Privacy Policy
This Privacy Policy explains how NexPect ("we," "us," "our") collects, uses, shares, and protects information when you use our website, mobile apps, APIs, and related services (collectively, the "Service"). By using NexPect, you agree to the practices described here. If you do not agree, please do not use the Service.
1. Who We Are
NexPect operates a global platform connecting athletes, scouts/recruiters, brands, and fans. We act as the data controller for the personal data you provide and that we collect through your use of the Service.
2. Information We Collect
We collect the following categories of information:
Account & Profile Data
- Name, username, email, phone number, password (hashed), date of birth, country, city.
- Role (Player, Scout/Recruiter, Brand, Fan), club, position, sport, height, weight, dominant foot/hand, achievements, bio.
- Profile photos, cover images, and verification documents (ID, club letter, liveness video).
Content You Create
- Videos (highlights, full games), thumbnails, captions, tags, sport metadata, performance stats.
- Posts, comments, endorsements, badges, challenge submissions, opportunities, applications, deals, notes, shortlists.
Communications
- Messages, conversation metadata, attachments, message read/delivery state.
- Reports, support requests, and correspondence with us.
Device & Technical Data
- IP address, device identifiers, device type and model, operating system, browser type and version, language, time zone.
- App version, crash logs, diagnostic data, performance traces, error reports.
Usage & Engagement Data
- Pages and screens viewed, taps and clicks, watch time, scroll depth, search queries, filters used.
- Likes, follows, saves, shares, profile views, video views, opportunity views and applications.
- Session timestamps, referral source, in-app navigation paths.
Location Data
- Approximate location derived from IP address.
- Country/city you provide in your profile.
- Precise location (latitude/longitude) only when you explicitly enable it for features such as "Nearby." Precise coordinates are never publicly displayed on your profile.
Verification & Trust Data
- Identity documents, selfies, liveness recordings, club confirmation letters, and the results of automated checks against these submissions.
Payment Data (when applicable)
- Subscription tier, billing cycle, transaction history, and limited payment metadata. Full card numbers and bank details are handled by third-party payment processors and are not stored on our servers.
Cookies & Similar Technologies
- Cookies, local storage, session storage, and similar identifiers used for authentication, preferences, analytics, and abuse prevention.
3. How We Use Your Information
We use your information to:
- Operate, maintain, and provide the Service, including authentication, profiles, feeds, messaging, opportunities, and verification.
- Personalize your experience, including recommendations, "Rising Talent" surfacing, smart matching, search ranking, and language settings.
- Calculate Scout Score, performance metrics, leaderboards, badges, and other gamification signals.
- Operate paid features (subscriptions, boosts, featured opportunities, virtual goods).
- Communicate with you (transactional messages, security alerts, product updates, support).
- Detect, investigate, and prevent fraud, spam, harassment, abuse, and violations of our Terms.
- Moderate content using a combination of automated systems (including third-party AI such as Hive) and human review.
- Improve the Service through analytics, research, A/B testing, and model training (using aggregated or de-identified data where possible).
- Comply with legal obligations and enforce our agreements.
4. Legal Basis for Processing (where applicable)
Where data protection laws apply (such as the GDPR), we rely on one or more of the following legal bases:
- Performance of a contract — to provide the Service you signed up for.
- Consent — for optional features such as precise location, marketing communications, or specific data uses where consent is required. You can withdraw consent at any time.
- Legitimate interests — to keep the Service safe and functional, prevent fraud and abuse, secure our systems, understand product usage, and improve features. We balance these interests against your rights.
- Legal obligations — to comply with applicable law, court orders, and regulatory requirements.
- Vital interests — in rare cases, to protect someone's life or physical safety (e.g., safeguarding minors).
5. AI & Automated Decision-Making
NexPect uses automated systems, including AI/ML models and third-party AI providers, for:
- Content moderation — scanning uploaded videos, images, captions, and messages for prohibited content (e.g., nudity, violence, hate, spam, deepfakes).
- Fraud and abuse detection — identifying bots, multi-account abuse, fake engagement, scraping, and security threats.
- Recommendations & ranking — personalizing your feed, search results, suggested players, suggested scouts, and "Rising Talent."
- Smart matching — scoring fit between players and opportunities/scouts based on sport, position, location, performance, and verification.
- Scoring & signals — calculating Scout Score, challenge scores, badges, and similar trust signals.
You acknowledge that:
- Automated decisions may affect your visibility, eligibility, account status, content distribution, or access to features.
- Automated systems are imperfect and may produce errors, including false positives and false negatives.
- Where required by law, you may request human review of significant automated decisions by contacting us.
- NexPect is not liable for outcomes of automated decisions, including missed opportunities or content removals.
6. How We Share Information
We do not sell your personal data. We share information only as described below:
Other Users on the Platform
- Your public profile (name, username, avatar, sport, role, public stats, public videos) is visible to other users consistent with your role and any visibility controls.
- Verified Players and Verified Scouts may message each other and interact via opportunities.
- Content you post (videos, comments, endorsements) may be viewed, shared, embedded, or screenshotted by other users.
Service Providers (Processors)
We share limited data with vendors who help us run the Service, under contracts requiring confidentiality and appropriate safeguards. Categories include:
- Cloud hosting and database providers.
- Content delivery and media storage (e.g., video CDNs, image hosting such as Cloudinary).
- AI and moderation providers (e.g., Hive AI for video moderation).
- Authentication providers.
