Privacy Policy
Last updated: 13 April 2026
Touchline ("we", "us", "our") operates the Touchline platform at touchlineapp.uk. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our platform.
1. Information We Collect
Personal Information
When you register an account, submit a contact form, or use our platform, we may collect:
- Name and email address
- Club name, address, and contact details
- Job title and role within your club
- Payment information (processed securely via Stripe — we do not store card details)
Information From Third-Party Services
When you connect third-party accounts to Touchline, we may receive:
- Social media platforms (Meta/Facebook, Instagram, Twitter/X, TikTok, YouTube): public profile information, page/account names, follower counts, post engagement metrics, and impressions. We access this data using OAuth tokens that you explicitly authorise.
- Email providers (Gmail, Microsoft Outlook): email address and OAuth tokens to send emails on your behalf. We do not read, store, or process the content of your emails.
- Stripe: connected account status and transaction metadata for payment processing. We do not access your Stripe account credentials.
Automatically Collected Information
When you visit our website, we may automatically collect:
- IP address and browser type
- Pages visited and time spent on our site
- Referring website or source
2. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the Touchline platform
- Create and manage your account
- Process payments and send invoices on your behalf
- Send transactional emails (account notifications, invoice delivery, proposal sharing)
- Display social media analytics and metrics within your dashboard
- Respond to enquiries submitted through our contact form
- Improve our platform and develop new features
- Detect, prevent, and address technical issues or abuse
3. How We Share Your Information
We do not sell, trade, or rent your personal information. We may share data with:
- Service providers: Stripe (payment processing), DigitalOcean (hosting), and email delivery services — only as necessary to operate the platform
- Your sponsors and contacts: Only information you explicitly choose to include in proposals, invoices, or other documents you send through the platform
- Legal requirements: If required by law, regulation, or legal process
4. Data Security
We implement appropriate technical and organisational measures to protect your data, including:
- AES-256-GCM encryption for all stored OAuth tokens and credentials
- HTTPS encryption for all data in transit
- JWT-based authentication with HTTP-only cookies
- Role-based access control within club accounts
- Managed PostgreSQL with SSL-encrypted connections
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is completely secure. We cannot guarantee absolute security.
5. Data Retention
We retain your personal information for as long as your account is active or as needed to provide our services. If you close your account, we will delete or anonymise your data within 90 days, except where retention is required by law or for legitimate business purposes (e.g. financial records).
6. Your Rights
Under applicable data protection law (including UK GDPR), you have the right to:
- Access your personal data
- Correct inaccurate or incomplete data
- Delete your personal data
- Restrict processing of your data
- Data portability — receive your data in a structured, machine-readable format
- Withdraw consent at any time where processing is based on consent
- Object to processing based on legitimate interests
To exercise any of these rights, please contact us.
7. Data Deletion
You can request deletion of your data at any time through the following methods:
Disconnecting Social Media Accounts
To remove data obtained from a connected social media account (Meta/Facebook, Instagram, Twitter/X, TikTok, or YouTube):
- Log in to your Touchline account at dashboard.touchlineapp.uk
- Navigate to Settings and select the Social tab
- Click Disconnect next to the platform you wish to remove
- Confirm the disconnection — all stored data for that account (tokens, metrics, follower history, and top posts) will be permanently deleted immediately
Meta (Facebook and Instagram) Users
If you connected your Facebook or Instagram account to a club on Touchline, you can also request data deletion directly from your Facebook account settings:
- Go to your Facebook Settings & Privacy > Settings
- Select Apps and Websites
- Find Touchline and select Remove
- Facebook will send a data deletion request to Touchline, and we will delete all data associated with your Facebook user ID
You will receive a confirmation code that you can use to check the status of your deletion request.
Full Account Deletion
To delete your entire Touchline account and all associated data, please contact us. We will process your request and delete all your data within 30 days, except where retention is required by law.
8. Cookies
Our platform uses essential cookies for authentication and session management. We do not use advertising or tracking cookies. Our marketing site may use basic analytics to understand visitor behaviour.
9. Third-Party Links
Our platform may contain links to third-party websites and services. We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies before providing any personal information.
10. Children's Privacy
Touchline is not directed at individuals under the age of 16. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will take steps to delete it promptly.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page and updating the "Last updated" date. Your continued use of the platform after changes are posted constitutes acceptance of the updated policy.
12. Contact Us
If you have questions about this Privacy Policy or wish to exercise your data rights, please contact us.