← Back to Team Team

Privacy Policy

Effective date: 12 August 2026

1. WHO WE ARE

1.1. This Privacy Policy explains how the operator of the Team Team mobile application ("Team Team", "we", "us"), established in the Republic of Lithuania, processes the personal data of App users. We are the data controller within the meaning of the EU General Data Protection Regulation (GDPR).

1.2. Contact: support@team-team.app.

1.3. The App is intended strictly for persons aged 18 or over.

2. WHAT DATA WE PROCESS, WHY, AND ON WHAT LEGAL BASIS

2.1. Account data — e-mail address, name, date of birth, gender; if you sign in with Google or Apple, the identifier and e-mail address those services share with us. Purpose: creating and operating your account, verifying that you are 18+, and service communications. Legal basis: performance of a contract (Art. 6(1)(b) GDPR).

2.2. Profile photo (avatar) — optional. Purpose: displaying your profile to other users. Legal basis: consent (Art. 6(1)(a) GDPR); you can replace or remove the photo at any time.

2.3. Location data — your city and search radius, and the addresses and venues of events you create or join. We do not track your GPS position in the background. Purpose: showing games near you and on the map. Legal basis: performance of a contract; where the App requests access to your device location, we rely on the consent you give in the operating system dialog, which you can revoke in system settings at any time.

2.4. Content and communications — events you create, chat messages, reviews and ratings, and support requests with attachments. Purpose: providing the core social features of the App and user support. Legal basis: performance of a contract.

2.4a. Voice messages — audio you record and send in an event chat. The recording is stored so that it can be delivered to the other participants of that chat and played back by them. We do not transcribe or analyse the audio. Purpose: providing chat. Legal basis: performance of a contract; access to the microphone relies on the consent you give in the operating system dialog, which you can revoke in system settings at any time.

2.5. Social profile links — optional links you add to your profile. Legal basis: consent.

2.6. Language preference — to show the interface in your language. Legal basis: performance of a contract.

2.7. Push notification token — a device token used to deliver notifications (new participants, messages, event changes). Legal basis: consent; you can disable push notifications at any time in the App settings or in your operating system settings.

2.8. Diagnostics — crash reports and technical data (device model, OS version, error traces) processed via Sentry in its EU data region. Purpose: fixing bugs and keeping the App stable and secure. Legal basis: our legitimate interest in providing a functioning, secure service (Art. 6(1)(f) GDPR).

3. WHAT WE DO NOT DO

3.1. We do not sell your personal data.

3.2. We do not show third-party advertising and do not share your data with advertisers or data brokers.

3.3. We do not process payments; any event costs are settled between users outside the App.

3.4. We do not make automated decisions that produce legal or similarly significant effects on you.

4. WHO SEES YOUR DATA

4.1. Other users. Your profile information (name, avatar, city, sports interests and any social links you choose to add), the events you create or join, your reviews and ratings, and the messages you send in event chats are visible to other users as part of the service.

4.2. Processors (Art. 28 GDPR) acting on our documented instructions:

  • Google (Google Ireland Ltd. / Google LLC) — Firebase Authentication (sign-in) and Google Maps / Places (maps, geocoding, venue search)
  • Google Ireland Ltd. / Google LLC — Firebase Cloud Messaging (push notification delivery)
  • Google Ireland Ltd. / Google LLC — Firebase Cloud Storage (image and audio hosting and delivery)
  • Render Services, Inc. (USA) — backend and database hosting
  • Functional Software, Inc. (Sentry; EU data region) — crash reporting
  • Resend, Inc. (USA) — transactional e-mail (verification codes, service notices).

4.3. Authorities and legal claims. We may disclose data where the law requires it, to respond to lawful requests, to enforce our Terms of Use, or to protect the safety of users — including reporting child sexual abuse material to law enforcement.

4.4. Business transfer. If the App is transferred to a new operator, data may be transferred as part of that transaction, with notice to you.

