PARLAY SENSE · HELP & POLICIES
Privacy policy
How Parlay Sense handles information in our app, private preview and website.
We use account information to provide the app, keep your saved research private to your account, and process ticket images only when you choose Read ticket. We do not sell personal information or use it for targeted advertising.
Who we are
PARLAY SENSE LLC operates Parlay Sense, a sports research and tracking app, and parlaysense.io. This policy covers both the app and our website. Our privacy and support contact is [email protected].
Information we handle
- Account and sign-in information: your email address, account identifier, authentication credentials and session information. Supabase processes authentication, including password protection and account recovery. Do not send your password or verification codes to support.
- Saved content: research selections, player and team references, lines and odds you save, notes or names you enter, draft and saved parlays, tracked tickets, reviewed ticket imports and related sports context.
- Support messages: your email address, message and any attachments you choose to send us.
- Technical and security information: our hosting and email providers may process IP addresses, browser or device information, request times and delivery or security logs. We also keep account-linked request counters to prevent abuse.
- Optional usage insights: in builds that offer this setting, sharing starts off. After you choose to share, events record broad pages, buttons and feature categories used, sports and stat categories, approximate foreground time, tutorial steps, completed saves or additions, ticket-scanning stages, loading times and empty or failed loading outcomes. Events include a session identifier, app version and platform and are linked to your account in our private Supabase database. Restricted owner reports contain grouped usage, common page paths and return-visit counts. These events do not contain player names, exact selections, lines, odds, stakes, search text, ticket images, screenshots or free-form text. We do not collect optional usage from signed-out guests. New, broader collection requires a new choice; earlier consent is not silently upgraded. Declining does not affect app access or features. Turning this setting off stops collection and deletes prior usage events.
- Diagnostics: enabled reliability reporting records a fixed failure category, broad screen and platform, rather than raw errors or screenshots. Separately enrolled private testers can share account-linked screen names, build/platform, request timings and app stalls. They can pause sharing in Account & privacy. Local speed measurements remain on the device unless included in that separate sharing process.
Shared sports data comes from sports-data sources and our processing, rather than from a user's account. It includes player and team statistics, games, rankings and available sportsbook quotes.
Ticket images and AI processing
Choosing or photographing a ticket creates a local preview. When you tap Read ticket, the selected image is sent through our server to OpenAI to extract ticket selections. The image can include any personal or financial information visible in it, so crop out names, balances, account details and barcodes before sending. Scanning is optional; you can enter supported selections manually.
Our service resizes the image and removes image metadata before AI processing. We do not save the raw image in our server database or image storage. Your device's photo picker may keep a temporary local copy. We temporarily store the extracted result, an image fingerprint and scan status to prevent duplicate processing and enforce limits. Only selections you confirm are saved to your research, Builder or Tracker.
Our OpenAI request disables saved response state. This does not mean zero retention: OpenAI may keep API content for abuse monitoring for up to 30 days, with exceptions described in its API data controls. API data is not used for model training by default unless the customer opts in. AI extraction can make mistakes; review every selection before saving.
Why we use information
We use information to provide and synchronize requested features; authenticate and recover accounts; read tickets at your request; secure the service and prevent abuse; diagnose failures; improve features using optional usage insights; answer support and privacy requests; and meet applicable legal obligations. We do not use saved picks or ticket images for targeted advertising.
Service providers and disclosures
- Supabase: account authentication, database hosting and server functions.
- OpenAI: ticket-image processing when you choose Read ticket.
- Mailgun: delivery of account verification and recovery emails. Delivery systems process recipient addresses, message content and delivery/security information.
- Google Workspace: our support inbox and correspondence you send us.
- Cloudflare: website hosting, content delivery and security.
- Sports-data and image sources: BALLDONTLIE and PropLine supply sports information through our servers. We do not send them your email, saved ticket or ticket image for these requests. Remote image hosts, including ESPN-hosted image domains, can receive ordinary connection information when your device requests an image.
We may disclose information when necessary to comply with law, respond to lawful requests, protect people and the service, investigate abuse, or transfer the business subject to applicable privacy protections. We do not integrate advertising networks or cross-app advertising tracking. The current private preview has no payment processing or paid subscription enrollment.
Your device, permissions and website
The app may store your session, preferences, tutorial progress, demo selections, account-specific recovery information and downloaded sports caches locally. The age screen checks the date you enter on your device, discards that date and stores a local 21+ confirmation time. It is not independent identity verification.
Camera or photo access is requested for ticket selection when needed. You can decline it and use manual entry. The app does not request contacts, microphone access or precise device location for these features. A copy or share action uses the destination you choose; its privacy practices then apply.
