Legal

Privacy Policy

We believe privacy is a right, not a feature. This policy explains exactly what data we collect, why we collect it, and how you can control it.

Last updated: June 8, 2026Terms of Service →

Overview

PredictsZone ("we", "us", "our") operates the website predictszone.com and related services. We are committed to protecting your personal information and being transparent about what we collect.

By using PredictsZone, you agree to the collection and use of information as described in this policy. This policy applies to all users of our website and services, including free and Pro subscribers.

The short version

We collect your email and name to run your account. We use Stripe for payments (we never see your card details). We do not sell your data. You can delete your account at any time.

Data we collect

We only collect what we need to provide our service:

  • ·Account data: email address and display name when you register
  • ·Authentication tokens: secure session tokens stored in encrypted HttpOnly cookies
  • ·Subscription data: Pro plan status and billing dates (no card details — Stripe handles those)
  • ·Support messages: messages you send to our support team
  • ·Usage data: which predictions you viewed (anonymised view counts per prediction)
  • ·Technical data: IP address and user agent for rate limiting and fraud prevention only

We do not collect: browsing history outside our site, location data, device identifiers, social media profiles, or any data we don't explicitly need.

How we use data

  • ·To create and manage your account
  • ·To process and track your Pro subscription via Stripe
  • ·To send you transactional emails (welcome, subscription confirmation, cancellation OTP)
  • ·To respond to support messages you send us
  • ·To prevent abuse via rate limiting (IP-based, non-persistent)
  • ·To count prediction views for our popularity rankings (anonymous)

We do not use your data for advertising, profiling, or any purpose beyond running the service. We do not send marketing emails unless you explicitly opt in.

Third-party services

We use the following trusted third-party services, each with their own privacy policies:

S
Supabase
Database and authentication. Hosts your account data on EU servers.
S
Stripe
Payment processing. Handles all card data — we never see your payment details.
R
Resend
Transactional email delivery (welcome, OTP codes).
V
Vercel
Website hosting and CDN. Processes request logs for 24 hours.
U
Upstash/Redis
Session caching and rate limiting. No personal data stored long-term.

Cookies

We use only functional cookies. We do not use advertising or tracking cookies.

pp_auth
Authentication session
7 days
Essential
pp_pro
Pro subscription status cache
1 year
Essential
theme
Dark/light mode preference
Persistent
Functional
NEXT_LOCALE
Language preference (EN/RU)
1 year
Functional

All cookies are HttpOnly and Secure in production. We do not use third-party analytics cookies (no Google Analytics, no Meta Pixel).

Data retention

  • ·Account data is retained for as long as your account is active
  • ·Support messages are retained for 2 years for quality and dispute resolution
  • ·Subscription records are retained for 7 years for accounting and legal compliance
  • ·Rate-limiting data (IP logs) is automatically deleted after 1 hour
  • ·Deleted accounts are purged from our database within 30 days

Your rights

Depending on your location, you may have the following rights under GDPR, CCPA, or similar laws:

  • ·Right to access: request a copy of all data we hold about you
  • ·Right to rectification: correct inaccurate data
  • ·Right to erasure: request deletion of your account and data
  • ·Right to portability: receive your data in a machine-readable format
  • ·Right to object: opt out of any data processing we perform
  • ·Right to withdraw consent: at any time, for any processing based on consent

To exercise any of these rights, email us at support@predictszone.com. We respond within 30 days. We may need to verify your identity before processing the request.

Security

We implement industry-standard security measures:

  • ·All data in transit is encrypted via HTTPS/TLS
  • ·Passwords are hashed using bcrypt via Supabase Auth — we never store plaintext passwords
  • ·Session tokens are stored in HttpOnly cookies, inaccessible to JavaScript
  • ·Database access is restricted to server-side code via admin keys
  • ·Payment processing is entirely delegated to Stripe (PCI DSS compliant)

While we take security seriously, no system is 100% secure. If you discover a vulnerability, please report it responsibly to support@predictszone.com.

Children

PredictsZone is intended for users aged 18 and over only. We do not knowingly collect personal data from anyone under 18. If you believe we have inadvertently collected data from a minor, please contact us immediately and we will delete it.

Changes to this policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page. For significant changes, we will notify registered users by email.

Continuing to use PredictsZone after a change constitutes acceptance of the updated policy.

Contact

For any privacy-related questions, requests, or concerns:

© 2026 PredictsZone
Privacy Policy | PredictsZone