- Email, SMS, and push notification providers.
- Analytics, crash reporting, and product telemetry.
- Payment processors and billing platforms (when paid features are enabled).
- Customer support and ticketing tools.
Legal, Safety & Compliance
- We may share information when required by law, subpoena, court order, or government request.
- We may share information to investigate fraud, protect the rights, property, and safety of NexPect, our users, or the public.
Business Transfers
If NexPect is involved in a merger, acquisition, financing, reorganization, bankruptcy, asset sale, or similar transaction, your information may be transferred as part of that transaction. We will notify you of any change in ownership or material change in this Policy.
With Your Consent
We may share information with other parties when you direct us to do so or when you publicly choose to share it.
7. International Data Transfers
NexPect operates globally. Your information may be stored and processed in countries other than the one in which you live, including jurisdictions whose data protection laws differ from yours. Where required, we use appropriate safeguards (such as standard contractual clauses or equivalent mechanisms) to protect your information when it is transferred internationally.
8. Data Retention
We retain personal data only for as long as necessary to provide the Service and for the purposes described in this Policy, including:
- Account data — for as long as your account is active.
- Content — until you delete it, your account is terminated, or we are required to remove it.
- Messages — for as long as conversations remain accessible to participants, subject to deletion requests and legal holds.
- Verification documents — for as long as needed to maintain your verified status and meet trust/safety obligations.
- Logs, diagnostics, and security data — typically for a limited period sufficient for debugging, auditing, and abuse investigation.
- Billing records — for the period required by tax and accounting laws.
- Backups — residual copies may persist in encrypted backups for a limited additional period before being overwritten.
When you delete your account, we delete or anonymize personal data within a reasonable timeframe, except where retention is required by law, necessary to resolve disputes, enforce our Terms, prevent fraud, or protect the safety of users.
9. Your Rights
Subject to applicable law, you have the following rights regarding your personal data:
- Access — request a copy of the personal data we hold about you.
- Rectification — request correction of inaccurate or incomplete data.
- Deletion — request deletion of your personal data ("right to be forgotten").
- Restriction — request that we limit how we process your data.
- Objection — object to processing based on legitimate interests, including profiling for personalization.
- Portability — receive a copy of certain data in a structured, machine-readable format.
- Withdraw consent — where processing is based on consent, withdraw it at any time (without affecting prior lawful processing).
- Lodge a complaint — with your local data protection authority.
To exercise these rights, manage data in the Settings screen or contact us at the email below. We may need to verify your identity before fulfilling requests, and some requests may be limited where retention is legally required or necessary to operate the Service.
10. Children & Minors
NexPect is not directed to children under 13 (or the minimum age required by your country's law). Users under 18 ("Minors") must have verifiable consent from a parent or legal guardian to use the Service. We apply additional protections for known minor accounts where applicable, including stricter messaging defaults. If we learn that we have collected personal data from a child without appropriate consent, we will delete it promptly. Parents or guardians who believe their child has provided personal data without consent should contact us so we can investigate and remove the data.
11. Security
We implement reasonable technical and organizational safeguards designed to protect your information, including:
- Encryption in transit (HTTPS/TLS) and at rest where appropriate.
- Role-based access controls and database-level security policies (RLS).
- Hashed and salted passwords.
- Monitoring, rate limiting, and abuse detection.
- Restricted access for personnel on a need-to-know basis.
However, no method of transmission or storage is 100% secure. You use the Service and share data at your own risk. NexPect cannot guarantee absolute security and is not liable for unauthorized access caused by factors beyond our reasonable control, including your own credential reuse or device compromise.
12. Content Visibility & Public Exposure
NexPect is a discovery and networking platform. As such:
- Your profile, videos, comments, endorsements, and similar content may be publicly visible within the platform to other users, including scouts, recruiters, brands, and fans.
- Other users can view, follow, save, share, embed, screenshot, or reference your content.
- Content surfaced in feeds, search, or recommendations may reach audiences beyond your direct followers.
- Once content has been viewed or shared, it may persist outside our control even if you later delete it from NexPect.
You assume the risk of sharing content. Do not share information you would not be comfortable being seen, recorded, or redistributed.
13. Cookies & Similar Technologies
We use cookies, local storage, and similar technologies for purposes such as:
- Essential — authentication, session management, security, and fraud prevention. These cannot be disabled without breaking the Service.
- Functional — remembering preferences such as language, theme, and saved filters.
- Analytics & performance — measuring how the Service is used so we can improve it.
- Personalization — supporting recommendations and tailored experiences.
You can control cookies through your browser or device settings. Disabling certain cookies may degrade or break parts of the Service.
14. Marketing & Communications
We may send transactional messages (account, security, billing) that you cannot opt out of while you have an account. For optional product updates, newsletters, and promotional content, you can opt out at any time using the unsubscribe link or your notification settings.
15. Third-Party Links & Services
The Service may contain links to third-party websites, social platforms, or integrations (e.g., external video links). We are not responsible for the privacy practices of those third parties. Review their policies before sharing personal data.
16. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Effective" date and may notify you in-app or by email if changes are material. Continued use of the Service after changes take effect constitutes acceptance of the updated Policy.
17. Contact Us
For privacy questions, data subject requests, or to report a concern, contact us via the in-app support flow or the contact details listed on the NexPect website. Please include enough information for us to verify your identity and locate your account.
By using NexPect, you acknowledge that you have read and understood this Privacy Policy.