Privacy Policy

Last updated: October 21, 2025

Your privacy is important to us. This Privacy Policy explains how we collect, use, and protect your personal information when you visit our website simdeck.app (the “Site”).

1. Information We Collect

We collect information you provide directly and data generated through your use of the Site:

  • Account Information: Name, email address, nickname, and profile picture provided during registration.
  • iRacing Data: If you link your iRacing account, we collect your iRacing Customer ID, display name, and racing history data provided via iRacing's API.
  • Social Profiles: Usernames for Twitter, Twitch, Instagram, and YouTube if you choose to add them to your profile.
  • Usage data: IP address, browser type, device information, and pages visited (via our self-hosted Analytics).
  • Cookies: Essential cookies for authentication and session management (Better-Auth).

2. How We Use Your Information

  • Provide, maintain, and improve the services of Simdeck.
  • Verify your identity and link your iRacing credentials.
  • Communicate with you about updates, security alerts, and support requests.
  • Analyze website performance and enhance user experience.
  • Detect and prevent fraudulent or illegal activities.

3. Legal Basis for Processing

  • Consent: You have given clear consent for us to process your personal data for a specific purpose (e.g., newsletter signup, linking iRacing).
  • Contract: The processing is necessary for a contract we have with you (our Terms of Service).
  • Legitimate Interests: For internal administrative purposes and improving our security and service quality.

4. Data Retention

We retain your personal data for as long as your account is active or needed to provide you with our services. If you delete your account, we will remove your personal data within 30 days, except where necessary for legal compliance.

5. Data Sharing and Third Parties

We do not sell your personal data. We share data only with the following service providers:

  • Vercel: Hosting and web analytics.
  • Supabase/Neon: Database storage.
  • Resend: Email delivery services.
  • Cloudflare: Security (Turnstile) and CDN services.
  • AWS (S3): Image storage (profile pictures, gear photos).

6. Your Rights (GDPR)

Under GDPR, you have the following rights:

  • Right to Access: Request a copy of your personal data.
  • Right to Rectification: Request correction of inaccurate information.
  • Right to Erasure: Request deletion of your data through your profile settings.
  • Right to Portability: Export your data in a structured, machine-readable format.
  • Right to Object: Object to processing based on legitimate interests.

To exercise these rights, please use the tools provided in your Profile Settings or contact us at [email protected].

7. Security

We implement industry-standard security measures to protect your data, including encryption at rest and in transit (SSL/TLS). However, please note that no method of transmission over the Internet is 100% secure.

9. Changes to This Policy

We may update this Privacy Policy periodically. Changes will be posted on this page with an updated “Last updated” date.

10. Contact Us

If you have questions about this Privacy Policy, contact us at:
📧 [email protected]
🌐 simdeck.app