Privacy
The short version: we hold your email address, your billing state, and a count of your API requests. That is the complete list, and it is short because the product is a dataset rather than a social graph - there is nothing here we would gain by knowing more about you.
What we store
- Email address. Needed to send the sign-in link and a receipt. No password exists to store.
- Billing state. Which plan, which add-ons, which status, when the period ends. Mirrored from Stripe. Card details never reach our servers - Stripe holds them.
- API keys. A keyed hash, a display prefix, your label, and when it was last used. Not the key itself.
- Daily request counts. One integer per key per day, which is what enforces the quota. Not a log of what you asked for.
What we do not store
We do not build a profile of which players you look up, which teams you follow, or what you do with the data. We do not sell or share personal data, and we run no advertising or third-party tracking scripts.
Processors
- Supabase - authentication and database.
- Stripe - payments. Subject to their own terms and privacy policy.
- Google Cloud / Firebase App Hosting - serving. Ordinary request logs, retained by the platform.
Deletion
Email support@apexdatum.io and we delete your account, your keys and your usage counters. Billing records we keep for as long as tax and accounting rules require, because we are not permitted to delete those on request.
Data about players, not about you
The dataset concerns professional athletes and is built from published statistics, public injury reports and dated public reporting. Where two sources disagree we publish both with a conflict flag rather than silently picking one.