Privacy Policy

Last updated: 27 lutego 2026

§ 1. General Information

  • PREDICT STATS SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ (hereinafter: "PredictStats" or "Administrator") processes personal data in accordance with applicable data protection regulations, including GDPR (Regulation (EU) 2016/679) and other privacy regulations.
  • Administrator: PREDICT STATS SP. Z O.O., Świniarsko 134, 33-395 Chełmiec, Poland, Tax ID (NIP): 7343656695, KRS: 0001176159, REGON: 541866775.
  • Contact for data protection matters: contact@predictstats.com.
  • This Privacy Policy defines the principles of processing personal data of users of the PredictStats platform, available at predictstats.com.

§ 2. What Data Do We Collect?

Data provided by users:

  • Email address (required for registration and login to the platform)
  • Name and surname (optional, if the user chooses to provide it)
  • Invoice data (if the user purchases a Premium subscription and requires a VAT invoice)

Payment data:

  • PredictStats does not store payment data (card numbers, bank details).
  • Payment processing is carried out by external providers: Stripe and Przelewy24, who process data in accordance with their own privacy policies and security standards (PCI DSS).
  • The Administrator stores only transaction history (dates, amounts, payment status) necessary for subscription management.

Technical and analytical data:

  • IP address
  • Device type and operating system
  • Browser type and version
  • Approximate geographic location (based on IP address)
  • Data on platform activity (pages viewed, time spent, clicks)
  • Google Analytics for website traffic and user behavior analysis
  • Facebook Pixel and Google Ads for marketing and remarketing purposes

Data collected during platform use:

  • Platform activity history (saved matches, filters, preferred statistics)
  • Interactions with platform features (use of predictions, analyses, tools)
  • User preferences (language settings, light/dark mode)

Data regarding marketing consents:

  • If the user consents to receiving marketing communications, we process their email address for this purpose.

§ 3. Legal Basis for Data Processing

  • Contract performance (Art. 6(1)(b) GDPR) – processing data necessary to provide PredictStats platform services, including user account management and Premium subscription.
  • Legitimate interest (Art. 6(1)(f) GDPR) – processing data for analytical and marketing purposes, securing the platform against abuse, and pursuing claims.
  • Consent (Art. 6(1)(a) GDPR) – for processing data for marketing purposes, profiling, and use of cookies not essential for platform operation.
  • Legal obligation (Art. 6(1)(c) GDPR) – to the extent the Administrator is required to process data under applicable law (e.g., tax and accounting regulations).

§ 4. Purposes of Data Processing

  • Providing PredictStats platform services (registration, login, access to content and features).
  • Managing Premium subscriptions, including payment processing and invoice issuance.
  • Communication with users (responses to inquiries, technical support, information about service changes).
  • Analyzing user behavior to improve platform functionality.
  • Marketing and advertising (with user consent).
  • Securing the platform against abuse, attacks, and unauthorized access.
  • Fulfilling legal obligations (e.g., storing accounting data).
  • Pursuing and defending against claims.

§ 5. What Tracking Technologies Do We Use?

Cookies – we use various types of cookies:

  • Essential – required for proper platform operation (e.g., login sessions, user preferences).
  • Analytical – help us understand how users use the platform (Google Analytics).
  • Advertising – used to personalize ads and track marketing campaign effectiveness (Facebook Pixel, Google Ads).
  • Functional – remember user preferences (e.g., language, dark/light mode).

Users can manage cookie settings in their browser. Blocking certain cookies may affect platform functionality.

§ 6. How Long Do We Store Data?

  • User account data – stored until account deletion by the user or upon request for data deletion.
  • Transaction data and invoices – stored for the period required by law (min. 5 years under tax regulations).
  • Analytical data (Google Analytics, Facebook Pixel) – stored for up to 26 months.
  • Marketing consent data – until consent withdrawal by the user.
  • Subscription history – stored by Stripe and Przelewy24 in accordance with their privacy policies.
  • System logs – stored for the period necessary to ensure platform security (typically up to 12 months).
  • After these periods expire, data is permanently deleted or anonymized.

§ 7. With Whom Do We Share Data?

