Legal
Privacy Policy
This policy explains how Phi Golf collects and uses personal data, in accordance with the UK GDPR and the Data Protection Act 2018.
1. Who we are (the controller)
Neil Dolling, trading as "Phi", a sole trader registered in England with a registered address at Elvaston, Gomshall Lane, Shere, Surrey GU5 9HE. ICO registration: ZC160736. Contact: support@phi.golf.
2. What data we collect
- Account data: email address, display name, hashed password.
- Profile data: tournaments, teams, scores, anything you enter into the app.
- Payment data: we do not see or store your card number. Stripe handles payment data; we receive only a transaction ID, the amount paid, and a last-4 of the card for receipts.
- Technical data: IP address, browser type, pages visited, captured in server logs.
3. Why we use it (lawful bases)
- To provide the service you signed up for — lawful basis: performance of a contract.
- To take payment — lawful basis: performance of a contract.
- To prevent fraud and keep accounts secure — lawful basis: legitimate interests.
- To respond to support requests — lawful basis: legitimate interests.
4. Who we share it with
- Stripe Payments Europe Ltd (payment processor; Ireland; subject to Stripe's own privacy notice at https://stripe.com/privacy).
- Google Cloud (hosting; data stored in EU/UK regions).
- We do not sell personal data, and we do not use it for advertising.
5. How long we keep it
- Account data: for as long as your account is active, plus 6 years after closure (to meet UK tax record-keeping obligations).
- Payment records: 6 years (HMRC requirement).
- Server logs: 30 days.
6. International transfers
Some of our suppliers (notably Stripe and Google) may process data outside the UK. Where this happens, transfers are protected by Standard Contractual Clauses approved by the UK Information Commissioner.
7. Your rights
Under UK GDPR you have the right to: access your data; correct it; delete it; restrict or object to its processing; receive a copy in a portable format; withdraw consent (where consent is the lawful basis). To exercise any of these rights, email support@phi.golf. We respond within one month.
8. Complaints
If you are unhappy with how we handle your data you can complain to the UK Information Commissioner's Office: https://ico.org.uk/concerns or 0303 123 1113.
9. Cookies
Phi Golf uses strictly-necessary cookies for login session management only. We do not use advertising or analytics cookies. No cookie banner is required because we do not set non-essential cookies.