Privacy Policy - FootballStatus
This policy explains how we collect, use, and share personal data when you use FootballStatus.
Policy Summary
FootballStatus processes personal data to operate user accounts, secure the service, deliver content, and display ads.
Main purposes
- Create and manage your account (sign-up, sign-in, and account recovery).
- Maintain security and prevent abuse (fraud, bots, and unauthorized access).
- Operate the service (technical operation, stability, and performance).
- Display advertising (Google AdSense; personalization depends on your cookie choices and Google settings).
Main service providers
- Supabase (authentication and database).
- Cloudflare (security, content delivery, and performance; may process IP and technical request data).
- Google AdSense (ad serving and related measurement).
- Hosting provider to deliver the website and APIs.
- API-Football (sports data provider; does not require your email/password, but may receive technical request data).
Who We Are
What Data We Collect
1. Data provided by you
- Email address.
- Password (processed securely; not stored in plain text).
2. Data collected automatically (technical)
- IP address, browser/device information, and operating system data.
- Access logs and security events.
- Session identifiers and technical data (including cookies, where applicable).
3. Cookies and similar technologies
We use cookies/local storage to keep your session and preferences (essential), display ads (advertising), and measure usage (analytics).
Why We Use Your Data
- Create and manage your account (registration, sign-in and basic support).
- Operate and improve FootballStatus (stability, fixes, performance and maintenance).
- Security and fraud/abuse prevention (suspicious activity detection, bot protection and unauthorized access prevention).
- Display ads (Google AdSense: delivery, frequency capping, measurement and quality controls).
Legal Bases (LGPD)
Depending on the context, we process data under the following legal bases:
- Performance of contract (to provide the service and enable account access).
- Legitimate interest (security, abuse prevention, and service improvement).
- Legal/regulatory obligation (when required by law).
- Consent (mainly for non-essential cookies, including personalized advertising/analytics where applicable).
International Transfer
Some providers may process data outside Brazil through global infrastructure. In those cases, we adopt contractual and technical safeguards to protect data and support LGPD compliance.
Retention and Deletion
We keep personal data only for as long as needed to fulfill this Policy's purposes, comply with legal obligations, resolve disputes, and preserve security.
You may request account deletion; we will delete/anonymize data when possible, while retaining what is legally required or necessary for security.
Security
We apply reasonable technical and organizational measures, including:
- Password hashing through the authentication provider.
- Encryption in transit (HTTPS).
- Access controls and monitoring.
- Protection against abuse and attacks (rate limiting, firewall, etc.).
No system is 100% secure; if a relevant incident occurs, we will contain it and communicate as required.
Your Rights (LGPD)
You may request:
- Confirmation of processing and access.
- Data correction.
- Portability (where applicable).
- Deletion/anonymization (where applicable).
- Information about data sharing.
- Withdrawal of consent (cookies).
Children and Adolescents
FootballStatus is not directed to children. If you believe a child provided data without appropriate guardian consent, contact us so we can review and take action.
Changes to This Policy
We may update this Policy periodically. The date at the top shows the latest revision. Material changes may be communicated on the site.