CorSports
Legal

Privacy Policy

Last updated: 2026-05-05 — placeholder until law-firm copy is finalised.

[TODO: real legal copy]

This is placeholder content. Final privacy policy will be drafted with counsel before public launch. Do not rely on this page for legally binding commitments.

1. What we collect

Account data (name, email, organisation), tenant data (events, facilities, teams you create), usage telemetry (page views, feature usage). Payment information is handled exclusively by PayCloud — we never see card numbers.

2. How we use it

To run the platform you signed up for, to communicate with you about your account, and to improve the product based on aggregate usage patterns. We do not sell your data.

3. Tenant isolation

CorSports is multi-tenant by design. Every record belongs to a tenant; queries enforce that boundary. Cross-tenant data access is not possible through normal product use.

4. Sharing

We share data only with subprocessors required to deliver the platform (hosting, payments, transactional email, SMS). A full subprocessor list will be maintained on this page once available.

5. Retention

We retain account and tenant data for as long as your subscription is active, plus a reasonable archive period for audit and tax compliance after closure. Specific retention durations will be specified in the final policy.

6. Your rights

Under POPIA (South Africa) and GDPR (EU), you may request access, correction, or deletion of your personal data. Email privacy@corsports.com and we'll respond within the statutory window.

7. Cookies

We use essential cookies for authentication and session state. Analytics is privacy-respecting and does not require user consent under POPIA / GDPR for the basic use case.

8. Changes

Material changes to this policy will be communicated via email and an in-app notice at least 14 days before they take effect.

9. Contact

Email privacy@corsports.com with any privacy-related questions or requests.