← Home

Legal

Privacy Policy

Version 1.1 — effective August 16, 2026.

This policy explains what BragRights collects, why, and what it never touches. “We,” “us,” and “BragRights” refer to the BragRights project — see the Terms of Service for who that is.

1. Information we collect

Profile information you provide: a display name, a unique handle, an optional avatar, your time zone, your date of birth, which we use only to check you meet the minimum age and never show to other members, and a record of which version of these terms you accepted and when.

Sign-in information from your identity provider: when you sign in with Google, Apple, Microsoft, or Facebook, we receive a unique identifier that ties your account to that login. We do not store your email address in our database. Depending on the provider, we may receive your name or profile photo once, to suggest a display name or avatar — you can change either afterward.

Game activity: your Bones balance and ledger history, wagers, pick’em picks, crew memberships, and the timestamps of that activity. This is the core of how the game works, and is shared with your crew exactly the way the game itself describes (see “How information is shared,” below).

Operational logs: server-side request and error telemetry, used only to run and troubleshoot the service — not to track you across the web or build an advertising profile.

Feedback you send us: if you use the Feedback tab to report a bug or suggest something, we store what you wrote, along with your handle, your account identifier, which build of the app you were on, which screen you were on, and your browser’s user-agent string. Those last three are there to make a bug reproducible; nothing is collected unless you type a report and send it. Where that text goes next is section 6.

2. Information we don’t collect

3. How we use information

To run the game: track balances, grade wagers and picks, compute standings, and keep your account secure. To keep the service reliable: diagnose errors and monitor performance. To reach you with service-related notices, like a material change to these terms.

4. How information is shared within a crew

Another crew member can never see your wager or pick on a game that hasn’t started yet — that stays hidden until it locks, no exceptions. Once a game locks, your wagers, picks, and their effect on the standings become visible to your crew, the same way they always have been in this kind of game. A commissioner’s actions on your account — a balance adjustment, a ban — are visible in a crew-facing log, so nothing happens to you quietly.

5. Sports data providers

We pull publicly available sports data (schedules, scores, lines) from outside sources to power the game. This is outbound-only: no information about you is ever sent to ESPN or any other sports-data source.

6. When you send feedback

Reports sent from the Feedback tab are filed as issues in our private GitHub repository, so that a bug lands where the work happens instead of in an inbox. What GitHub receives is what section 1 lists: your report, your handle, your account identifier, and the build, screen, and browser you were on. Your email address is not sent, because we don’t have it.

The repository is private — only we can read it — and you don’t need a GitHub account to send us anything; BragRights files on your behalf. GitHub handles that data under its own privacy statement. This is the only place a member’s own words leave our systems, and it happens only when you write a report and send it.

7. Data retention and deletion

While your account is active, we keep your game history as part of the record shared with your crew. If you delete your account, your profile is anonymized immediately — display name cleared, avatar removed, sign-in links removed — and any remaining personal data is purged within 30 days. Already-settled ledger and standings history may be retained in anonymized form after that, because it’s also part of your crew’s shared game history, not just yours.

Feedback you sent is deleted along with the account. A GitHub issue already filed from one of those reports is not — it lives on GitHub, alongside the engineering work it caused, and deleting your account here does not reach it. If you want a filed issue removed as well, ask us at the address in section 12 and we will delete it.

8. Your rights

You can view, correct, or delete your account information at any time from within the app. To request a copy of your data, or to ask us to delete it directly, contact us at the address below. We honor access, correction, deletion, and portability requests for every user, regardless of where you live.

9. Children’s privacy

BragRights is intended for people 18 and older and is not directed at children under 13. If we learn we’ve collected information from a child under 13, we’ll delete it.

10. Security

We don’t store passwords at all — sign-in is delegated entirely to your identity provider. Session tokens are held in memory in your browser, not in persistent storage. All traffic to BragRights is encrypted in transit. No system is perfectly secure, but we design around removing entire categories of risk rather than patching them after the fact.

11. Changes to this policy

We may update this policy as the service changes. Updates are posted here with a new effective date.

12. Contact

Questions about this policy, or a request about your data: bragrightsclub@outlook.com.

← Terms of service Open BragRights →