Euroleague Draft App is operated by Konstantinos Sakellariou as a small private-league draft service. This notice covers the public draft product only. The parked Season Game is not a production capability and does not process live scoring, lineup, market, or standings data.
What we collect
- Account identity: email address, authentication-provider user ID, and display name.
- League data: memberships, roles, league names, invite codes, and draft-room history.
- Draft data: room settings, manager names, readiness, availability, queues, picks, and final rosters.
- Recovery data: opaque room-session credentials, expiry and last-seen times, plus an optional recovery email.
- Operational data: request IDs, route, status, duration, and security events. Access tokens and room-session values are not intentionally logged.
Why and how we use it
We process this data to create private leagues, run and recover live drafts, preserve completed results, prevent abuse, diagnose failures, and answer data-rights requests. We do not sell personal data or use it for targeted advertising.
Storage and sharing
The web app and API are hosted by Vercel and Railway. Account and PostgreSQL draft data are hosted by Supabase. These providers process data only to operate the service. Browser storage holds account and room recovery credentials on the device; signing out removes the account session from that browser.
Retention and deletion
Active and completed draft records are retained while needed for league history and recovery. Anonymous room sessions expire and can be revoked; their raw credentials are stored only as hashes server-side. Operational logs follow the hosting providers' configured retention. Protected backups will follow the published operator runbook and retention schedule once the public-launch backup gate is active.
Signed-in users can download a machine-readable export or submit a deletion request from Account controls on the dashboard. An open request is durable and is reviewed within 30 days. Commissioner deletion may require transferring or closing a shared league before account removal. If you began anonymously with a recovery email, sign in with that address first so the room can be linked to your account.
Your choices and rights
You can request access, correction, export, deletion, restriction, or objection using the dashboard. You may also withdraw by leaving the service. Other managers will still see the shared draft record needed to preserve an accurate room history, but account identifiers can be removed or pseudonymized where the law and shared-league integrity allow.
Contact and controller
Konstantinos Sakellariou operates this personal project and is the contact for privacy and data-rights questions. Email euroleaguedraftapp@proton.me.
Security and changes
We use scoped authorization, encrypted transport, hashed room-session credentials, request limits, restricted cross-origin access, and recovery testing. No internet service is risk-free. Material changes to this notice will be dated here before they take effect.