Privacy Policy
Last updated: 27 lutego 2026
§ 1. General Information
- PREDICT STATS SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ (hereinafter: "PredictStats" or "Administrator") processes personal data in accordance with applicable data protection regulations, including GDPR (Regulation (EU) 2016/679) and other privacy regulations.
- Administrator: PREDICT STATS SP. Z O.O., Świniarsko 134, 33-395 Chełmiec, Poland, Tax ID (NIP): 7343656695, KRS: 0001176159, REGON: 541866775.
- Contact for data protection matters: contact@predictstats.com.
- This Privacy Policy defines the principles of processing personal data of users of the PredictStats platform, available at predictstats.com.
§ 2. What Data Do We Collect?
Data provided by users:
- Email address (required for registration and login to the platform)
- Name and surname (optional, if the user chooses to provide it)
- Invoice data (if the user purchases a Premium subscription and requires a VAT invoice)
Payment data:
- PredictStats does not store payment data (card numbers, bank details).
- Payment processing is carried out by external providers: Stripe and Przelewy24, who process data in accordance with their own privacy policies and security standards (PCI DSS).
- The Administrator stores only transaction history (dates, amounts, payment status) necessary for subscription management.
Technical and analytical data:
- IP address
- Device type and operating system
- Browser type and version
- Approximate geographic location (based on IP address)
- Data on platform activity (pages viewed, time spent, clicks)
- Google Analytics for website traffic and user behavior analysis
- Facebook Pixel and Google Ads for marketing and remarketing purposes
Data collected during platform use:
- Platform activity history (saved matches, filters, preferred statistics)
- Interactions with platform features (use of predictions, analyses, tools)
- User preferences (language settings, light/dark mode)
Data regarding marketing consents:
- If the user consents to receiving marketing communications, we process their email address for this purpose.
§ 3. Legal Basis for Data Processing
- Contract performance (Art. 6(1)(b) GDPR) – processing data necessary to provide PredictStats platform services, including user account management and Premium subscription.
- Legitimate interest (Art. 6(1)(f) GDPR) – processing data for analytical and marketing purposes, securing the platform against abuse, and pursuing claims.
- Consent (Art. 6(1)(a) GDPR) – for processing data for marketing purposes, profiling, and use of cookies not essential for platform operation.
- Legal obligation (Art. 6(1)(c) GDPR) – to the extent the Administrator is required to process data under applicable law (e.g., tax and accounting regulations).
§ 4. Purposes of Data Processing
- Providing PredictStats platform services (registration, login, access to content and features).
- Managing Premium subscriptions, including payment processing and invoice issuance.
- Communication with users (responses to inquiries, technical support, information about service changes).
- Analyzing user behavior to improve platform functionality.
- Marketing and advertising (with user consent).
- Securing the platform against abuse, attacks, and unauthorized access.
- Fulfilling legal obligations (e.g., storing accounting data).
- Pursuing and defending against claims.
§ 5. What Tracking Technologies Do We Use?
Cookies – we use various types of cookies:
- Essential – required for proper platform operation (e.g., login sessions, user preferences).
- Analytical – help us understand how users use the platform (Google Analytics).
- Advertising – used to personalize ads and track marketing campaign effectiveness (Facebook Pixel, Google Ads).
- Functional – remember user preferences (e.g., language, dark/light mode).
Users can manage cookie settings in their browser. Blocking certain cookies may affect platform functionality.
§ 6. How Long Do We Store Data?
- User account data – stored until account deletion by the user or upon request for data deletion.
- Transaction data and invoices – stored for the period required by law (min. 5 years under tax regulations).
- Analytical data (Google Analytics, Facebook Pixel) – stored for up to 26 months.
- Marketing consent data – until consent withdrawal by the user.
- Subscription history – stored by Stripe and Przelewy24 in accordance with their privacy policies.
- System logs – stored for the period necessary to ensure platform security (typically up to 12 months).
- After these periods expire, data is permanently deleted or anonymized.
§ 7. With Whom Do We Share Data?
- Payment providers – Stripe and Przelewy24 for transaction processing.
