This policy explains what personal data Soar (“Soar,” “we,” “us”) collects through the CourtView mobile app, the CourtView iPad kiosk at partner facilities, and our related back-end services (collectively, the “Service”), how we use it, and your rights. Soar operates from the United States. This policy applies worldwide; region-specific rights are noted where relevant.
1. Who we are
The Service is operated by Soar. Contact us for any privacy question at support@streamsoar.com.
2. Data we collect
Account data
- Phone number you provide at sign-in. We verify it via SMS one-time password (OTP) using Firebase Authentication (Google LLC as a processor).
- Profile details you choose to add (display name, avatar, basic preferences).
Session and match content
- Match and training video + clips recorded by facility-installed cameras at partner venues where you are a registered player. These are associated with your account after you check in at the venue.
- Per-match analytics (ball tracking, bounce locations, line-call verdicts, and similar gameplay data) computed from your match video.
- Session metadata (date, venue, court number, match duration, participants).
Biometric data — iPad kiosk check-in only
When you check in at a CourtView iPad kiosk at a partner facility, we capture a face embedding (a mathematical representation derived from a short camera preview) to identify you as a returning player. The raw camera frames are processed on-device and are not stored. The resulting embedding is stored in encrypted form on our servers and is used solely to recognize you at future check-ins at that facility. You can request deletion of your face embedding at any time by emailing support@streamsoar.com or by using the in-app Delete Account flow described in Section 7.
Device and diagnostic data
- Basic device information (device model, operating system version, app version) to diagnose crashes and compatibility issues.
- Anonymized usage events (which screens opened, which features used) to improve the app. We do not tie these events to advertising identifiers.
We do not collect: location, contacts, photos outside the kiosk check-in preview, health data, financial data, advertising identifiers (IDFA/GAID), or audio outside of recorded match video.
3. How we use your data
- To authenticate you and secure your account.
- To record, process, and deliver the match and training content you play at partner venues to your personal feed.
- To recognize you at iPad kiosk check-in at the facility you registered with.
- To compute and display gameplay analytics (shot tracking, bounce locations, line-call verdicts) for your sessions.
- To operate, maintain, debug, and improve the Service.
- To communicate with you about your account, service changes, or support requests.
- To comply with legal obligations.
We do not sell your personal data. We do not use your data for advertising. We do not use biometric data for anything other than kiosk check-in recognition.
4. Processors and sub-processors
We rely on the following service providers to operate the Service. These providers access your data only to perform services on our behalf, under contractual obligations that bind them to confidentiality and appropriate safeguards.
- Google Cloud Platform (Google LLC) — Firebase Authentication (phone-number verification, session tokens), Google Cloud Storage (encrypted video and clip storage), Cloud Logging (operational diagnostics).
- Apple App Store & Google Play Store — app distribution. We do not control what these stores collect about downloads; see their respective policies.
5. Sharing your data
We share your data only with the processors above, and only as necessary to provide the Service. We do not share your data with advertisers, data brokers, or other third parties for commercial purposes. We may disclose data if required by valid legal process, or to protect rights, safety, or property.
6. Data retention
- Account and profile data: retained while your account is active. On request to support@streamsoar.com, we remove personal data within 30 days.
- Match / training video and clips: retained for the duration of your active account unless you delete specific items. Items you delete in-app become inaccessible immediately; storage-level removal follows within 30 days on request.
- Face embedding: retained while you are a registered player at the associated facility. Removed within 30 days of a deletion request emailed to support@streamsoar.com.
- Diagnostic data: retained for up to 90 days for debugging, then aggregated or deleted.
7. Your rights and choices
You may, at any time:
- Delete your account from within the app: Profile → Settings → Delete Account. Your account is deactivated immediately on confirmation and you are signed out. To fully purge all associated personal data (including any face embedding), email support@streamsoar.com; we remove it within 30 days of receipt.
- Request access to the personal data we hold about you by emailing support@streamsoar.com. We respond within 30 days.
- Request correction of inaccurate data via the same channel.
- Withdraw consent to processing (where processing is based on consent) by deleting your account or emailing us.
California (CCPA/CPRA) residents have additional rights including the right to know categories of personal information collected, the right to delete, and the right not to be discriminated against for exercising your rights. We do not sell personal information or share it for cross-context behavioral advertising.
European Economic Area and UK (GDPR/UK GDPR) residents have rights to access, rectification, erasure, restriction, portability, objection, and to lodge a complaint with a supervisory authority. Our lawful bases are: contract (to provide the Service you signed up for), legitimate interests (debugging and security), consent (biometric face embedding for kiosk check-in), and legal obligation.
8. Children
The Service is not directed to children under 13. We do not knowingly collect personal information from children under 13. If you are between 13 and 18, use the Service only with a parent or guardian’s permission. If you believe we have collected data from a child under 13, email support@streamsoar.com and we will delete it promptly.
9. Security
Data in transit is encrypted using TLS. Data at rest (video, clips, face embeddings, database contents) is encrypted using standard Google Cloud encryption. Access to production data is restricted to authorized personnel and logged. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.
10. International transfers
Our servers are operated in the United States. If you use the Service from outside the United States, your data will be transferred to and processed in the United States under appropriate safeguards.
11. Changes to this policy
We may update this policy from time to time. Material changes will be announced in the app or by email before they take effect. The “Effective” date at the top of this page will always reflect the current version.