Privacy Policy
Armband Creator LLC (“we,” “us,” “our”) respects your privacy. This Privacy Policy explains what information we collect, how we use it, and your rights regarding your data.
Table of Contents
1. Information We Collect
Account Information: When you create an account, we collect your email address and WordPress user ID. This is used for authentication and to deliver the Service.
Payment Information: Payments are processed by Stripe. We do not store your credit card number, expiration date, or CVV on our servers. Stripe may share transaction-level data (e.g., payment confirmation, billing name) with us to fulfill your order.
Armband Data: When you use the Service, we store your armband configurations including play names, column labels, colors, and layout settings. This data is necessary to provide the Service.
Generated PDFs: PDFs you generate are stored on our servers for up to 10 years to enable re-downloads, after which they are automatically deleted.
Technical Data: We collect standard server logs including IP addresses, browser type, and access timestamps. WordPress session cookies and JWT authentication tokens are used to maintain your login session.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service
- Process your purchase and payment
- Authenticate your identity and manage your account
- Communicate with you about your account or the Service
- Send service-related notices (e.g., maintenance, policy updates)
We do not sell your personal data. We do not use your data for advertising purposes. We do not share your data with third parties for their marketing.
3. Storage & Security
Your data is stored using Amazon Web Services (AWS) in United States data centers:
- Armband configurations: Stored in DynamoDB with a 10-year time-to-live (TTL)
- Generated PDFs: Stored in S3 with a 10-year lifecycle policy (auto-deleted after 10 years)
- All data transmitted over HTTPS/TLS encryption
- Authentication via JWT tokens
While we implement industry-standard security measures, no method of electronic storage or transmission is 100% secure. We cannot guarantee absolute security.
4. Third-Party Sharing
We share data only with the following service providers, who are necessary to operate the Service:
- Stripe — Payment processing. Subject to Stripe’s Privacy Policy.
- WooCommerce — E-commerce and order management.
- Amazon Web Services (AWS) — Cloud hosting and data storage.
- WordPress — Website platform and user authentication.
We do not share your data with any other third parties except when required by law, such as in response to a valid legal process or to protect our rights.
5. Cookies & Local Storage
We use only essential cookies and storage:
- WordPress session cookies: Required for login and site functionality. These are essential cookies — the Service cannot function without them.
- JWT token in localStorage: Used for API authentication, with a 7-day expiration.
We do not use analytics cookies, tracking cookies, or advertising cookies. We do not use Google Analytics or any third-party tracking scripts.
6. Your Rights
You have the right to:
- Access the personal data we hold about you
- Correct inaccurate personal data
- Delete your data — we will process deletion requests within 30 days
- Export your data — we can provide your data via email upon request
To exercise any of these rights, email support@armbandcreator.com.
7. Children’s Privacy
Armband Creator is designed for adult coaches and is not directed at children under 18. We do not knowingly collect personal information from children.
Play names and column labels entered into the Service are user-defined content (e.g., “Fastball,” “Bunt”) — they are not personally identifiable information of players. The Service does not collect player names, ages, or other personal data about minors.
If you believe we have inadvertently collected data from a child, please contact us at support@armbandcreator.com and we will promptly delete it.
8. Data Retention
- Account data: Retained for the life of your account
- Armband configurations: Retained for 10 years or until you request deletion
- Generated PDFs: Automatically deleted after 10 years
- Payment records: Retained as required by tax law (approximately 7 years)
- Server logs: Retained for up to 90 days
You may request deletion of your data at any time by emailing support@armbandcreator.com. Deletion requests are processed within 30 days, except for records we are legally required to retain.
9. Changes to This Policy
We may update this Privacy Policy from time to time. For material changes, we will notify you via email. The “Effective Date” at the top of this page indicates when the policy was last updated.
If you have questions about this Privacy Policy, contact us at support@armbandcreator.com.
