Skip to decision
Skip to main content

Privacy

Plain-English data handling.

MatchDay XI uses the smallest amount of information needed to show a useful FPL source receipt and a local draft. We do not need your Fantasy Premier League password, private credentials, or advertising profile.

What the product uses

  • Public FPL entry identity: when you validate an FPL team ID or official entry URL, we use that public identity to check the entry and carry the result into your browser-local draft flow.
  • Browser storage: the connected team context and draft selections are saved in this browser so the flow can continue between pages. The draft is not a public squad import before the FPL deadline.
  • Functional requests: team validation sends the entered team ID to the backend validation URL and that ID may appear in ordinary operational request logs. A draft evaluation request sends the selected draft and captain to the application to calculate a response; persistence and continuity for those selections stay browser-local. These requests do not require your FPL password.
  • First-party product events: we measure bounded aggregate actions such as page views, validation outcomes, and draft states using an opaque session UUID and closed enums.

What product analytics excludes

Product event payloads do not include FPL entry IDs, player IDs, decision IDs, client timestamps, decision timestamps, exact latency, manager names, squad contents, arbitrary free text, or third-party advertising identifiers. The server stores a receipt created_at for each event row so operations can reconcile writes; that server-side receipt is not a client or decision timestamp in the event payload. Events are designed to answer product questions in aggregate, not to reconstruct an individual manager.

What we do not collect

  • FPL passwords or private Fantasy Premier League credentials.
  • Advertising pixels, cross-site tracking profiles, or data sold to advertisers.
  • Payment information; there is no paid account flow in this public build.
  • A private pre-deadline squad import: official future picks are not public before the deadline.

Sources and hosting

Current-season context and fixtures come from the public Fantasy Premier League source. MatchDay XI is hosted on Render; ordinary operational request logs may be processed there to keep the service secure and available. Those logs are distinct from the bounded product-event fields described above.

Retention and requests

Browser storage remains under your control: clear the site data or use the product's forget/remove action where available. Product events and operational logs support reliability, security, and aggregate measurement; retention periods can vary by system. We do not claim that every historical record has already been deleted; email us if you want a specific association or event record reviewed.

For questions or deletion requests, contact hello@matchdayxi.com. You can also read the methodology receipt for source limitations.

Privacy page updated 2026-08-12.