Legal
Privacy Policy
How we collect, use, and protect your information — with special care for minors.
Last updated: January 1, 2026
COPPA Compliance for Minors
The Roster complies with the Children's Online Privacy Protection Act (COPPA). All information about athletes under 13 is collected and managed by a parent or legal guardian. We never knowingly allow children under 13 to create their own accounts, and we never use minors' data for marketing or advertising.
1. Information We Collect
Parent accounts: Name, email, phone number, payment method, and billing address.
Athlete profiles: First name, age, primary and secondary sport, skill level, and parent-provided notes. Only the parent may create or edit athlete profiles. [PLACEHOLDER — final data dictionary to be confirmed.]
Trainer accounts: Name, contact information, identity verification, background check results (status only; underlying records held by our screening partner), credentials, tax and payout information.
2. Special Protections for Minors (COPPA)
Information about athletes under 13 is treated as personal information of the parent. We collect only what is necessary to facilitate bookings and the training experience, and we never:
- Allow children under 13 to create their own login
- Show advertising to or based on data of minors
- Sell or share minors' data with third-party marketers
- Retain minors' data after parental account closure
Parents may at any time review, modify, or delete information about their athletes by contacting privacy@theroster.com.
3. How We Use Information
- To facilitate bookings between parents and trainers
- To process payments and trainer payouts
- To verify trainer identity and run background checks
- To send transactional emails (booking confirmations, receipts)
- To improve safety and detect fraud or abuse
4. How We Share Information
We share information only with: (a) the trainer involved in a specific booking, limited to what they need to deliver the session; (b) payment processors and screening partners; (c) law enforcement when legally required. We do not sell personal information.
5. Data Retention
We retain account data while your account is active and for a reasonable period after closure for legal, tax, and safety obligations. Minors' data is deleted upon parental account closure except where retention is legally required.
6. Security
We use industry-standard encryption in transit and at rest, role- based access controls, and continuous monitoring. No system is perfectly secure, and we encourage users to choose strong, unique passwords.
7. Your Rights
Depending on your jurisdiction, you may have the right to access, correct, delete, or port your personal information. California residents have additional rights under the CCPA/CPRA. EU residents have rights under the GDPR. Contact privacy@theroster.com to exercise any of these rights.
8. Cookies and Analytics
We use a small set of essential cookies for authentication and security, and privacy-respecting analytics to understand site performance. We do not use cross-site tracking or advertising cookies.
9. Changes to This Policy
We will notify you of material changes by email and via in-app notice at least 30 days before changes take effect.
10. Contact
Privacy questions or requests? Email privacy@theroster.com.