Privacy Policy
Contents
1. Introduction
Game Day Roster ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our custom sportswear ordering platform.
Please read this Privacy Policy carefully. By accessing or using Game Day Roster, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree, please do not use the Platform.
2. Information We Collect
2.1 Information You Provide
We collect information you provide directly, including:
- Account Information: Name, email address, phone number, organization name, and role
- Roster Information: Player names, jersey numbers, sizing information, and sport-specific data. This information may include data belonging to minor athletes. For athletes under 13 years of age (or under 16 in the EU), roster data is collected only after obtaining verifiable parental consent through our guardian consent workflow described in Section 9.
- Order Information: Shipping addresses, billing information, and order preferences
- Payment Information: Payment card details (processed securely through Stripe)
- Communications: Messages, feedback, and support requests
2.2 Information Collected Automatically
When you use the Platform, we automatically collect:
- Device Information: IP address, browser type, operating system, and device identifiers
- Usage Information: Pages visited, features used, and actions taken
- Log Data: Access times, error logs, and referring URLs
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Platform
- Process orders and facilitate fulfillment
- Manage user accounts and authentication
- Send transactional communications (order confirmations, status updates)
- Respond to inquiries and provide customer support
- Analyze usage patterns to enhance user experience
- Detect and prevent fraud, abuse, and security incidents
- Comply with legal obligations
4. Information Sharing and Disclosure
We may share your information in the following circumstances:
4.1 With Brands and Manufacturers
Order and roster information is shared with the brands and manufacturers fulfilling your orders. Each brand operates as a separate tenant on our platform with access only to their own customer data.
4.2 With Service Providers
We use third-party service providers to operate the Platform:
| Provider | Purpose | Data Shared |
|---|---|---|
| Auth0 | Authentication & identity management | Email, name, login credentials |
| Stripe | Payment processing | Payment card details, billing address |
| Microsoft Azure | Cloud hosting & file storage | All platform data (encrypted) |
4.3 For Legal Purposes
We may disclose information if required by law, legal process, or government request, or when we believe disclosure is necessary to protect our rights, prevent fraud, or ensure user safety.
4.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
5. Data Security
We implement appropriate technical and organizational measures to protect your information, including:
- Encryption of data in transit (TLS/SSL) and at rest
- Multi-tenant data isolation at the database level
- Role-based access controls
- Regular security assessments
- Secure authentication through Auth0
While we strive to protect your information, no method of transmission or storage is completely secure. We cannot guarantee absolute security.
6. Your Rights and Choices
Depending on your location, you may have certain rights regarding your personal information:
- Access: Request a copy of your personal information
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your personal information
- Portability: Request your data in a portable format
- Opt-out: Unsubscribe from marketing communications
To exercise these rights, please contact us at privacy@gamedayroster.com. We will respond within 30 days.
6.1 For European Users (GDPR)
If you are located in the European Economic Area, you have additional rights under the General Data Protection Regulation (GDPR), including the right to lodge a complaint with a supervisory authority. Our legal basis for processing includes contract performance, legitimate interests, and consent.
6.2 For California Users (CCPA)
California residents have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information is collected and the right to opt out of the sale of personal information. We do not sell personal information.
6.3 Parental Rights (COPPA)
Under the Children's Online Privacy Protection Act (COPPA), parents and legal guardians of children under 13 have specific rights regarding their child's personal information collected through our Platform. These rights include:
- Review: Request to review the personal information we have collected from your child
- Deletion: Direct us to delete your child's personal information from our records
- Refuse Further Collection: Refuse to permit any further collection or use of your child's information
- Withdraw Consent: Revoke previously granted consent at any time
To exercise any of these rights, please contact us at privacy@gamedayroster.com with the subject line "Parental Rights Request." We will verify your identity as the parent or legal guardian before processing your request.
7. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Maintain your session and authentication state
- Remember your preferences
- Analyze usage patterns
- Improve Platform performance
You can control cookies through your browser settings. Disabling cookies may limit your ability to use certain features of the Platform.
8. Data Retention
We retain your personal information for as long as necessary to provide the Platform services, comply with legal obligations, resolve disputes, and enforce our agreements. When information is no longer needed, we securely delete or anonymize it.
9. Children's Privacy
Game Day Roster is committed to protecting the privacy of children. Our Platform may collect roster information for youth athletes, including children under 13 years of age (or under 16 in the EU). We comply with the Children's Online Privacy Protection Act (COPPA) and similar international regulations by implementing a Verifiable Parental Consent (VPC) process.
9.1 Verifiable Parental Consent Process
Before any personal information is collected from or about a child under 13 (or 16 in the EU), we require affirmative consent from a parent or legal guardian. Our consent process works as follows:
- When an athlete is identified as a minor requiring parental consent, the Platform sends a direct notification to the parent or legal guardian via email
- The parent must review our privacy practices and affirmatively consent before any roster data for that child is processed
- Coaches and team administrators cannot submit roster information for minors without the Platform first obtaining parental consent
- Consent records are maintained with timestamps and can be verified upon request
9.2 Information Collected from Minors
With verified parental consent, we may collect the following information about minor athletes:
- Player name
- Jersey number and sizing information
- Sport-specific roster data (position, team assignment)
We do not collect more information than is reasonably necessary to fulfill the sportswear ordering purpose.
9.3 Parental Control and Access
Parents and legal guardians maintain control over their child's information at all times. You may:
- Review the personal information collected about your child
- Request deletion of your child's personal information
- Withdraw consent and stop further collection at any time
See Section 6.3 (Parental Rights) for detailed instructions on exercising these rights, or contact us at privacy@gamedayroster.com.
10. International Data Transfers
Your information may be transferred to and processed in the United States, where our servers and service providers are located. By using the Platform, you consent to this transfer. We implement appropriate safeguards for international data transfers in compliance with applicable laws.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on the Platform and updating the "Last updated" date. Your continued use of the Platform after changes constitutes your acceptance of the revised policy.
12. Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us at:
Game Day Roster
Email: privacy@gamedayroster.com
For data protection inquiries in the EU, you may also contact our Data Protection Officer at dpo@gamedayroster.com.
See also our Terms of Service