隐私政策
最后更新: February 2026
Table of Contents
ScoreSportsX ("we", "us", or "our") is committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our website and services. This policy is designed to comply with the General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable data protection laws.
1 Information We Collect
Personal Data You Provide
- Name, email address, and username when you create an account.
- Profile information such as your avatar, bio, and preferences.
- Payment information when you subscribe to a paid plan (processed securely by our payment provider; we do not store your full card details).
- Communications you send to us, including support requests and feedback.
- Newsletter subscription email address.
Usage Data
- Pages visited, features used, and actions taken within the Service.
- Prediction preferences, favorite teams, and leagues followed.
- Search queries and interaction patterns.
- Date, time, and frequency of your visits.
Device & Technical Data
- IP address, browser type and version, and operating system.
- Device type, screen resolution, and language settings.
- Referring website URLs and exit pages.
- Time zone setting and geographic location (country/region level).
Cookies & Tracking Technologies
We use cookies and similar tracking technologies to collect and track information about your activity on our Service. For detailed information about the cookies we use, please refer to our Cookie Policy.
2 How We Use Your Information
Service Delivery
- To create and manage your account.
- To provide, maintain, and improve the Service.
- To process subscription payments and manage billing.
- To provide customer support and respond to your requests.
Predictions & Personalization
- To generate and deliver personalized football predictions.
- To customize content and recommendations based on your preferences.
- To improve the accuracy and quality of our prediction models.
Communication
- To send you service-related notices, updates, and security alerts.
- To send you newsletters and marketing communications (with your consent).
- To notify you of changes to our Terms, Privacy Policy, or other policies.
Analytics & Improvement
- To analyze usage trends and measure the effectiveness of our Service.
- To detect, prevent, and address technical issues and security threats.
- To comply with legal obligations and enforce our Terms of Service.
3 Legal Basis for Processing (GDPR Article 6)
Under the GDPR, we process your personal data based on the following legal grounds:
Contract Performance
Processing necessary to perform our contract with you, including providing the Service, managing your account, and processing payments (Article 6(1)(b)).
Consent
Processing based on your explicit consent, such as sending marketing emails and newsletters. You can withdraw your consent at any time (Article 6(1)(a)).
Legitimate Interests
Processing necessary for our legitimate interests, such as improving our Service, preventing fraud, and ensuring network security, provided these interests are not overridden by your rights (Article 6(1)(f)).
Legal Obligation
Processing necessary to comply with our legal obligations, such as tax reporting and responding to lawful requests from public authorities (Article 6(1)(c)).
4 Data Sharing & Third Parties
We do not sell your personal data. We may share your information with the following categories of third parties:
支付处理
We use a secure payment provider to process payments. When you make a payment, your payment information is transmitted directly to our payment provider under their own privacy policy. We do not store your full credit card numbers.
Google Analytics (Analytics)
We use Google Analytics to understand how visitors use our site. Google Analytics collects anonymized data about page views, sessions, and user behavior. You can opt out using the Google Analytics Opt-out Browser Add-on.
API Data Providers
We use third-party football data APIs to power our predictions and statistics. These providers receive technical request data but not your personal information.
We may also share your information if required by law, to protect our rights, to prevent fraud, or in connection with a merger, acquisition, or sale of assets.
5 Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.
| Data Type | Retention Period |
|---|---|
| Account data | Duration of account + 30 days |
| Payment records | 7 years (legal requirement) |
| Usage analytics | 26 months |
| Support communications | 3 years |
| Cookie consent preferences | 1年 |
6 Your Rights
Under the GDPR and other applicable data protection laws, you have the following rights regarding your personal data:
Right of Access
You have the right to request a copy of the personal data we hold about you.
Right to Rectification
You have the right to request that we correct any inaccurate or incomplete personal data.
Right to Erasure
You have the right to request the deletion of your personal data, subject to certain legal exceptions.
Right to Data Portability
You have the right to receive your data in a structured, commonly used, and machine-readable format.
Right to Restrict Processing
You have the right to request that we restrict the processing of your personal data in certain circumstances.
Right to Object
You have the right to object to the processing of your personal data for direct marketing or legitimate interest purposes.
To exercise any of these rights, please contact us through our contact page or email our Data Protection Officer. We will respond to your request within 30 days.
8 International Data Transfers
Your information may be transferred to and maintained on servers located outside of your state, province, country, or other governmental jurisdiction where data protection laws may differ from those in your jurisdiction.
If you are located in the European Economic Area (EEA), we ensure that any transfer of your personal data outside the EEA is protected by appropriate safeguards, including:
- Standard Contractual Clauses (SCCs) approved by the European Commission.
- Transfers to countries with an adequacy decision from the European Commission.
- Binding Corporate Rules where applicable.
By using the Service, you consent to the transfer of your information as described in this section, subject to the safeguards outlined above.
9 Children's Privacy
18+ Only
Our Service is strictly intended for users who are at least 18 years of age. We do not knowingly collect personal data from anyone under the age of 18.
If we become aware that we have collected personal data from a child under the age of 18, we will take steps to delete that information as quickly as possible. If you are a parent or guardian and you believe your child has provided us with personal information, please contact us immediately.
10 Security Measures
We take the security of your personal data seriously and implement appropriate technical and organizational measures to protect your data against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit using TLS/SSL (HTTPS).
- Secure hashing of passwords using industry-standard algorithms.
- CSRF protection on all forms and state-changing requests.
- Rate limiting and login throttling to prevent brute-force attacks.
- Security headers (CSP, X-Frame-Options, X-Content-Type-Options).
- Regular security audits and vulnerability assessments.
- Access controls limiting data access to authorized personnel only.
While we strive to protect your personal data, no method of transmission over the internet or method of electronic storage is 100% secure. We cannot guarantee the absolute security of your data.
11 Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. When we make changes, we will update the "Last updated" date at the top of this page.
For significant changes, we will provide a more prominent notice, which may include email notification or a notice on our Service. We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information.
12 Data Protection Officer
If you have any questions about this Privacy Policy, your personal data, or wish to exercise your data protection rights, you can contact our Data Protection Officer:
Response Time: Within 30 days of receipt
You also have the right to lodge a complaint with a supervisory authority if you believe that the processing of your personal data violates applicable data protection laws.