- Technical service providers – hosting providers, databases, and IT infrastructure necessary for platform operation.
- Analytical and marketing service providers – Google Analytics, Google Ads, Facebook Pixel for analytical and advertising purposes.
- Email service providers – for sending transactional and marketing messages (with user consent).
- Law enforcement and legal institutions – if required by law, we may disclose user data to appropriate authorities.
- The Administrator does not sell users' personal data to third parties.
§ 8. User Rights
- Right of access to data – users can obtain a copy of their personal data processed by PredictStats.
- Right to rectification – users can correct inaccurate or outdated data.
- Right to erasure ("right to be forgotten") – users can request deletion of their personal data, unless there are legally justified grounds for further processing.
- Right to restriction of processing – users can request restriction of processing of their data in certain situations.
- Right to data portability – users have the right to receive their data in a structured, commonly used format and transmit it to another administrator.
- Right to object to processing – users can object to processing of data for marketing purposes and profiling.
- Right to withdraw consent – if data is processed based on consent, users can withdraw it at any time without affecting the lawfulness of processing before withdrawal.
- Right to lodge a complaint – users have the right to lodge a complaint with a supervisory authority (President of the Personal Data Protection Office in Poland, or relevant authority in user's country).
- To exercise the above rights, please contact the Administrator at: contact@predictstats.com.
§ 9. Data Security
- We use data encryption (SSL/TLS) to protect data transmission between users and the platform.
- Data is stored on secured servers with restricted access.
- We regularly monitor infrastructure for potential threats and vulnerabilities.
- Access to user data is restricted and available only to authorized employees and partners acting on our behalf.
- We employ protection mechanisms against DDoS attacks, SQL injection, and other threats.
- We regularly create data backups to protect against data loss.
- Payment data is processed exclusively by payment providers compliant with PCI DSS standards – the Administrator does not store this data.
§ 10. Data Transfer Outside EU/EEA
- PredictStats uses external service providers who may process data outside the European Union/European Economic Area (e.g., Stripe, Google, Facebook).
- When transferring data outside the EU/EEA, we apply appropriate protection mechanisms, including:
- - Standard Contractual Clauses (SCC) approved by the European Commission,
- - Privacy Shield certification (where applicable),
- - Other mechanisms compliant with GDPR.
- Users can contact us for more information about data protection mechanisms for transfers outside the EU/EEA.
§ 11. Cookies and Their Use
- Session cookies – deleted after closing the browser, used to maintain user session.
- Persistent cookies – stored on the user's device for a specified time, used to remember preferences.
- First-party cookies – set by PredictStats to ensure platform functionality.
- Third-party cookies – used by Google Analytics, Facebook Pixel, and advertising providers.
- Users can manage cookie settings through their web browser. Information on managing cookies can be found in browser settings.
- Blocking or deleting certain cookies may affect platform functionality.
§ 12. Data of Minors
- The PredictStats platform is intended for persons who have reached 18 years of age.
- We do not knowingly collect personal data from persons under 18 years of age.
- If we learn that we are processing data of a person under 18 years of age, we will immediately delete such data.
- If a parent or legal guardian suspects that a minor has provided us with personal data, please contact: contact@predictstats.com.
§ 13. Changes to Privacy Policy
- The Administrator reserves the right to update the Privacy Policy.
- Users will be informed of any significant changes by email or through a notice on the platform.
- New versions of the Privacy Policy take effect from the moment of their publication on the platform.
- We recommend regularly checking the Privacy Policy to stay informed about how we protect user data.
§ 14. Contact
- All questions regarding the Privacy Policy and personal data processing can be directed to:
- Email: contact@predictstats.com
- Postal address: PREDICT STATS SP. Z O.O., Świniarsko 134, 33-395 Chełmiec, Poland
- We will respond to all inquiries as soon as possible, no later than within 30 days.
PREDICT STATS SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ
ul. Świniarsko 134, 33-395 Chełmiec
NIP: 7343656695 | KRS: 0001176159 | REGON: 541866775
contact@predictstats.com