Privacy Policy

Last updated: April 3, 2026

Teamzor ("we", "us", or "our") operates the Teamzor platform at teamzor.com (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.

By using Teamzor, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use the Service.

1. Information We Collect

1.1 Account Information

When you create an account, we collect:

  • Email address — used for authentication, password recovery, and optional event notifications.
  • Display name — your chosen in-app username, visible to other users.
  • Password — stored securely by AWS Cognito using industry-standard hashing. We never have access to your plaintext password.

1.2 Third-Party Account Data

If you choose to link external accounts, we collect the following data from those services:

  • Steam — Your Steam ID, profile name, and avatar URL (via Steam OpenID). We do not access your Steam library, friends list, or purchase history.
  • Discord — Your Discord user ID, username, and avatar (via Discord OAuth). For team Discord integrations, we access server channels to post event notifications. We do not read message history.
  • Faceit — Your Faceit player ID, skill level, and Elo rating (fetched from the public Faceit API using your linked Steam ID). We only store your competitive ranking data.

1.3 User-Generated Content

  • Team names, descriptions, and logos
  • Event titles, descriptions, and schedules
  • RSVP responses and attendance status
  • Profile biography

1.4 Automatically Collected Data

  • Usage data — pages visited, features used, and interaction patterns (collected via Sentry for error tracking and performance monitoring).
  • Device information — browser type, operating system, and screen resolution (collected as part of error reports).
  • IP address — logged temporarily for security and abuse prevention. Not stored long-term.

2. How We Use Your Information

We use the information we collect to:

  • Provide, operate, and maintain the Service
  • Authenticate your identity and manage your account
  • Send event notifications and team updates (email and in-app, based on your notification preferences)
  • Display team rosters with competitive stats (Faceit Elo/rank)
  • Post event notifications to connected Discord servers
  • Monitor and fix errors, improve performance, and prevent abuse
  • Respond to support requests

We do not sell your personal data. We do not use your data for advertising. We do not share your data with data brokers.

3. Data Storage and Security

3.1 Infrastructure

Your data is stored using Amazon Web Services (AWS):

  • AWS DynamoDB — account data, teams, events, and notifications
  • AWS S3 — uploaded files (team logos, profile avatars)
  • AWS Cognito — authentication credentials and session management

All data is encrypted at rest (AES-256) and in transit (TLS 1.2+). Access to production systems is restricted to authorized personnel only.

3.2 Data Retention

  • Account data is retained for as long as your account is active.
  • Notifications are retained for up to 90 days, then automatically deleted.
  • When you delete your account, your personal data is removed within 30 days. Some anonymized data may be retained for analytics.

4. Cookies and Local Storage

We use the following types of cookies and local storage:

4.1 Essential (Required)

  • Authentication cookies — managed by AWS Amplify to keep you signed in securely. These are httpOnly cookies and cannot be accessed by JavaScript.

4.2 Analytics

  • Sentry — error tracking and performance monitoring. Collects anonymous error reports, stack traces, and page load metrics. Sensitive data (passwords, tokens) is automatically scrubbed before transmission.

4.3 Functional

  • Local storage preferences — stores your UI preferences such as dismissed banners and cookie consent choices. This data never leaves your browser.

You can manage your cookie preferences at any time using the cookie consent banner. Essential cookies cannot be disabled as they are required for the Service to function.

5. Third-Party Services

We share data with the following third-party services, solely to provide the Service:

  • Amazon Web Services (AWS) — cloud infrastructure, authentication, data storage, email delivery (SES)
  • Sentry — error tracking and performance monitoring
  • Steam (Valve Corporation) — identity verification via OpenID, profile data retrieval
  • Discord — OAuth authentication, bot integration for team event notifications
  • Faceit — public competitive ranking data retrieval

Each third-party service has its own privacy policy governing their use of your data. We encourage you to review their policies.

6. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

6.1 All Users

  • Access — view your personal data in your profile settings.
  • Correction — update your display name, bio, email, and linked accounts at any time.
  • Deletion — delete your account from the settings page. This removes your personal data, team memberships, and event history.
  • Unlinking — disconnect Steam, Discord, or Faceit integrations at any time from your profile settings.

6.2 European Economic Area (GDPR)

If you are in the EEA, you additionally have the right to:

  • Request a copy of your personal data in a portable format (data portability)
  • Restrict or object to certain processing of your data
  • Lodge a complaint with your local data protection authority

Our legal basis for processing your data is: (a) contract performance (providing the Service), (b) legitimate interest (security, abuse prevention), and (c) consent (optional analytics and integrations).

6.3 California Residents (CCPA)

If you are a California resident, you have the right to:

  • Know what personal information is collected, used, and shared
  • Request deletion of your personal information
  • Opt out of the sale of personal information (we do not sell your data)
  • Non-discrimination for exercising your privacy rights

7. Children's Privacy

Teamzor is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal data, please contact us so we can delete it.

8. International Data Transfers

Your data is processed and stored in the United States using AWS infrastructure. If you are accessing the Service from outside the United States, your data will be transferred to and processed in the US. We rely on AWS's compliance certifications (including SOC 2 and ISO 27001) to ensure adequate data protection.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the new policy on this page and updating the "Last updated" date. Continued use of the Service after changes constitutes acceptance of the updated policy.

10. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, contact us at: