Legal

Privacy Policy

This policy explains what information RallyRecap collects, how it is used, and how to contact us about privacy requests.

Effective date
February 24, 2026
Last updated
September 4, 2026
Version
v1.4

1. Scope and controller role

RallyRecap is operated as an independent personal project by an individual sole proprietor. This policy applies to coach accounts, visitors to our website, and people who open shared recap links.

2. Information collected

We collect account data (email and profile settings), player first names or nicknames, recap notes, billing records needed to run the service, and limited product analytics. Browser analytics start only after a person chooses to allow them. They use selected product events, sanitized page paths, and an environment label. RallyRecap does not collect browser analytics on public recap, password recovery, confirmation, or tokenized recap-preview routes.

We also collect limited error reports through Sentry to diagnose failures in the browser and on our servers. Reports include technical error categories, application code locations, a deployment version, and an environment label. Our configuration removes request bodies, cookies, headers, email addresses, query strings, public recap link tokens, and account identifiers before sending an error report. Unknown error messages are redacted.

3. How we use information

Information is used to provide app functionality, secure accounts, process billing, deliver recap communication, and improve product reliability. We rely on consent for browser analytics. For minimized account-linked server events about core service and product milestones, we rely on our legitimate interests in operating, securing, and improving RallyRecap. Coaches can object by disabling account-linked analytics.

Sentry error reports help us locate broken application code and identify which deployed version failed. This operational error monitoring is separate from PostHog product analytics.

4. Service providers and processors

RallyRecap relies on third-party processors to operate core service functions:

  • Supabase for authentication and database infrastructure.
  • Stripe for subscription billing and payment processing.
  • Vercel for application hosting and delivery.
  • Resend for transactional email delivery.
  • PostHog for privacy-limited product analytics, such as consented page views, setup progress, recap workflow milestones, and billing workflow milestones. Browser events include only approved events and sanitized properties. Automatic capture and session replay are disabled.
  • Sentry for limited browser and server error monitoring. Reports contain sanitized technical diagnostics. Session replay, application logs, profiling, and performance tracing are disabled.

5. Minors context and coach responsibilities

RallyRecap is intended for coaches, not children directly. Coaches are responsible for obtaining any required permissions and consents. Parent login accounts are not provided at launch.

6. Sharing and disclosure

We do not sell personal information. Data is disclosed only to processors, for legal compliance, or to protect service integrity and security.

7. Retention and deletion

We retain information while accounts remain active and as needed for operational, contractual, or legal obligations. Account deletion removes app access, workspace data, and matching PostHog person data when analytics is configured. Limited billing and trial history may be retained where needed to prevent duplicate trials, resolve payments, or satisfy legal obligations. The PostHog project reports a 12-month event-retention value, but does not currently report that retention enforcement is active. We therefore do not promise that analytics events are automatically deleted after 12 months. You can request deletion by contacting support.

Error-report retention depends on the Sentry project configuration. We do not promise a fixed deletion period here. Our error reports do not include account identifiers, and deleting an account does not automatically delete Sentry reports. Contact support with questions about retained error reports.

8. Analytics choices

RallyRecap stores a versioned analytics choice in this browser's local storage. Until you choose Allow analytics, browser PostHog capture stays off and pre-choice activity is not queued or replayed. Choosing No thanks keeps browser analytics off. You can change or withdraw this browser choice below at any time, and withdrawal takes effect across open tabs for this site. The service works either way.

PostHog analytics are configured without autocapture, web-vitals capture, dead-click capture, pageleave capture, performance capture, exception capture, heatmaps, session replay, console recording, or text and attribute capture. Signed-in coaches can separately disable account-linked browser and server PostHog analytics in Settings under Security & Privacy, or by contacting support. An account opt-out takes precedence over a saved browser choice for signed-in activity.

Loading this browser's analytics choice.

This choice applies to browser analytics on this browser only. For signed-in activity, an account opt-out takes precedence. A saved browser choice does not confirm that collection is active. You can change or withdraw this choice at any time.

These analytics choices control PostHog, not Sentry error monitoring. Limited error reporting can operate on public recap and other pages even when browser analytics are declined. Error monitoring does not record sessions or send the contents of recap links or forms.

9. Security practices

RallyRecap applies reasonable technical and operational controls, including authenticated access controls and managed infrastructure protections, to reduce unauthorized access risk.

10. Your rights and requests

To request access, correction, analytics opt-out, or deletion of your data, email support@rallyrecap.app.

11. International data transfer

Service providers, including PostHog and Sentry, may process data in the United States or other regions outside your local jurisdiction. Where applicable, RallyRecap relies on the transfer safeguards made available through its service-provider agreements. International privacy requirements can vary by location.

12. Policy updates

Policy updates will be posted on this page and versioned. Material updates may also be highlighted in-product.

Related policies: Terms of Service and Refund/Cancellation Policy.

Recent updates

  • v1.4 (September 4, 2026): Disclosed Sentry error monitoring, sanitized diagnostics, its separation from analytics choices, and error-report retention and deletion limitations.
  • v1.3 (September 3, 2026): Clarified browser analytics consent, preference storage and withdrawal, minimized server analytics, PostHog processing and transfers, deletion, and the analytics retention limitation.
  • v1.2 (June 9, 2026): Updated Refund/Cancellation Policy and Terms for the first-30-paid-days no-questions refund window, followed by case-by-case refund review.

Questions about these policies? Email support@rallyrecap.app.

Terms|Privacy|Refunds