Privacy Policy
Last updated: 25 June 2026
This Privacy Policy describes how PredictMarket ("we", "us", or "our") collects, stores, uses, and shares information about you when you use the Platform. We are committed to protecting your privacy and handling your data responsibly.
1. Who We Are
PredictMarket is a South African football prediction trading platform. Our platform is hosted using infrastructure from Supabase (database), Vercel (hosting), and Clerk (authentication). For privacy-related questions, contact us at the address in Section 16.
2. Data We Collect
We collect data in the following categories:
Identity Data
- Full name or display name
- Email address
- Profile picture (if set via Clerk)
- Account creation date
Financial Data
- Payment references (not card numbers)
- Token purchase history
- Payout requests and bank account details
- Wallet balance and ledger history
Activity Data
- Positions bought and sold
- Challenge entries and predictions
- AI session history
- Leaderboard positions
Technical Data
- IP address
- Device and browser type
- Session activity logs
- Error and performance logs
3. Account Data
When you create an account, authentication is handled by Clerk. Clerk collects and stores your email address and authentication credentials. We store a local user profile that includes your display name, email (synced from Clerk), account status, and admin role if applicable.
We use account data to provide Platform access, associate trades and predictions with your identity, send transactional emails, and enforce account-level restrictions where necessary.
We do not sell your account data. We do not use it for unsolicited marketing.
4. Payment Data
All payment processing is handled by Paystack. We do not store your credit or debit card details. We receive and store only:
- Payment reference numbers generated by Paystack.
- Payment status (Pending, Successful, Failed, Cancelled, Refunded).
- Token package purchased, amount in ZAR, and timestamp.
- Webhook event metadata from Paystack to confirm payment.
Payment data is retained for financial auditing, dispute resolution, and regulatory compliance. Bank account details submitted for payout are stored securely and used only to process your payout requests.
5. Wallet and Token Activity
We maintain a full ledger of all token movements associated with your account, including purchases, position trades, AI session charges, refunds, challenge prizes, and payout conversions.
This ledger is a permanent audit trail and cannot be deleted. It is used to resolve disputes, detect abuse, and maintain the integrity of the platform economy.
6. AI Usage Data
When you use the AI Buy / AI Sell feature, we log the following:
- Your session type (Buy or Sell) and the preferences you select.
- The market data available at the time the session was initiated.
- The AI-generated recommendations returned.
- Whether you acted on the recommendations.
- Tokens charged for the session.
- Whether a refund was issued.
AI session data is used for auditing token charges, improving recommendation quality, detecting misuse, and operational debugging. AI session inputs are processed via OpenAI's API — please refer to their privacy policy for details on how they handle this data.
We do not use your AI session data to train external AI models. We may use aggregated, anonymised session data to improve Platform features.
7. Prediction and Trading History
All positions you buy or sell are recorded permanently, including the fixture, market, outcome selected, price paid, sell price, settlement result, and tokens gained or lost.
Trading history is retained indefinitely for dispute resolution, leaderboard accuracy, settlement auditing, and anti-fraud purposes. You may request a summary by contacting support.
8. Challenge and TLC Participation
Challenge and TCS game entries are stored and associated with your account, including your predictions for each round, entry fees, scores, prize winnings, and participation dates.
This data is used to calculate leaderboards, distribute prizes, and prevent abuse. Challenge history may appear on public leaderboards by your display name.
10. Email Notifications
We send transactional emails via Resend, including payment confirmations, payout updates, refund notifications, and account security notifications.
Transactional emails are mandatory and cannot be unsubscribed from as they relate directly to your account activity. We log all sent emails (recipient, subject, delivery status, timestamp) for audit and troubleshooting.
We do not send promotional or marketing emails without your explicit consent.
11. Third-Party Providers
PredictMarket uses the following third-party services, each operating under their own privacy policies:
Clerk
Authentication and session management
Paystack
Payment processing and payout infrastructure
Resend
Transactional email delivery
Supabase
PostgreSQL database hosting and infrastructure
OpenAI
AI recommendation and tips generation
API-Football
Live football fixture and results data
Vercel
Web hosting and serverless functions
Trigger.dev
Background job and cron scheduling
We share data with these providers only to the extent necessary to operate the Platform. We do not sell your personal data to third parties.
12. Data Retention
- Account data: retained for the lifetime of your account plus 5 years after closure.
- Payment and wallet ledger data: retained for 7 years for financial compliance.
- AI session logs: retained for 2 years.
- Email logs: retained for 2 years.
- Trading history: retained indefinitely for leaderboard and dispute integrity.
- Technical logs: retained for 90 days.
You may request deletion of your account and associated data by contacting support. Note that some data (payment records, ledger history) may be retained beyond account closure for legal compliance reasons.
13. Your Rights
Depending on your jurisdiction, you may have the following rights:
- Right to access: request a copy of the data we hold about you.
- Right to rectification: request correction of inaccurate data.
- Right to erasure: request deletion of your account and personal data (subject to retention obligations).
- Right to restrict processing: request that we limit how we use your data.
- Right to data portability: receive your data in a machine-readable format.
To exercise any of these rights, contact us at the address in Section 16. We will respond within 30 days.
14. Children
The Platform is not directed at children under 18. We do not knowingly collect personal data from anyone under 18. If we become aware that we have collected data from a minor, we will delete it promptly. Contact us immediately if you believe a minor has registered.
15. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you via email or in-platform notice. Continued use after the effective date constitutes acceptance of the changes.
16. Contact
For privacy-related questions, access requests, or data deletion requests:
PredictMarket Privacy Team
Email: privacy@predictmarket.app