HawkMind
AI match predictions

Privacy

HawkMind is an anonymous-first prediction and sports interpretation product. We collect the minimum data needed to run prediction records, rooms, reminders, attribution, safety, and user-requested export or deletion.

Current collection

  • Signed pm_uid cookies identify an anonymous device; pm_sid cookies measure an attributed visit when a human-shared link is opened.
  • Prediction records include match picks, group or tournament picks, lock time, scoring result, and optional linked account id.
  • Rooms, memberships, follows, reminders, push subscriptions, notification preferences, record receipts, challenge activity, visit sessions, activation events, and attribution touches are stored only for the product purpose that created them.
  • Account records may contain a handle, display name, avatar URL, provider name, and a pseudonymized provider subject. New privacy paths never add unsalted external identifiers.

Purposes

  • Show honest AI and fan prediction records.
  • Let people join private rooms or other reviewed room types.
  • Send notifications only after explicit opt-in.
  • Measure whether a human-distributed HawkMind link led to a visit, activation, challenge, return, or retention event.
  • Operate safety, abuse prevention, support, export, deletion, and platform revocation.

Cookies and notifications

  • pm_uid is signed and must verify before anonymous export or mutation. A missing or forged cookie does not mint identity for privacy APIs.
  • pm_sid is scoped to attribution and is not a public profile.
  • Notification opt-in is explicit. Consent withdrawal immediately disables future notification preferences and queues bounded deletion when the approved purpose requires it.

Rooms, minors, and visibility

  • Private rooms are private by default. Membership lists are members-only unless a later reviewed product contract changes that behavior.
  • Minor-protected defaults disable public profile exposure and creator-room participation by default.
  • Exports for a room participant do not expose other members, counterpart challenge identities, or another subject’s picks.

Attribution and platform data

  • External platform public identifiers are pseudonymized with keyed HMACs using platform-separated key material and a key version.
  • Raw provider payload references are purgeable. Platform revocation marks the channel revoked, removes secret references, clears raw payload refs, and redacts engagement item identifiers.
  • We do not resell platform data or use it for unreviewed model training.

Retention, export, and deletion

  • Registered data classes define purpose, fields, visibility, consent basis, retention, export, deletion, minor handling, notification handling, platform-data handling, pseudonyms, and raw-payload purge behavior.
  • Exports are identity-scoped. Account exports include only anon ids actually linked to the authenticated account.
  • Deletion jobs are ordered to remove direct rows and public aggregates before unlinking accounts, so deleted identities do not reappear through fallback leaderboard keys.
  • Backups expire under the normal backup lifecycle unless a legal hold applies.

Regional launch and contact

  • International launch is region-by-region. Legal review remains an external launch gate for each market.
  • For privacy requests or regional questions, use the product contact path at /contact.