Privacy Policy

Last updated: March 1, 2026

1. Data Collection

We collect only the data necessary to operate CourtSide. This includes:

  • Account information (email, display name, role)
  • Reviews and ratings you submit
  • Salary reports (stored as salary bands; only aggregated benchmarks are shown publicly)
  • Usage data (page views, session duration) via privacy-friendly analytics

We do not collect biometric data, precise location, or data from third-party social media accounts.

2. How We Use Your Data

  • Display anonymized reviews and ratings on club and agent profiles
  • Generate aggregate statistics (league averages, salary benchmarks)
  • Improve the platform based on usage patterns
  • Send transactional emails (verification, password reset)
  • Prevent abuse and enforce community guidelines

We never sell your personal data to third parties. We never share individual salary data — only aggregated, anonymized benchmarks.

3. Data Storage

All data is stored on servers located within the European Union (Germany). We use encrypted connections (TLS) for all data transmission. Passwords are hashed using industry-standard algorithms and are never stored in plain text.

4. Cookies

CourtSide uses essential cookies and similar storage for:

  • Session cookie — keeps you logged in
  • CSRF token — protects against cross-site request forgery
  • Product analytics (when enabled) — PostHog may use a small cookie or browser storage to measure page views and in-app events; we use EU infrastructure and do not build advertising profiles

We do not use advertising cookies, tracking pixels, or social ad networks. You can block analytics in your browser; the site remains usable for core features.

5. Third Parties

We share data with the following service providers, under strict data processing agreements:

  • Hosting: EU-based cloud provider (data stays in Germany)
  • Email: Transactional email service for account notifications
  • Payment: Stripe for premium subscriptions (PCI-compliant)
  • Product analytics: PostHog (EU cloud) for aggregated usage and event metrics — signed-in users are linked by opaque account id and role, not for ads

No data is transferred outside the EU without adequate safeguards.

6. Your Rights (DSGVO / GDPR)

Under EU data protection law, you have the right to:

  • Access — Request a copy of all data we hold about you
  • Rectification — Correct inaccurate personal data
  • Deletion — Request deletion of your account and all associated data
  • Export — Request a copy of your data
  • Restriction — Restrict processing of your data
  • Objection — Object to data processing based on legitimate interest

To exercise any of these rights, contact us at the email below. We will respond within 30 days.

7. Contact

Data Protection Inquiries

privacy@courtside.eu