Privacy Policy
Last updated: May 2026. This policy explains how HuddleSpy collects, uses, and protects your information.
Information We Collect
We collect information you provide directly to us when you create an account, subscribe to a plan, or contact us. This may include:
- —Email address (for account creation and authentication)
- —Subscription status and billing records
- —Payment information (processed securely via Stripe — we do not store card details)
- —Favorite teams, athletes, and account preferences
- —Usage data and feature interactions
Automatically Collected Information
When you use the Platform, we may automatically collect certain technical information, including:
- —Log data (IP address, browser type, pages visited, time and date)
- —Device information (operating system, screen resolution)
- —Session activity data — mouse movement, keyboard activity, and click events are monitored locally in your browser solely to manage session expiration after 24 hours of inactivity. This data is stored in browser localStorage and is never transmitted to our servers.
- —Performance and error data
How We Use Your Information
We use the information we collect to:
- —Account management and authentication
- —Service delivery (publishing predictions, managing favorites and preferences)
- —Process subscriptions and payments
- —Product improvement and analytics
- —Send transactional emails (account confirmations, billing notices)
- —Respond to support inquiries
- —Comply with legal obligations
We do not sell your personal information to third parties, and we do not share your personal data with advertisers or data brokers.
Data Processors & Third Parties
We rely on trusted third-party service providers to operate the Platform:
- —Supabase — authentication and database infrastructure
- —Stripe — payment processing and subscription billing
- —Sentry — error monitoring and application observability (receives technical error data including partial request information; email addresses are scrubbed before transmission)
- —Inngest — event scheduling and workflow automation (receives user IDs and email addresses as part of billing and email event payloads)
- —Resend — transactional and marketing email delivery (receives user email addresses and email content)
- —Anthropic — AI prediction generation (receives structured sports data prompts; no user PII is included in prompts)
- —Vercel — frontend hosting and edge delivery
- —Railway — backend API hosting
These providers are contractually bound to handle your data securely and only for the purposes specified.
AI-Generated Predictions
HuddleSpy predictions are AI-generated for entertainment and informational purposes only. HuddleSpy is not a gambling or sports betting service, predictions should not be used as the basis for financial or betting decisions, prediction accuracy is not guaranteed, and historical performance does not guarantee future results.
Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include encrypted data transmission (TLS), secure authentication, and access controls.
No method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
Data Retention
We retain your personal data for as long as your account is active or as needed to provide services. The following specific retention periods apply:
- —Account data (email, preferences, favorites) — deleted within 30 days of account closure
- —Billing records — retained for 7 years as required by financial recordkeeping obligations
- —Email delivery logs — retained for 90 days
- —Error and observability logs (Sentry) — retained per Sentry's default retention policy (90 days)
- —Authentication records (Supabase) — deleted within 30 days of account closure
If you close your account, we will delete or anonymize your personal data within 30 days, except where retention is required by applicable law.
Your Rights
Depending on your jurisdiction, you may have the right to:
- —Access the personal data we hold about you
- —Request correction of inaccurate data
- —Request deletion of your personal data
- —Object to or restrict processing of your data
To exercise any of these rights — including requesting deletion of your data — please email us at contact@huddlespy.com from the address associated with your account.
Cookies & Local Storage
HuddleSpy uses essential cookies and browser local storage to maintain authentication sessions and to remember user preferences such as theme (light/dark mode). We do not use tracking cookies for advertising purposes.
Children's Privacy
HuddleSpy is not directed to children under the age of 18. We do not knowingly collect personal information from anyone under 18. If we become aware that a child under 18 has provided us with personal information, we will take steps to delete such information promptly.
Governing Law
This Privacy Policy for HuddleSpy LLC of Mesa, Arizona is governed by and construed in accordance with the laws of the State of Arizona, USA, without regard to its conflict of law principles.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the new policy on the Platform with an updated date. Your continued use of the Platform after such changes constitutes your acceptance of the revised policy.
Contact
For privacy-related inquiries, please contact us at contact@huddlespy.com or visit huddlespy.com.