Security & Privacy

Your security and privacy are our top priorities. Here's how we protect your information.

Password Protection

Your passwords are encrypted using bcrypt, a military-grade encryption method. We never store your actual password - only an encrypted version that can't be reversed.

HTTPS Encryption

All data sent between your browser and our servers is encrypted with HTTPS. This means your information is protected from eavesdropping while in transit.

Email Verification

We verify your email address to ensure account security and prevent unauthorized access. Only verified users can access league features.

Secure Sessions

Your login sessions are managed securely with automatic timeouts and protection against common attacks like session hijacking.

  • Account lockout after 5 failed login attempts
  • Secure password reset tokens (expire in 1 hour)
  • IP tracking for suspicious activity monitoring
  • Regular secure data backups

Privacy Policy

Your privacy matters to us. Here's exactly what data we collect and how we use it.

What Data We Collect

Account Information
  • First and last name
  • Email address
  • Username
  • Encrypted password
League Data
  • League memberships and roles
  • Tournament participation
  • League settings and preferences
  • Invitation history
Technical Information
  • IP address for security monitoring
  • Login timestamps
  • Browser and device information

How We Use Your Data

Essential Services
  • Creating and managing your account
  • Providing league management features
  • Sending important account notifications
  • Customer support
Communications
  • Email verification messages
  • Password reset instructions
  • League invitations
  • Important security alerts
Security & Compliance
  • Fraud prevention
  • Account security monitoring
  • Compliance with legal requirements
Email Services

We use Mailgun, a trusted email service provider, to send verification emails, password resets, and league invitations. Mailgun processes your email address only to deliver these essential messages and follows strict data protection standards.

Your Rights
  • Access your personal data
  • Update your information anytime
  • Delete your account and data
  • Export your league data
  • Opt out of non-essential communications
Our Commitment to You
No Data Selling: We never sell your personal information to third parties
Minimal Collection: We only collect data necessary to provide our services
Secure Storage: All data is stored in encrypted, secure databases
Transparency: We're always clear about how we use your information

Questions about our privacy practices? Contact us

Last updated: January 2025