Privacy Policy
Effective 15 July 2026
This page is maintained by JIKAM NIG LTD to explain what Sessions Pro collects, how it's used, and the controls you have. It is not an independent certification. If anything here is unclear, email support@sessionspro.app.
1. Who is the data controller
JIKAM NIG LTD is the data controller for personal information processed through Sessions Pro. Contact: support@sessionspro.app.
2. What we collect
- Account information — email address, and, if you sign in with Google, your name and profile photo returned by Google.
- Profile you set — display name, handle, preferred position, and any photo you upload.
- Session activity — the sessions and game days you're part of, squads you're drafted into, live events (goals, assists, own goals), MVP picks, and end-of-game peer ratings.
- Content you post — chat messages inside a session, notes, and images you attach to a game day.
- Device and log data — IP address, browser type, pages viewed, and error reports needed to run and secure the Service.
- Cookies and local storage — used to keep you signed in and remember lightweight preferences. We do not run cross-site advertising trackers.
We do not knowingly collect information from children under 13.
3. How we use it
- Run the core Service: authentication, squads, live scoreboard, ratings, recaps, and stats.
- Show your player card and history to teammates in sessions you have joined.
- Generate AI recap summaries and one-line insights from your session data.
- Send transactional emails (sign-in links, password resets, invites you triggered).
- Keep the Service secure — detect abuse, rate-limit, and debug crashes.
- Comply with legal obligations.
We do not sell your personal information, and we do not use it to train third-party AI models. Prompts sent to AI providers contain the minimum data needed to produce a recap or insight.
4. Legal bases (for users in the UK / EU / EEA)
- Contract — to provide the Service you signed up for.
- Legitimate interests — to secure the Service, prevent abuse, and improve features.
- Consent — where required, for example optional marketing emails.
- Legal obligation — to comply with applicable law.
5. Ratings are anonymous
Peer ratings you give about other players are shown to the rated player as aggregate scores from “a teammate”. We never show a rated player who rated them. Ratings are treated as opinions and not as statements of fact.
6. Who can see your data
- Your teammates — inside a session you have joined: your name, handle, photo, stats, and card.
- Public pages — if you enable a public profile or your organiser publishes a public recap, that specific page is discoverable.
- Session organisers — admins of a session can manage squads, events, and stats within their own session.
- Nobody else — data from other sessions you're not a member of is not visible to you or to search engines.
7. Service providers we use
- Supabase — database, authentication, and file storage.
- Cloudflare — hosting, CDN, and DDoS protection for the web app.
- Google — “Sign in with Google” (only if you choose it).
- Lovable AI Gateway — routing prompts to AI models (currently Google Gemini) to generate recaps and insights.
- Transactional email provider — to deliver sign-in links and password resets.
These providers process data on our behalf under written agreements. Data may be processed outside your country, including in the United States and the European Union. Where required, we rely on appropriate transfer safeguards such as the EU Standard Contractual Clauses.
8. How long we keep it
- Account and profile — while your account is active.
- Session activity, ratings, stats — while the session exists, so the group's history stays intact.
- Logs and error reports — up to 90 days, then rotated out.
- Backups — encrypted database backups may retain data for a limited period after deletion before they age out.
9. Security
Data is stored on managed cloud infrastructure with encryption in transit (HTTPS/TLS) and encryption at rest for databases and file storage. Access inside our tables is scoped by Postgres row-level security so people can only see rows that belong to sessions they are members of. No system is perfectly secure — if you believe you've found a vulnerability, please email support@sessionspro.app.
10. Your rights
Depending on where you live, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate information (most fields are directly editable from your profile).
- Delete your account and personal data.
- Object to or restrict certain processing.
- Export a copy of your data in a portable format.
- Withdraw consent where processing is based on consent.
- Lodge a complaint with your local data-protection authority — for Nigeria this is the Nigeria Data Protection Commission (NDPC).
To exercise any of these rights, email support@sessionspro.app from the address on your account.
11. Cookies
We use cookies and local storage only for essential functions: keeping you signed in, remembering the session you were viewing, and preserving your preferences. We do not use advertising cookies.
12. Changes to this policy
We may update this policy as the Service evolves. When we make material changes we will update the “Effective” date above and, where appropriate, notify you inside the app.
13. Contact
JIKAM NIG LTD — support@sessionspro.app.