The public website has no advertising trackers. Its sample price calculator runs locally; the amount entered is not sent to us. Cloudflare may process technical request information to deliver and protect the site. The private App Insights portal uses Supabase sign-in and browser session storage for authorized owner access. Its sign-in session is cleared when the tab session ends or the owner signs out, and the portal signs out after 20 minutes of inactivity. The portal does not collect visitor analytics or grant owner access through signup. External links are governed by their own policies.
Optional website analytics
Website analytics is separate from app usage sharing and starts off. If you choose Allow analytics, our first-party script sends broad page categories, page visits, link-click categories, broad referral sources, screen-size category and random browser/session identifiers to our private Supabase database. We do not send full URLs, search queries, referral paths, email addresses or the price-calculator amount in these events. These records are not linked to your app account. Supabase and Cloudflare still receive ordinary connection information to deliver their services.
A random browser identifier is kept in local storage for up to 90 days, with a shorter visit identifier in session storage. These distinguish consenting browsers and visits; they do not reliably identify individual people across devices. Reports are restricted to authorized owners. We honor a browser Global Privacy Control signal by keeping this optional collection off.
Use Privacy choices in the website footer to decline or turn analytics off and request deletion of the current browser’s recorded events. Turning it off stops new collection immediately. If deletion cannot connect, the site keeps a deletion token to retry and tells you; recorded events otherwise expire within the retention window. A restricted hashed revocation marker may remain for up to 90 days to reject delayed events. Clearing browser storage also removes the local identifier and preference; use Privacy choices to delete events before clearing it if you want us to locate those browser records. Your app account’s deletion does not locate separate website records.
How long information is kept
- Account and saved content: while your account exists, until you remove applicable content or delete the account. Import receipts remain with the account to protect against duplicate imports.
- Temporary scan records: expire after 24 hours; hourly cleanup normally removes them within about 25 hours. Confirmed selections follow the saved-content rule above.
- Optional app and website usage events: a 90-day retention window. App opt-out deletes account-linked usage; website Privacy choices requests deletion of that browser’s usage. Website choice/revocation markers expire after 90 days from their creation.
- Reliability events: a 30-day retention window. Private performance measurements use a separate seven-day window.
- Account request counters: a two-day retention window.
Scheduled cleanup normally runs daily for diagnostics, analytics and request counters, so deletion can occur at the next run after the window ends. Service interruptions can delay cleanup. Account deletion removes these linked records from the active database rather than waiting for their normal expiry.
Our current database service uses daily backups on a rolling seven-day plan. Deleted records can remain in existing backups until they expire; backups are restricted to recovery use and are not available through the app. Provider infrastructure/security logs and OpenAI processing follow the relevant provider's retention rules. Support correspondence is kept as needed to handle and document your request; you may ask us to remove it. We may retain limited information when necessary for a legal obligation, dispute or security investigation and explain any applicable exception when responding to a request.
Your choices and privacy requests
In Account & privacy, you can use Download my data to prepare the supported account-data export and Delete account to permanently remove your account and linked active data. Deletion requires a recent sign-in to protect your account. The account-deletion page explains what is deleted and how to request deletion without the app.
You can manage saved selections, decline scanning permissions, turn off optional usage insights where offered, and pause enrolled performance sharing. Pausing performance sharing stops new measurements; existing ones follow their retention period. Device-only demo preferences, your original photos and copies you exported are separate from account deletion and can be removed on your device.
Depending on applicable law, you may have rights to access, correct, delete, obtain a copy of, restrict or object to processing of your information, or appeal a request decision. Email [email protected]. We may verify account ownership and request only information needed to process the request. We respond within the time required by applicable law and explain any lawful limitation. We do not penalize you for exercising applicable privacy rights.
Security and processing locations
We use encrypted network connections, account access controls, private database access rules and request limits to protect information. No service can guarantee absolute security. PARLAY SENSE LLC is based in the United States. The current app database is hosted in Canada (Central); our service providers may process information in the United States and other countries where they operate. Privacy protections and laws can differ between countries.
Adults only
Parlay Sense is intended for adults age 21 or older. We do not knowingly offer accounts to children. If you believe a person under 21 has provided personal information, contact us so we can investigate and remove it where appropriate.
Changes
We update this policy when our practices change and revise the effective date. We provide additional notice or request permission when required. New billing, advertising or data-processing features require updated disclosures before they are enabled.
Contact
PARLAY SENSE LLC
Privacy and support: [email protected]
Support · Request account deletion