Introduction
Game Day DJ ("we", "our", "us") respects your privacy. This policy explains how we collect, use, and protect your personal data in compliance with the General Data Protection Regulation (GDPR) and other applicable privacy laws.
Data Controller
Game Day DJ
Email: privacy@gamedaydj.app
Website: https://gamedaydj.app
Data We Collect
Account Data
- Email address
- Name (optional)
- OAuth tokens (Google, Apple)
- User ID (automatically generated)
Usage Data
- Downloaded sounds and music tracks
- Ratings and reviews of content
- Uploaded sounds (if applicable)
- Playlist configurations and preferences
- Sound playback history
Device Data
- Device identifier (anonymized)
- App version
- Operating system version
- IP address (collected during signup for security purposes only)
Analytics Data (Optional - Requires Consent)
- Screen views and feature usage
- App performance metrics
- Crash reports and error logs
Legal Basis for Processing
We process your personal data based on:
- Contract: To provide the app services you've signed up for
- Consent: For analytics and optional features (you can withdraw anytime)
- Legitimate Interest: To improve app functionality and security
- Legal Obligation: To comply with applicable laws and regulations
How We Use Your Data
We use your data to:
- Provide authentication and personalized experience
- Store your sound library and preferences across devices
- Analyze app usage to improve features and performance
- Send important notifications (account security, updates)
- Respond to your support requests
- Comply with legal obligations
Data Sharing
We do NOT sell your data to third parties. We share data only with trusted service providers:
- Supabase (Backend Infrastructure): GDPR-compliant hosting, EU/US data centers
- Analytics Providers (PostHog/Mixpanel): Usage analytics, anonymized where possible (opt-out available)
- Error Tracking (Sentry): Crash reports for bug fixes (no personally identifiable information)
- Email Service (SendGrid): Transactional emails (account verification, data exports)
All third-party processors are GDPR-compliant and have Data Processing Agreements in place.
International Data Transfers
Your data may be transferred to and processed in countries outside the European Economic Area (EEA). We ensure appropriate safeguards are in place:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- GDPR-compliant data centers (Supabase EU region)
- Adequate security measures for data protection
Your Rights (GDPR)
Under GDPR, you have the right to:
- Access: Request a copy of your data
- Portability: Export your data in JSON format (machine-readable)
- Rectification: Update or correct your personal information
- Deletion: Delete your account and all associated data ("Right to be Forgotten")
- Restriction: Limit how we process your data
- Object: Object to certain types of processing
- Withdraw Consent: Opt-out of analytics and optional features anytime
To exercise your rights, contact us at privacy@gamedaydj.app or use the Privacy Settings screen in the app.
Data Retention
- Active accounts: Data retained as long as your account exists
- Deleted accounts: 30-day grace period (you can restore your account), then permanently deleted
- Backup data: Purged from backups within 90 days of account deletion
- Analytics data: Anonymized data retained for 26 months (industry standard)
- Legal obligations: Financial records retained for 7 years (tax compliance)
Data Security
We implement industry-standard security measures:
- Encryption in transit (TLS/SSL) and at rest (AES-256)
- Access controls and authentication (OAuth 2.0, JWT tokens)
- Regular security audits and vulnerability assessments
- Secure data centers with physical and network security
While we strive to protect your data, no system is 100% secure. We recommend using strong passwords and enabling two-factor authentication.
Children's Privacy
Our app is not intended for children under 13 years old. We do not knowingly collect personal data from children under 13. If you believe we have inadvertently collected such data, please contact us immediately.
Cookies and Tracking
Our mobile app does not use cookies. Analytics tracking (if you consent) uses device identifiers, which you can reset in your device settings or opt-out via Privacy Settings in the app.
Changes to This Policy
We may update this Privacy Policy from time to time. We will:
- Notify users of significant changes via email
- Update the "Last Updated" date at the top
- Increment the version number
- Request re-consent if required by law
Continued use of the app after changes constitutes acceptance of the updated policy.
Contact & Complaints
For privacy concerns, data requests, or questions:
- Email: privacy@gamedaydj.app
- In-app: Privacy Settings screen
If you're not satisfied with our response, you have the right to lodge a complaint with your local data protection authority:
Effective Date
This Privacy Policy is effective as of December 11, 2025.
Game Day DJ
Making sports events more engaging, one sound at a time.