional emails (verification, password reset) and — only if you opt in — weekly results and reminders. Every marketing-style email has an unsubscribe link.
Your rights (GDPR)
You can access, correct, export, or delete your data. Deleting your account anonymises your profile immediately and purges personal data after a short grace period.
Cookies
We use a session cookie to keep you signed in and a CSRF cookie for security. No third-party advertising trackers.
This is a starter document — replace with your finalised policy before public launch.