  • Payment providers – Stripe and Przelewy24 for transaction processing.
  • Technical service providers – hosting providers, databases, and IT infrastructure necessary for platform operation.
  • Analytical and marketing service providers – Google Analytics, Google Ads, Facebook Pixel for analytical and advertising purposes.
  • Email service providers – for sending transactional and marketing messages (with user consent).
  • Law enforcement and legal institutions – if required by law, we may disclose user data to appropriate authorities.
  • The Administrator does not sell users' personal data to third parties.

§ 8. User Rights

  • Right of access to data – users can obtain a copy of their personal data processed by PredictStats.
  • Right to rectification – users can correct inaccurate or outdated data.
  • Right to erasure ("right to be forgotten") – users can request deletion of their personal data, unless there are legally justified grounds for further processing.
  • Right to restriction of processing – users can request restriction of processing of their data in certain situations.
  • Right to data portability – users have the right to receive their data in a structured, commonly used format and transmit it to another administrator.
  • Right to object to processing – users can object to processing of data for marketing purposes and profiling.
  • Right to withdraw consent – if data is processed based on consent, users can withdraw it at any time without affecting the lawfulness of processing before withdrawal.
  • Right to lodge a complaint – users have the right to lodge a complaint with a supervisory authority (President of the Personal Data Protection Office in Poland, or relevant authority in user's country).
  • To exercise the above rights, please contact the Administrator at: contact@predictstats.com.

§ 9. Data Security

  • We use data encryption (SSL/TLS) to protect data transmission between users and the platform.
  • Data is stored on secured servers with restricted access.
  • We regularly monitor infrastructure for potential threats and vulnerabilities.
  • Access to user data is restricted and available only to authorized employees and partners acting on our behalf.
  • We employ protection mechanisms against DDoS attacks, SQL injection, and other threats.
  • We regularly create data backups to protect against data loss.
  • Payment data is processed exclusively by payment providers compliant with PCI DSS standards – the Administrator does not store this data.

§ 10. Data Transfer Outside EU/EEA

  • PredictStats uses external service providers who may process data outside the European Union/European Economic Area (e.g., Stripe, Google, Facebook).
  • When transferring data outside the EU/EEA, we apply appropriate protection mechanisms, including:
  • - Standard Contractual Clauses (SCC) approved by the European Commission,
  • - Privacy Shield certification (where applicable),
  • - Other mechanisms compliant with GDPR.
  • Users can contact us for more information about data protection mechanisms for transfers outside the EU/EEA.

§ 11. Cookies and Their Use

  • Session cookies – deleted after closing the browser, used to maintain user session.
  • Persistent cookies – stored on the user's device for a specified time, used to remember preferences.
  • First-party cookies – set by PredictStats to ensure platform functionality.
  • Third-party cookies – used by Google Analytics, Facebook Pixel, and advertising providers.
  • Users can manage cookie settings through their web browser. Information on managing cookies can be found in browser settings.
  • Blocking or deleting certain cookies may affect platform functionality.

§ 12. Data of Minors

  • The PredictStats platform is intended for persons who have reached 18 years of age.
  • We do not knowingly collect personal data from persons under 18 years of age.
  • If we learn that we are processing data of a person under 18 years of age, we will immediately delete such data.
  • If a parent or legal guardian suspects that a minor has provided us with personal data, please contact: contact@predictstats.com.

§ 13. Changes to Privacy Policy

  • The Administrator reserves the right to update the Privacy Policy.
  • Users will be informed of any significant changes by email or through a notice on the platform.
  • New versions of the Privacy Policy take effect from the moment of their publication on the platform.
  • We recommend regularly checking the Privacy Policy to stay informed about how we protect user data.

§ 14. Contact

  • All questions regarding the Privacy Policy and personal data processing can be directed to:
  • Email: contact@predictstats.com
  • Postal address: PREDICT STATS SP. Z O.O., Świniarsko 134, 33-395 Chełmiec, Poland
  • We will respond to all inquiries as soon as possible, no later than within 30 days.

PREDICT STATS SPÓŁKA Z OGRANICZONĄ ODPOWIEDZIALNOŚCIĄ

ul. Świniarsko 134, 33-395 Chełmiec

NIP: 7343656695 | KRS: 0001176159 | REGON: 541866775

contact@predictstats.com