Sessions Pro

Privacy Policy

Effective 15 July 2026

This page is maintained by JIKAM NIG LTD to explain what Sessions Pro collects, how it's used, and the controls you have. It is not an independent certification. If anything here is unclear, email support@sessionspro.app.

1. Who is the data controller

JIKAM NIG LTD is the data controller for personal information processed through Sessions Pro. Contact: support@sessionspro.app.

2. What we collect

  • Account information — email address, and, if you sign in with Google, your name and profile photo returned by Google.
  • Profile you set — display name, handle, preferred position, and any photo you upload.
  • Session activity — the sessions and game days you're part of, squads you're drafted into, live events (goals, assists, own goals), MVP picks, and end-of-game peer ratings.
  • Content you post — chat messages inside a session, notes, and images you attach to a game day.
  • Device and log data — IP address, browser type, pages viewed, and error reports needed to run and secure the Service.
  • Cookies and local storage — used to keep you signed in and remember lightweight preferences. We do not run cross-site advertising trackers.

We do not knowingly collect information from children under 13.

3. How we use it

  • Run the core Service: authentication, squads, live scoreboard, ratings, recaps, and stats.
  • Show your player card and history to teammates in sessions you have joined.
  • Generate AI recap summaries and one-line insights from your session data.
  • Send transactional emails (sign-in links, password resets, invites you triggered).
  • Keep the Service secure — detect abuse, rate-limit, and debug crashes.
  • Comply with legal obligations.

We do not sell your personal information, and we do not use it to train third-party AI models. Prompts sent to AI providers contain the minimum data needed to produce a recap or insight.

4. Legal bases (for users in the UK / EU / EEA)

  • Contract — to provide the Service you signed up for.
  • Legitimate interests — to secure the Service, prevent abuse, and improve features.
  • Consent — where required, for example optional marketing emails.
  • Legal obligation — to comply with applicable law.

5. Ratings are anonymous

Peer ratings you give about other players are shown to the rated player as aggregate scores from “a teammate”. We never show a rated player who rated them. Ratings are treated as opinions and not as statements of fact.

6. Who can see your data

  • Your teammates — inside a session you have joined: your name, handle, photo, stats, and card.
  • Public pages — if you enable a public profile or your organiser publishes a public recap, that specific page is discoverable.
  • Session organisers — admins of a session can manage squads, events, and stats within their own session.
  • Nobody else — data from other sessions you're not a member of is not visible to you or to search engines.

7. Service providers we use

  • Supabase — database, authentication, and file storage.
  • Cloudflare — hosting, CDN, and DDoS protection for the web app.
  • Google — “Sign in with Google” (only if you choose it).
  • AI model providers — routing prompts to AI models (currently Google Gemini) to generate recaps and insights.
  • Sentry — error monitoring. It receives technical crash diagnostics only (error type, stack trace and the route name). No personal data, no session content, no names, handles, emails or chat messages are sent to it.
  • PostHog — anonymous product usage events (five signup/funnel events such as “a session was created”). It receives no personal data: no names, session names, venues, handles, emails or payment details, and we do not use screen recording or heatmaps.
  • Transactional email provider — to deliver sign-in links and password resets.

These providers process data on our behalf under written agreements. Data may be processed outside your country, including in the United States and the European Union. Where required, we rely on appropriate transfer safeguards such as the EU Standard Contractual Clauses.

7A. AI-generated match summaries

Some screens show a short written summary of a game day, a personal recap, a head-to-head line, or a team-of-the-week citation. Those sentences are produced by a third-party AI service (currently Google Gemini, reached through our AI gateway).

  • What is sent — player display names, goals, assists, scorelines per set, MVP result, and game day metadata (session name, date). Nothing else: no email address, no chat messages, no photos, no location.
  • What it is used for — phrasing those facts as one short paragraph. The summary never decides anything: stats, ratings and MVP results are calculated by our own code, not by the AI.
  • Not advertising or profiling — this data is not used for advertising, ad targeting, or automated decisions about you.
  • Cached, not regenerated — each summary is generated once and stored, so the same facts are not sent again on every view.
  • Turn it off — a session organizer can disable AI summaries for a whole session in Session settings. When disabled, nothing is sent and a plain factual line is shown instead.

Every AI-written line in the app is labelled “Generated summary”.

8. How long we keep it

  • Account and profile — while your account is active.
  • Session activity, ratings, stats — while the session exists, so the group's history stays intact.
  • Logs and error reports — up to 90 days, then rotated out.
  • Backups — encrypted database backups may retain data for a limited period after deletion before they age out.

9. Security

Data is stored on managed cloud infrastructure with encryption in transit (HTTPS/TLS) and encryption at rest for databases and file storage. Access inside our tables is scoped by Postgres row-level security so people can only see rows that belong to sessions they are members of. No system is perfectly secure — if you believe you've found a vulnerability, please email support@sessionspro.app.

10. Your rights

Depending on where you live, you may have the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate information (most fields are directly editable from your profile).
  • Delete your account and personal data — you can do this yourself, immediately, from Profile → Account → Delete account, or from sessionspro.app/delete-account. No email required.
  • Object to or restrict certain processing.
  • Export a copy of your data in a portable format.
  • Withdraw consent where processing is based on consent.
  • Lodge a complaint with your local data-protection authority — for Nigeria this is the Nigeria Data Protection Commission (NDPC).

To exercise any of these rights, email support@sessionspro.app from the address on your account.

11. Cookies

We use cookies and local storage only for essential functions: keeping you signed in, remembering the session you were viewing, and preserving your preferences. We do not use advertising cookies.

12. Changes to this policy

We may update this policy as the Service evolves. When we make material changes we will update the “Effective” date above and, where appropriate, notify you inside the app.

13. Contact

JIKAM NIG LTD — support@sessionspro.app.

Sessions
Pro.