Privacy Policy
Last updated: October 3, 2025
Greens Club AI ("Greens Club", "we", "our") offers an AI-powered golf coaching and commerce experience through the greensclub.ai web application and the Greens Club mobile experiences distributed via Google Play and other channels. This Privacy Policy explains how we collect, use, share, and protect your information when you access our products, websites, or related services (collectively, the "Services").
By using the Services you agree to the practices described here. If you do not agree, please refrain from using Greens Club AI. Where required by law we will ask for your consent separately (for example, through our cookie and analytics preference banner).
1. Information We Collect
We collect information that you provide directly to us, information we receive automatically when you use the Services, and data from third parties that help us operate Greens Club responsibly.
- Account and contact details. When you join the waitlist, create an account, or sign in with Supabase authentication we collect identifiers such as your email address, display name, password (encrypted by Supabase), preferred language, and any optional profile details you add (for example a username or avatar).
- Membership and onboarding details. The onboarding quiz and profile features capture your golf handicap, practice frequency, goals, typical miss, preferred practice location, token balances, and similar membership metadata so we can tailor Tempo recommendations and coaching.
- Content you upload or generate. When you submit swing videos, photos, chat messages, notes, or coaching requests we store the files, related metadata, AI analysis outputs, and conversation transcripts. Video assets and attachments are stored securely in Supabase Storage.
- Purchase and subscription data. We collect the products you select, checkouts you start, tokens you buy, and subscription status. Stripe processes payment cards on our behalf; we receive transaction identifiers, the last four digits of your card, billing country, coupon usage, and related plan details but never store full card numbers.
- Usage, analytics, and device data. When you visit the app we automatically log activity such as pages and tabs viewed, button clicks, referrers, device type, operating system, browser settings, approximate location derived from IP address, and error diagnostics. We collect this through Google Analytics 4, PostHog, Microsoft Clarity, Meta Pixel, TikTok Pixel, Sentry instrumentation, our service worker, and application logs.
- Push notification preferences. If you opt in to push notifications we may generate a browser-specific subscription token so we can send alerts through the web push API. You can revoke this permission at any time in your device or browser settings.
- Support and communications. When you contact us, respond to surveys, or participate in community programs we store the messages, feedback, and the contact details needed to respond.
2. How We Use Information
- Provide and maintain the Services. We use your data to authenticate you, deliver coaching experiences, store swing analyses, track token balances, and fulfil purchases and subscriptions.
- Personalize coaching and content. Onboarding answers, activity history, and AI conversations allow us to personalize Tempo guidance, pro shop offers, reminders, and product recommendations.
- Process transactions and manage billing. We share necessary details with Stripe to verify customers, complete payments, deliver invoices, and manage cancellations or refunds.
- Communicate with you. We send transactional emails, push notifications, and in-app messages about account changes, product updates, waitlist status, and support responses.
- Improve performance and safety. Analytics signals, session replays, and error reports from Google Analytics 4, PostHog, Microsoft Clarity, Sentry, and our own logs help us debug issues, protect against fraud, and optimize new features.
- Market the Services lawfully. With your consent we use Meta Pixel, TikTok Pixel, Google Analytics 4, and email campaigns to run retargeting or acquisition campaigns and to measure their effectiveness.
- Comply with legal obligations. We retain invoices, tax identifiers, and records needed to meet accounting, consumer protection, and regulatory requirements.
3. Legal Bases for Processing
If you reside in the European Economic Area, the United Kingdom, or another region with similar privacy laws, we process personal data under the following legal bases:
- Performance of a contract. We process data to provide the Services you request, such as delivering AI coaching sessions, processing purchases, or managing your membership.
- Consent. We rely on consent for optional analytics, marketing pixels, push notifications, and storing onboarding information when required. You can withdraw consent at any time through the in-app controls or by contacting us.
- Legitimate interests. We process analytics, security logs, and limited marketing data to understand product usage, prevent abuse, and grow Greens Club in ways that do not override your rights.
- Legal obligations. We may process and retain billing, tax, and compliance records where required by law or lawful request.
4. Cookies, Analytics, and Similar Technologies
Greens Club uses cookies, local storage, and similar tracking technologies to keep you signed in, remember your preferences, monitor performance, and run lawful marketing campaigns. The first time you visit we display a consent banner that lets you accept or reject optional analytics and advertising cookies. You can open the banner again at any time by selecting "Manage preferences" in the site footer.
The following tools may set cookies or collect device identifiers when enabled:
- Google Analytics 4 (GA4). Measures traffic patterns, feature adoption, and campaign attribution. GA4 collects pseudonymous identifiers, device information, and IP-derived location data. Learn more at https://policies.google.com/privacy and opt out with https://tools.google.com/dlpage/gaoptout.
- PostHog. Captures product analytics events, funnels, and feature flags to help us improve usability. Data is stored in the EU and subjected to access controls.
- Meta Pixel and TikTok Pixel. When you consent we share hashed identifiers and usage signals with Meta Platforms and TikTok to run retargeting and measure advertising effectiveness. You can revoke consent at any time through our banner or your Meta and TikTok ad settings.
- Microsoft Clarity. Provides aggregated heatmaps and anonymized session replay to understand ergonomics and detect usability issues.
- Sentry. Records crash traces and performance metrics so we can troubleshoot errors affecting your experience. Sentry receives stack traces, browser metadata, and limited contextual information when a fault occurs.