5. INTERNATIONAL TRANSFERS

Some of our processors are located in, or process data in, the United States and other countries outside the EEA. For such transfers we rely on the European Commission's adequacy decision for the EU-US Data Privacy Framework (for certified providers) and/or the Standard Contractual Clauses (Art. 46(2)(c) GDPR), with additional safeguards where needed. Sentry is configured to store data in the EU region. You can request details of these safeguards at support@team-team.app.

6. RETENTION AND ACCOUNT DELETION

6.1. We keep your personal data for as long as your account is active.

6.2. You can permanently delete your account in the App (Profile — "Delete account"). Deletion is irreversible: your profile, avatar, e-mail, date of birth, gender, location settings and social links are erased.

6.3. After deletion, your chat messages and past events are deleted or irreversibly disassociated from you (displayed as belonging to a deleted user) so that other participants' conversations remain coherent; reviews on your profile disappear with it; residual copies are purged from backups within 30 days.

6.4. We may retain limited data for longer where the law requires it or where necessary to establish, exercise or defend legal claims (for example, a record of a ban to prevent re-registration, or abuse reports), and only for as long as necessary for those purposes.

6.5. Crash diagnostics are retained in Sentry for no longer than 90 days.

7. YOUR RIGHTS (GDPR)

7.1. You have the right to: access your data (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction of processing (Art. 18), data portability (Art. 20), and objection to processing based on legitimate interests (Art. 21).

7.2. Where processing is based on consent, you may withdraw it at any time (for example, remove your avatar or disable push notifications); withdrawal does not affect the lawfulness of prior processing.

7.3. To exercise your rights, write to support@team-team.app. We respond within one month (extendable by up to two further months for complex requests, with notice). We may ask you to verify your identity.

7.4. You have the right to lodge a complaint with a supervisory authority — in particular the Lithuanian State Data Protection Inspectorate (Valstybine duomenu apsaugos inspekcija, VDAI), L. Sapiegos g. 17, Vilnius, Lithuania, www.vdai.lrv.lt — or with the authority of your habitual residence.

8. CALIFORNIA PRIVACY RIGHTS (CCPA/CPRA)

8.1. If you are a California resident: in the preceding 12 months we have collected the categories of personal information described in Section 2 (identifiers; customer records; approximate geolocation; audiovisual information such as avatars; internet or electronic activity such as diagnostics). We collect it directly from you and from your device, for the purposes listed in Section 2.

8.2. We do not sell personal information and do not share it for cross-context behavioral advertising, and we have no actual knowledge of selling or sharing the personal information of consumers under 16.

8.3. You have the right to know and access, to correct, to delete, and not to be discriminated against for exercising your rights. Submit requests to support@team-team.app yourself or through an authorized agent; we verify requests using your account e-mail address.

8.4. We do not use or disclose sensitive personal information for purposes other than those permitted by the CPRA.

9. AGE LIMIT

The App is strictly 18+. We verify date of birth at registration and do not knowingly collect data from anyone under 18. If we learn that a person under 18 holds an account, we delete the account and the associated data. Please report suspected underage accounts to support@team-team.app or via in-app reporting.

10. SECURITY

We apply technical and organisational measures appropriate to the risk: TLS encryption in transit, password hashing (handled by Firebase Authentication), access controls and least-privilege access to production systems, and an EU data region for crash reporting. No system is completely secure; if a breach likely to affect your rights occurs, we will notify you and the VDAI as required by Arts. 33-34 GDPR.

11. YOUR CHOICES

11.1. Push notifications: disable them at any time in the App settings or in your OS settings.

11.2. Avatar and social links: add, change or remove them in your profile.

11.3. Location: change your city and search radius in the App; revoke the OS location permission at any time.

11.4. E-mail: transactional e-mails (verification codes, security notices) are part of the service; we do not send marketing e-mails without your consent.

12. CHANGES TO THIS POLICY

We will announce material changes in the App or by e-mail before they take effect and will update the effective date above. Where changes affect consent-based processing, we will ask for renewed consent where required.

13. CONTACT

Data controller: the operator of the Team Team application, Republic of Lithuania. E-mail: support@team-team.app