Privacy Policy
This is a conservative template for the managed CueSport Scoreboard Cloud service. Have counsel review it for [Operator province/country — fill before publish] before commercial reliance.
1. Who we are
CueSport Scoreboard Cloud operates the managed hosting service at https://cuesport.macleod.systems. Contact for privacy requests: Not configured — set LEGAL_CONTACT_EMAIL.
2. AI used in building the product (not in processing your data by default)
AI coding assistants and related tools were used to help create and maintain the software and this hosted service. That is a development practice. Under normal operation of the managed service, we do not send your account, match, or billing data to AI providers for training or automated analysis. If that ever changes in a material way, we will update this Privacy Policy and provide notice as described below. Human operators remain responsible for the service; see also the Terms of Service (Use of AI in creating the product).
3. What we collect
- Account identity from Google / Supabase Auth (for example email and auth subject id).
- OBS Dock Keys, usage metadata, rooms/tables, and connection activity needed to run the relay.
- Match, event, and room data the product stores on the operator’s servers.
- Billing identifiers via Stripe (card data is handled by Stripe; we do not store full card numbers).
- Optional stream listing metadata you choose to publish.
4. Why we process it
We process this information to provide the hosted service, authenticate users, enforce plan quotas, bill subscriptions, prevent abuse, secure the systems, and comply with law.
5. Service providers
Processing may involve Google (sign-in), Supabase Auth (identity), Stripe (payments), and the VPS / hosting provider that runs the application and database. Those providers process data on our behalf or as independent controllers for their own services (for example Google Account login).
6. Operator access
As host, the operator may access customer data on the managed service for operations, security, abuse prevention, billing, and legal compliance.
7. Retention and deletion
We retain account and operational data for as long as needed to provide the service and meet legitimate operational, billing, and legal needs. To request account deletion or a privacy-related change, contact Not configured — set LEGAL_CONTACT_EMAIL. Some records may be retained where required by law or for security and dispute resolution.
8. Sharing and selling
We do not sell personal data. We share data with service providers as needed to operate the service, or when required by law.
9. International transfers
Servers and processors may be located outside your country. Where transfers occur, we rely on appropriate mechanisms available to the service providers and applicable law.
10. Your choices
You can disconnect Google sign-in from your side, cancel billing via the Stripe Customer Portal, stop publishing stream listings, and contact us about deletion requests. Product feedback: GitHub Issues.
11. Changes
We may update this Privacy Policy. Material changes will be noted via the site or dashboard. Continued use after the effective date constitutes acceptance where permitted by law.