Privacy Policy
Last updated: [DATE — PLACEHOLDER]
1. Overview
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] Equip My Team ("we", "us", or "our") operates the website and platform located at [DOMAIN] (the "Platform"). This Privacy Policy describes how we collect, use, store, and share information about you when you use the Platform, and explains the rights and choices you have with respect to your personal information.
[PLACEHOLDER] By using the Platform, you agree to the collection and use of information as described in this policy. If you do not agree, please discontinue use of the Platform.
[PLACEHOLDER] This policy applies to all visitors, donors, registered team administrators, and any other individuals who interact with the Platform ("you" or "users").
2. Data We Collect
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] We collect information in the following categories:
2a. Information You Provide Directly
- [PLACEHOLDER] Account registration data — name, email address, password (stored as a hashed value), and any other fields completed during sign-up.
- [PLACEHOLDER] Team profile data — team name, sport, shipping address, team photo, and any other information entered into the team profile.
- [PLACEHOLDER] Wishlist content — item names, descriptions, links, prices, and photos added to a team's equipment wishlist.
- [PLACEHOLDER] Donor information — name, email address, and any other information provided when making a donation. Payment card details are collected and processed directly by our third-party payment processor and are not stored on our servers.
- [PLACEHOLDER] Communications — messages sent to our support team or submitted through any contact form.
2b. Information Collected Automatically
- [PLACEHOLDER] Log data — IP address, browser type and version, operating system, referring URLs, pages viewed, and timestamps of requests.
- [PLACEHOLDER] Cookies and similar technologies — session cookies used to keep you logged in, and preference cookies used to remember settings. We do not currently use third-party advertising cookies. [VERIFY AND UPDATE BASED ON ACTUAL IMPLEMENTATION.]
- [PLACEHOLDER] Device information — device type, screen resolution, and similar technical identifiers.
- [PLACEHOLDER] Usage data — pages visited, features used, buttons clicked, and time spent on the Platform.
2c. Information from Third Parties
- [PLACEHOLDER] Payment processor — we receive transaction confirmation data (amount, date, last four digits of card, transaction ID) from our payment processor after a successful donation. We do not receive or store full card numbers, CVV codes, or bank account numbers.
- [PLACEHOLDER] Analytics providers — [LIST ANY ANALYTICS SERVICES USED, e.g., Google Analytics, Vercel Analytics, or state "none" if not applicable.]
3. How We Use Your Data
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] We use the information we collect for the following purposes:
- [PLACEHOLDER] To provide the Service — creating and managing team accounts, displaying team pages and wishlists, processing donations, and communicating with users about their accounts and transactions.
- [PLACEHOLDER] To communicate with you — sending transactional emails (e.g., donation confirmations, account verification), responding to support inquiries, and sending service-related announcements. We do not send marketing emails without your explicit consent. [VERIFY AGAINST ACTUAL EMAIL PRACTICES.]
- [PLACEHOLDER] To improve the Platform — analyzing usage patterns to identify bugs, improve performance, and develop new features.
- [PLACEHOLDER] To ensure security and prevent fraud— monitoring for suspicious activity, verifying identities where required, and enforcing our Terms of Service.
- [PLACEHOLDER] To comply with legal obligations — retaining records as required by applicable law, responding to lawful requests from government authorities, and resolving disputes.
- [PLACEHOLDER] With your consent — for any purpose not listed above that we disclose to you at the time of collection and for which you provide affirmative consent.
[PLACEHOLDER] We do not sell your personal information to third parties for monetary consideration. [VERIFY THIS STATEMENT IS ACCURATE BEFORE PUBLISHING — IF ANY DATA IS SOLD OR SHARED FOR CROSS-CONTEXT BEHAVIORAL ADVERTISING, THIS MUST BE UPDATED.]
5. Data Retention
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] We retain personal information for as long as necessary to provide the Service and fulfill the purposes described in this policy, unless a longer retention period is required or permitted by law.
