Privacy Policy
Kabina app — effective from 20 June 2026
This policy explains what personal data the Kabina app processes, for what purpose, who we share it with and what rights you have. The app is operated by Tomáš Košut (the “operator”), contact: kosut@email.cz.
1. Who is the data controller
The data controller is Tomáš Košut, an individual operating the Kabina app. For any privacy matters you can reach us at kosut@email.cz.
2. What data we process
Account data
- Email address and password (the password is handled by the sign-in provider Firebase Authentication in encrypted form; the operator has no access to it).
- First and last name, date of birth.
- Optionally: nickname, phone number, profile photo.
- When signing in with Google or Apple: basic profile data (name, email) from those services.
Team and activity data
- Team membership, role (player, coach, treasurer, manager), join date.
- Events (training, matches), location, your attendance responses.
- Fines, dues and self-reported payments, history and balances within a season.
- Team chat messages and their attachments (photos, videos, voice messages, documents), reactions and polls.
Payment data
To generate payment QR codes and payment details, a team may store a bank account number (IBAN). The app does not process card payments or any money transactions and does not handle payment card data — the payments themselves happen outside the app, directly between users and their banks.
Technical and operational data
- A token for sending notifications (push notifications via Firebase Cloud Messaging).
- Optionally, access to your device calendar (only if you grant it, to add events).
- Basic diagnostic and operational data necessary to run and secure the service.
3. Why we process the data and on what legal basis
- Providing the service (team management, calendar, kitty, chat) — to perform our agreement with you, or our legitimate interest in running the app.
- Securing and protecting the service and its users — legitimate interest.
- Optional features (notifications, device calendar sync) — based on your consent, which you can withdraw at any time in settings.
- Compliance with legal obligations where required by law.
4. Who we share data with
To run the app we use Google Firebase (Authentication, Cloud Firestore, Storage, Cloud Messaging, Cloud Functions), acting as a processor and storing data on secure servers. Data may be processed on servers in the EU and outside the EU (USA) under appropriate safeguards. When you sign in with Google or Apple, those providers also process your data under their own policies. We do not sell your data and do not share it with third parties for marketing.
5. How long we keep the data
We keep data for as long as your account and team membership exist. After you delete your account, we remove or anonymise your personal data unless we must keep it for legal reasons (e.g. accounting). You can request deletion at any time — see Account & data deletion.
6. Your rights
Under the GDPR you have the right to access your data, rectify it, erase it, restrict processing, object, and to data portability. You can withdraw consent to optional processing at any time. If you believe your data is being processed unlawfully, you have the right to lodge a complaint with the Czech Data Protection Authority (ÚOOÚ). To exercise your rights, contact us at kosut@email.cz.
7. Children
The app may be used by underage players as part of a sports team. If a user is under 15, we assume the involvement and consent of their legal guardian. The operator does not request any data from children beyond the standard registration described above.
8. Security
Data is transmitted encrypted and stored with the Firebase provider with appropriate technical and organisational safeguards. Only members of a given team can access that team's data, according to their roles.
9. Changes to this policy
We may update this policy in the future. We will notify you of material changes in the app or on this page; the current version is always available here with its effective date.
10. Contact
For any privacy questions, contact us at kosut@email.cz.
Kabina