Privacy Policy
Last updated: March 2026
1. Information We Collect
RosterClash collects the following types of information to provide and improve the Service:
- Account information: email address and display name provided during registration via Supabase authentication
- Uploaded photos: photos you upload for AI avatar and matchup image generation
- Fantasy football data: league data, team information, and matchup results fetched from ESPN using credentials you provide
- Payment information: payment transactions are processed by Stripe; RosterClash does not store credit card numbers or sensitive payment details
- Usage data: information about how you use the Service, including pages visited and features used
2. How We Use Your Information
We use the information we collect for the following purposes:
- Generating AI-powered avatars and matchup images based on your photos and league data
- Processing payments and managing your credit balance and subscription
- Syncing your ESPN fantasy football league data to personalize content
- Sending transactional emails related to your account and purchases
- Improving the Service and developing new features
- Enforcing our Terms of Service and preventing abuse
3. AI Image Generation
To generate avatars and matchup images, user-uploaded photos are sent to third-party AI providers including Google Gemini and OpenAI. These providers process your photos to generate stylized images according to your requests. By using the AI image generation features, you consent to your photos being processed by these AI providers in accordance with their respective privacy policies.
AI-generated images are stored in your account within Supabase Storage and are accessible to you at any time. We do not use your photos or generated images to train AI models.
4. ESPN Data
RosterClash fetches fantasy football league data from ESPN on your behalf using credentials you provide, such as your ESPN SWID and S2 cookies. This data includes league information, team rosters, matchup results, and standings. ESPN data is used solely to personalize your RosterClash experience and is not shared with third parties beyond what is necessary to operate the Service.
Your ESPN credentials are stored securely and are only used to fetch your authorized fantasy football data. RosterClash is not affiliated with ESPN.
5. Payment Processing
All payments on RosterClash are handled by Stripe, a PCI-DSS compliant payment processor. RosterClash does not store, transmit, or have access to your full credit card number or sensitive financial information. Stripe may collect and process your payment information in accordance with their Privacy Policy. We receive only limited payment confirmation data from Stripe necessary to fulfill your purchase.
6. Data Storage and Security
Your account data and application data are stored in Supabase (PostgreSQL), and images are stored in Supabase Storage. We implement industry-standard security measures including encrypted connections (HTTPS), secure authentication, and access controls to protect your data. However, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.
7. Data Retention
We retain your account data, uploaded photos, and generated images for as long as your account is active. Upon account deletion, your personal data, uploaded photos, and generated images will be permanently deleted within 30 days. Anonymized usage data may be retained for analytics purposes.
8. Third-Party Services
RosterClash uses the following third-party services. Each has its own privacy policy governing how they handle your data:
- Supabase — database, authentication, and file storage
- Stripe — payment processing
- Google Gemini — AI image generation
- OpenAI — AI image generation
- ESPN — fantasy football data (accessed on your behalf with your credentials)
9. Children's Privacy
RosterClash is not intended for users under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete that information promptly. If you believe a child under 13 has provided us with personal information, please contact us.
10. Your Rights
You have the following rights regarding your personal data:
- Access: request a copy of the personal data we hold about you
- Correction: request correction of inaccurate or incomplete data
- Deletion: request deletion of your account and associated data
- Portability: request export of your data in a machine-readable format
To exercise these rights, contact us at support@rosterclash.com.
11. Changes to Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by sending an email to your registered address or by posting a prominent notice on the Service before the change becomes effective. Continued use of the Service after changes take effect constitutes acceptance of the updated policy.
12. Contact Information
If you have any questions or concerns about this Privacy Policy, please contact us at support@rosterclash.com.