- [PLACEHOLDER] Account data — retained for the life of your account and for [X] years after account deletion to comply with financial recordkeeping obligations.
- [PLACEHOLDER] Donation records — retained for a minimum of [X] years to comply with applicable financial and tax recordkeeping laws.
- [PLACEHOLDER] Log data — retained for up to [X] days, after which it is automatically deleted or anonymized.
- [PLACEHOLDER] Support communications — retained for [X] years from the date of resolution.
[PLACEHOLDER] After the applicable retention period, personal information is securely deleted or anonymized so that it can no longer be associated with a specific individual.
6. CCPA — California Residents
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] If you are a resident of California, the California Consumer Privacy Act of 2018, as amended by the California Privacy Rights Act of 2020 (collectively, "CCPA"), grants you specific rights regarding your personal information. This section describes those rights and how to exercise them.
Categories of Personal Information Collected
[PLACEHOLDER] In the preceding 12 months, we have collected the following categories of personal information as defined by the CCPA:
| Category | Examples Collected | Collected? |
|---|---|---|
| Identifiers | Name, email address, IP address | Yes |
| Personal information (Cal. Civ. Code § 1798.80) | Name, address (shipping) | Yes |
| Commercial information | Donation transaction records | Yes |
| Internet / network activity | Log data, pages visited | Yes |
| Geolocation data | Approximate location via IP | [VERIFY] |
| Sensitive personal information | Financial account / payment data | [VERIFY — processed by payment processor only] |
| Inferences | User preferences, behavior | No [VERIFY] |
Your CCPA Rights
[PLACEHOLDER] Subject to certain exceptions, California residents have the following rights:
- [PLACEHOLDER] Right to Know — you may request that we disclose the categories and specific pieces of personal information we have collected about you, the categories of sources, the business purpose for collection, and the categories of third parties with whom it was shared.
- [PLACEHOLDER] Right to Delete — you may request that we delete personal information we have collected from you, subject to certain exceptions (see Section 7).
- [PLACEHOLDER] Right to Correct — you may request that we correct inaccurate personal information we maintain about you.
- [PLACEHOLDER] Right to Opt Out of Sale or Sharing— we do not sell or share personal information for cross-context behavioral advertising as those terms are defined under the CCPA. [VERIFY BEFORE PUBLISHING — IF THIS CHANGES, A "DO NOT SELL OR SHARE MY PERSONAL INFORMATION" LINK IS REQUIRED.]
- [PLACEHOLDER] Right to Limit Use of Sensitive Personal Information — to the extent we collect sensitive personal information as defined by the CPRA, you may request that we limit its use to purposes permitted by law. [VERIFY APPLICABILITY.]
- [PLACEHOLDER] Right to Non-Discrimination — we will not discriminate against you for exercising any of your CCPA rights.
[PLACEHOLDER] To exercise your rights, see Section 7. We will respond to verifiable requests within 45 days as required by law, with the option to extend by an additional 45 days where reasonably necessary.
[PLACEHOLDER] You may designate an authorized agent to submit requests on your behalf. We may require written proof of authorization and may verify your identity directly before processing a request submitted by an agent.
7. Requesting Data Deletion
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] You have the right to request deletion of personal information we hold about you. To submit a deletion request, use any of the following methods:
- [PLACEHOLDER] Email — send a request to [PRIVACY EMAIL ADDRESS] with the subject line "Data Deletion Request". Include the name and email address associated with your account.
- [PLACEHOLDER] Online form — [IF A DEDICATED DELETION REQUEST FORM EXISTS, LINK IT HERE. OTHERWISE REMOVE THIS BULLET.]
Verification
[PLACEHOLDER] To protect your privacy and security, we will verify your identity before processing a deletion request. Verification may include confirming access to the email address associated with your account or answering security questions. We will not fulfill requests from individuals we cannot reasonably verify.
