Sport Horizon Insights – Privacy Policy 

Privacy Policy
Effective Date:Ā June 19, 2025
Last Updated: June 19, 2025

1. Who We Are
Sport Horizon Insights ("we", "us", "our") provides software and services to help sports professionals manage, analyse, and visualise performance data.

Our platform securely collects and processes sports performance data provided by clients through third-party APIs (e.g., GPS tracking systems, wearables) and related sources.

2. What Data We Collect
We process sports performance data and related information that clients upload or authorise via API access:

  • Third-party sports performance data (GPS, heart rate, physical testing data, athlete monitoring data, etc.)

  • Team and player metadata as provided by clients (team names, player names/IDs, session names, etc.)

  • Contact details for client administrators (name, email, phone number)

  • Usage data (logins, feature usage, activity logs — for service improvement)

We do not collect or process sensitive personal data (e.g., health records, medical records) unless explicitly provided by the client.

3. How We Use Your Data
We use your data solely to:

  • Provide our services (APIs, dashboards, analytics)

  • Operate and maintain our platform

  • Communicate with you regarding the service (updates, support, billing)

  • Improve our services (we may process anonymised, non-identifiable data to enhance the platform)

4. Who Owns the Data?

  • The software and platform IP are owned by Sport Horizon Insights.

  • The data and any IP created by clients (dashboards, reports, analysis outputs) remain the property of the client.

  • We will never sell or share your data with third parties unless required by law.

5. Data Storage & Security

  • All data is stored securely on Microsoft SQL Server, hosted in Hetzner German datacentres.

  • Data is encrypted at rest and in transit.

  • Access is restricted via token-based authentication and role-based permissions.

  • Infrastructure certified to ISO 27001 and compliant with GDPR and BDSG.

6. Data Location

  • All data is physically stored in Germany (Hetzner’s German datacentres), ensuring compliance with EU data sovereignty laws.

7. Data Retention

  • Data is retained for as long as you use our service.

  • Upon termination of your account, data will be deleted or anonymised within 30 days, unless required by law to retain it longer.

8. Client Rights
As a data controller (under GDPR), you have the right to:

  • Access your data

  • Request correction or deletion of your data

  • Request portability of your data

  • Withdraw consent (if applicable)

Requests can be made by contacting: [Insert Contact Email]

9. Subprocessors
We use trusted third-party services for hosting and support, including:

  • Hetzner Online GmbH (hosting)

  • Microsoft Azure (backup & security services)

All subprocessors comply with relevant data protection laws.

10. Changes to This Policy
We may update this Privacy Policy from time to time. Updates will be posted on our website with the updated date.

11. Contact
If you have questions about this Privacy Policy or how we handle your data, please contact:
[email protected]