You can block or delete cookies in your browser, enable global privacy controls, or use built-in Do Not Track signals. If you disable essential cookies some features (such as authentication or shopping cart persistence) may not work correctly.
5. Third-Party Service Providers and Data Sharing
We do not sell personal information. We share data only with vendors who help us operate Greens Club or when legally required.
- Supabase. Hosts our databases, authentication, real-time features, storage buckets for swing videos, and serverless functions. Supabase processes account credentials, membership metadata, content uploads, and waitlist entries on servers located in the United States and the European Union.
- Stripe. Processes payments, manages subscriptions, and stores PCI-DSS compliant payment credentials. Stripe acts as an independent data controller for card data; we only receive the information necessary to reconcile transactions.
- Vercel. Provides the cloud infrastructure that serves the web application and APIs. Standard web server logs may include IP addresses and user-agent strings for security and debugging.
- xAI (Grok API). When you start an AI coaching chat we send the relevant prompts, your messages, and (if available) onboarding profile highlights to xAI's Grok model to generate responses. We limit the data to what is needed to produce coaching output.
- Analytics and marketing partners. As described above, when you consent we share pseudonymous usage data with Google Analytics 4, PostHog, Microsoft Clarity, Meta Pixel, TikTok Pixel, and Sentry to measure usage, diagnose issues, and run lawful marketing campaigns.
- Email and notification services. If we send transactional or marketing emails, or browser push notifications, we share the minimum contact and subscription preferences required to deliver those communications.
- Professional advisors and legal authorities. We may disclose information if required by law, court order, to protect our rights, investigate fraud, or respond to regulatory inquiries.
6. Push Notifications, Service Workers, and Offline Use
Greens Club registers a service worker to enable offline fallbacks, background sync, and push notifications. The service worker precaches static assets and the offline page but intentionally bypasses sensitive routes such as /api, /auth, /checkout, /account, and /stripe. We do not store payment data or private documents in the cache.
Push notifications are optional. Your browser will ask for permission before we send alerts about swing analyses, order status, or new offers. You can disable notifications in your browser or operating system settings at any time; doing so will remove the push token from our system the next time we attempt delivery.
Service worker caches may persist on your device until you clear application data or uninstall the app. Clearing your browser storage or reinstalling the Android app will remove cached assets.
7. Data Retention
We retain personal information only for as long as necessary to deliver the Services, comply with legal obligations, resolve disputes, and enforce our agreements.
- Account data. Stored while your membership remains active. If you request deletion we will remove Supabase authentication records, onboarding data, and content within 30 days unless we must keep them for legal reasons.
- Coaching content and uploads. Retained until you delete the asset in-app or request removal so you can revisit past analyses. Backups may persist for up to 90 days.
- Analytics and logs. Aggregated analytics are kept for up to 26 months. Server logs and Sentry traces are retained for no longer than 12 months, unless needed to investigate security incidents.
- Payment records. Stripe maintains transaction records for at least seven years to satisfy tax and accounting requirements. We keep matching invoice metadata for the same period.
- Support communications. Stored for up to 18 months after resolution to help us monitor quality and recurring issues.
8. International Data Transfers
Greens Club AI operates globally, but many of our primary processors (Supabase, Stripe, Vercel, and analytics partners) store data in the United States. If you access the Services from outside the United States, your information may be transferred to, stored in, or processed in a jurisdiction with different privacy laws.
When we transfer personal data internationally we rely on lawful mechanisms such as Standard Contractual Clauses, intra-group agreements, or other safeguards recognized by applicable law. We also assess our vendors' security and privacy practices before onboarding them.
9. Your Choices and Rights
Depending on where you live, you may have rights to access, correct, delete, restrict, or object to the processing of your personal data. You can exercise many of these rights directly in the app settings or by contacting us.
- Access and portability. Review or export the data associated with your account by contacting us at info@Mullybox.com. We will provide a copy in a commonly used format.
- Corrections. Update profile details, onboarding responses, and preferences in the app. Contact us if you need help updating other information.
- Deletion. You can request account deletion through info@Mullybox.com. We will delete or anonymize personal data unless we must keep it for legal or legitimate business purposes.
- Marketing and analytics preferences. Adjust your cookie and pixel settings via the consent banner, unsubscribe from email links, or change ad settings in Meta and TikTok. Disabling marketing cookies does not affect essential service communications.
- Push notifications. Withdraw your push consent through your browser or device settings. We will stop sending notifications and delete associated push tokens.
- Objections and complaints. If you believe we have not handled your data properly you may contact your local supervisory authority. We would appreciate the chance to answer your concerns first.
10. Security
We implement administrative, technical, and physical safeguards to protect personal information, including HTTPS encryption, access controls, role-based permissions in Supabase, audit logs, and secure key management. No system is perfectly secure; please notify us immediately if you suspect unauthorized access to your account.
11. Children's Privacy
Greens Club AI is designed for golfers aged 13 and older. We do not knowingly collect personal information from children under 13 (or the minimum age required in your jurisdiction). If you believe a child has provided us information, contact us and we will delete it promptly.
12. Changes to This Policy
We may update this Privacy Policy to reflect changes in technology, law, or our business. When we make material updates we will post the new policy at greensclub.ai/privacy, update the effective date, and, when appropriate, notify you through the app or email. Your continued use of the Services after an update signifies your acceptance.
13. Contact Us
If you have questions about this Privacy Policy or how we handle your information, please contact us at info@Mullybox.com.
Greens Club: AI Golf Coach
greensclub.ai