Processing Time
[PLACEHOLDER] We will acknowledge receipt of your request within [10] business days and complete the deletion within [45] days of verifying your identity. If we need additional time (up to [45] additional days), we will notify you of the extension and the reason.
Exceptions — When We May Retain Data
[PLACEHOLDER] We may decline to delete, or may retain certain data notwithstanding a deletion request, in the following circumstances:
- [PLACEHOLDER] To complete a pending transaction or donation for which the data was provided.
- [PLACEHOLDER] To detect, investigate, or prevent security incidents or fraudulent activity.
- [PLACEHOLDER] To comply with a legal obligation (e.g., tax and financial recordkeeping laws requiring retention of transaction records).
- [PLACEHOLDER] To exercise or defend legal claims.
- [PLACEHOLDER] For internal uses reasonably aligned with your expectations based on your relationship with us (e.g., aggregated, de-identified analytics).
[PLACEHOLDER] Where we retain data under an exception, we will inform you of the exception and limit use of the retained data to the purpose that justified the exception.
[PLACEHOLDER] Deletion of a team administrator account will also remove the associated team page and wishlist from the Platform, subject to retention obligations above. Donation records associated with a deleted account may be anonymized rather than deleted to preserve financial records.
8. Security
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] We implement commercially reasonable administrative, technical, and physical safeguards designed to protect your personal information from unauthorized access, disclosure, alteration, and destruction. These measures include [LIST ACTUAL MEASURES, e.g., TLS encryption in transit, hashed password storage, access controls, etc.].
[PLACEHOLDER] No method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security. In the event of a data breach that triggers notification obligations under applicable law, we will notify affected individuals and relevant authorities as required.
[PLACEHOLDER] You are responsible for maintaining the confidentiality of your account credentials. Please notify us immediately at [SECURITY EMAIL] if you suspect unauthorized access to your account.
9. Children's Privacy
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] The Platform is not directed to children under the age of 13, and we do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe that a child under 13 has provided us with personal information without your consent, please contact us at [PRIVACY EMAIL ADDRESS] and we will take steps to delete that information.
[PLACEHOLDER] Note that while teams may include youth athletes, the Platform is designed to be used by adult coaches and team administrators on behalf of their teams. If your use of the Platform may involve collecting or processing information about minors (for example, team rosters or photos), you are responsible for complying with all applicable laws, including COPPA, and for obtaining any required parental consents. [THIS AREA REQUIRES CAREFUL ATTORNEY REVIEW GIVEN THE YOUTH SPORTS CONTEXT.]
10. Changes to This Policy
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] We may update this Privacy Policy from time to time. When we do, we will revise the "Last Updated" date at the top of the page. For material changes, we will provide more prominent notice, such as an email notification to registered users or a banner on the Platform.
[PLACEHOLDER] Your continued use of the Platform after any changes to this Privacy Policy constitutes your acceptance of the revised policy. If you do not agree to the revised policy, you must discontinue use of the Platform and may request deletion of your data as described in Section 7.
11. Contact Us
⚠ PLACEHOLDER — This section has not been reviewed by a licensed attorney. Do not rely on this text for legal compliance. Replace before publishing.
[PLACEHOLDER] If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
[COMPANY LEGAL NAME] — PLACEHOLDER
[STREET ADDRESS] — PLACEHOLDER
[CITY, STATE, ZIP] — PLACEHOLDER
Email: [PRIVACY EMAIL] — PLACEHOLDER
[PLACEHOLDER] For California residents submitting requests under the CCPA, you may also contact us via the methods above. We will respond to verifiable consumer requests within the timeframes required by applicable law.
Attorney Review Required
All text on this page is a placeholder draft only. It has not been reviewed or approved by a licensed attorney. This page must not be published, shared with users, or relied upon for legal compliance until it has been reviewed and approved by qualified legal counsel. Given the youth sports context of this platform, particular attention should be paid to COPPA compliance and any state-level children's privacy laws in addition to CCPA.