Legal

Privacy Policy

How DCS Sports handles your data — honestly, and with you in control.

Last updated 16 July 2026.

Who we are

DCS Sports is part of the DCS AI Technologies ecosystem. This policy explains what we collect, why, and the control you have.

What we collect

Account details (name, email, role), athlete profile data you provide (sport, level, performance), match data generated on the platform, and basic usage/device data. We collect only what a feature needs.

How we use it

To run your profile and modules, compute estimate-labelled insights, connect athletes with verified opportunities, and keep the platform secure. We do not sell your personal data.

Minors

Players under 18 are protected by design: non-discoverable without parent/guardian consent, with co-consent required for a minor's visibility. Parents can manage and withdraw a child's data.

Your control & consent

You own your data. You set per-field visibility, grant time-boxed and scope-limited access to scouts/academies, and can revoke it. Every access is logged, and you can read that log.

Verified records

Verification badges and selection records are stored with the identity of the person who entered or confirmed them and the time they did so, and are retained as part of the trust layer. They are not cryptographically signed today — signing is planned and not yet implemented, so we do not claim these records are independently provable.

Cookies

We use essential cookies for sign-in and security. We choose the most privacy-preserving defaults and do not use non-essential tracking without consent.

Security

Data is protected with access controls, row-level security in the database, and encryption in transit over HTTPS. Records are held in a managed Postgres database (Supabase), and our database provider encrypts stored data at rest at the storage layer. DCS adds no application-level or column-level encryption of its own: where a record needs stronger protection — the medical and biometric vault, for example — that protection is access isolation (row-level security and a grant gate), not extra encryption. We have not independently audited or certified our provider's at-rest encryption, and we do not hold our own encryption keys for stored records. No record-signing key exists in this estate — signing is planned and not yet implemented, so we describe no signing-key control here. We follow honest-by-default and least-data principles.

Your rights

Consistent with applicable law (including India's DPDP), you can access, correct, export or delete your personal data, and object to certain processing. Contact us to exercise these rights.

Contact

Questions about privacy? Reach us via the Contact page and we'll respond.