Security Center

PRIVACY POLICY

Effective Date: June 6, 2026. Review how we protect your fan license credentials and data.

1. Data We Access and Collect

To participate in **TheFanSeason 2026**, users register and authenticate using Google OAuth (Gmail). Through this OAuth flow, we collect:

  • Your primary email address (to identify and secure your account).
  • Your display name and Google profile picture (to generate your custom digital Fan Card).
  • System metadata (signup timestamp, prediction records, and performance tier status).

2. How We Use Your Information

Your credentials and fan records are processed to:

  • Generate, update, and display your public and private FUT-style Fan Card.
  • Aggregate points, streaks, and prediction statistics for the public standings Leaderboard.
  • Deliver digital products purchased through our store (e.g., templates, sheets) and verify orders.
  • Validate match prediction locks to prevent manipulation or double-submitting.

3. Public Profiles and Standings

By registering in the arena, you acknowledge that your chosen **Username**, **Display Name**, **Home Country**, **Supported Team**, **badges earned**, and **prediction statistics** will be visible to other users. Your email address is kept private and is never shown publicly or shared.

4. Cookies and State Management

We use secure cookies and browser local storage to maintain active login sessions (via Supabase Auth) and cache your localized timezone selections (so match fixture countdowns are shown in your local time). If you clear cookies, you will be signed out of the arena.

5. Security Protocols

All database connections are encrypted over SSL. Payments processed via Razorpay run inside secure payment sandboxes and verify transaction signatures server-side. If you wish to delete your profile and erase your prediction records permanently, please contact our support team.

THEFANSEASON SECURITY FRAMEWORK • FOOTBALL WORLD CUP 2026 EDITION