Privacy Policy

Bracket Pulse Planner

Effective date: 2026-09-29

This policy explains how this application handles information and how to contact us about privacy.

Information we process

Bracket Pulse Planner stores tournament names, sports, start dates, team names and seeds, match brackets, scores, winner and tie-break details, schedules, venue names and addresses, readiness checklists, and organizer tasks on your iPhone using SwiftData. Your chosen language, reminder preference, and last opened tournament are stored locally. If synchronization is available, the same tournament records are sent to our backend and stored in PostgreSQL under an automatically issued installation identifier. A random installation secret is stored in iOS Keychain; the server stores only its hash. The service also receives normal connection data such as IP address, request time, path, and technical headers when your device requests the API or public pages. We do not require an account or collect a login, password, or email address through the app.

How we use information

We use tournament information to generate and update elimination brackets, record results, warn about overlapping matches and unready venues, show schedules and checklists, and synchronize your changes when a network connection is available. Local notification content is created on your device for matches when you enable reminders. Technical request data is processed to deliver the service, operate its infrastructure, and diagnose failures or misuse.

Service providers and sharing

The backend and PostgreSQL database run on Railway, which processes hosted records and service traffic as our infrastructure provider. Railway and its infrastructure may generate access, application, and operational logs containing request metadata. We do not add advertising, analytics, messaging, map, or social sign-in SDKs, and the app has no outbound email feature. An exported tournament JSON file is shared only when you choose an iOS sharing destination; that destination then handles the file under its own terms.

Data retention

Tournament records remain on your device until you delete them or remove the app. Synchronized records and deletion markers remain on the server while the installation is active, unless you delete all installation data. The app does not set a fixed log retention period, and Railway infrastructure log retention depends on the hosting configuration; we do not claim a specific duration. Database backups, if enabled by the hosting platform, may persist for its configured lifecycle and are not directly erased by an app request. We do not promise restoration of cloud records if the installation secret is lost.

Deleting your information

Settings includes Delete all data. When online, this first requests deletion of the server installation and its associated tournament records, then removes local tournament records, the Keychain secret, and pending match reminders. If the server request fails, the app leaves local data in place and asks you to retry so it cannot imply that cloud deletion succeeded. If the server succeeds but local removal fails, the app retains the installation secret, pauses synchronization, and lets you retry the local cleanup in Settings without uploading those records again. Removing the app removes its local app storage under iOS behavior but may not delete server records. For further deletion questions, contact JayMahesh1Kanakiya@icloud.com; platform logs or backups may follow their separate lifecycle.

Permissions and your choices

The app requests notification permission only when you enable match reminders. It schedules local reminders 15 minutes before a match and removes or updates pending reminders when the related schedule changes or data is deleted. You can disable reminders in app Settings or withdraw notification permission in iOS Settings. The app does not request location, contacts, camera, microphone, or photo library permission.

Your privacy rights

You can view and edit tournament information in the app, export your tournament data as JSON, disable reminders, and delete your installation's local and server records through Settings. Because there is no account or identity verification, access to a particular installation's cloud data depends on its Keychain secret. For privacy requests or questions, contact JayMahesh1Kanakiya@icloud.com. We may need enough information to identify the relevant installation, and we cannot recover a lost secret from an email address.

Security

App-to-server requests use HTTPS. Each installation receives an unpredictable secret kept in iOS Keychain; private API routes require that secret, and the backend stores only a SHA-256 hash. Tournament records are scoped to the authorized installation in PostgreSQL. These measures reduce unauthorized access, but no storage or transmission method can be guaranteed perfectly secure.

Children’s privacy

Bracket Pulse Planner is intended for tournament organizers and is not directed to children. Organizers should avoid entering unnecessary personal details, especially information about minors, into team names, tasks, or venue notes. If you believe a child's information was entered and should be removed, use the deletion controls or contact JayMahesh1Kanakiya@icloud.com.

Changes to this policy

We may update this policy when app features, hosting, or data practices change. The current version and effective date will be published on this page. Material changes will be reflected in the app's linked policy before or when they take effect.