Privacy Policy
1. Scope and Information We Collect
This Privacy Policy describes how GridBoss collects, uses, and safeguards your data. To participate in our fantasy league scoring and team management, we collect:
- Discord User ID: Your unique Discord identifier, which we use to map fantasy managers to their rosters.
- Discord Username & Display Name: Collected to display your manager profile on the public Leaderboard and Admin panels.
- Active Roster Selections: The choices you make when signing or dropping drivers and constructor teams.
- Cookie Session Data: Temporary, secure cookies stored on your browser to keep you logged in to your management session.
2. How We Use Your Information
Your information is used strictly to power the fantasy league features, including:
- Providing secure user authentication via temporary passcodes.
- Tracking point scores, team values, and transaction counts.
- Rendering historical trend charts and standings tables.
- Checking role permissions (e.g., verifying if you are a server administrator to grant access to the Admin Panel).
3. Data Storage & Security
GridBoss data is stored in a secure SQLite database file hosted on the server. We apply industrial best practices to prevent unauthorized database access, including parameterizing all SQL queries to block injection vulnerabilities. Single-use login passcodes expire automatically after 10 minutes and are completely deleted from the database upon use.
4. Data Retention
We retain your manager profile and roster history as long as you remain a participant in your active league. If you wish to remove your data or unregister from the league, please contact your league administrator or run the appropriate Discord commands if available.
5. Sharing of Data
GridBoss does not sell, rent, or distribute user data to any third-party advertisers or external services. All data is kept local to the server environment hosting your league's bot instance.
6. Third-Party Links
The Service may contain links to external sites (such as SimGrid or Discord). We are not responsible for the privacy practices of external web assets. We recommend reviewing their privacy policies upon navigation.