← Back to Magisterial

Privacy Policy

Last updated: March 16, 2026

1. Introduction

This Privacy Policy describes how Magisterial (“we,” “us,” or “our”) collects, uses, and protects your personal information when you use our AI-powered college soccer research and scouting platform (“the Service”).

2. Information We Collect

Account information. When you sign in with Google, we receive and store your name, email address, and Google account identifier. We do not collect or store your Google password.

Google API tokens. If you choose to export scouting reports to Google Docs, we store an OAuth access token and refresh token scoped to Google Drive file creation. These tokens only allow us to create files in your Google Drive on your behalf—we cannot read or modify your existing files.

Payment information. Subscription and credit pack payments are processed by Stripe. We store your Stripe customer ID and subscription ID for billing management. We do not directly store your credit card number or full payment details—that information is held by Stripe under their Privacy Policy.

Usage data. We record which features you use and how many AI queries you make in order to enforce usage limits tied to your subscription tier. This includes the number of chat messages, scout sessions, and search queries.

Content you create. We store chat conversations, scouting reports, saved player library entries, and transfer portal uploads that you create through the Service. This content is associated with your account so you can access it across sessions.

3. How We Use Your Information

We use your information to:

  • Authenticate you and maintain your session.
  • Provide, operate, and improve the Service, including generating AI-powered responses and scouting reports.
  • Process payments and manage your subscription or credit balance.
  • Export documents to Google Docs when you request it.
  • Send transactional emails (such as account invitations) via our email provider, Resend.
  • Enforce usage limits and prevent abuse.

4. Third-Party Services

We share limited data with the following third-party services to operate Magisterial:

  • Google — Authentication (OAuth) and Google Docs export. Google receives your authentication requests and document export content.
  • Stripe — Payment processing. Stripe receives your payment details and billing information.
  • Anthropic (Claude) — AI model provider. Your chat messages and scouting queries are sent to Anthropic's API to generate responses.
  • OpenAI — AI model provider. Certain queries may be processed by OpenAI's API.
  • Resend — Transactional email delivery for account invitations.

Each third-party service processes data in accordance with their own privacy policies. We encourage you to review them.

5. AI Model Usage and Your Data

When you interact with the AI features of Magisterial, the content of your messages is sent to third-party AI providers (Anthropic and/or OpenAI) to generate responses. We use these providers via their commercial APIs, which are typically configured not to use your data for model training. We do not control the data practices of these providers and recommend reviewing their privacy policies for details.

6. Cookies and Local Storage

We do not use analytics cookies or tracking pixels. The Service stores an authentication token in your browser's local storage to keep you signed in. A theme preference may also be stored in local storage. No third-party advertising or analytics cookies are used.

7. Data Retention

We retain your account information and content for as long as your account is active. Chat history, scouting reports, library entries, and other content you create remain stored unless you choose to delete them. If you wish to have your account and associated data deleted, please contact us.

8. Data Security

We take reasonable measures to protect your information, including encrypting data in transit (HTTPS), using secure token-based authentication (JWT), and storing sensitive credentials securely. However, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.

9. Children's Privacy

The Service is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected such information, we will take steps to delete it.

10. Your Rights

Depending on your jurisdiction, you may have the right to access, correct, or delete the personal information we hold about you. You may also have the right to object to or restrict certain processing of your data. To exercise any of these rights, please contact us using the information below.

11. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated through the Service or via email. Your continued use of the Service after changes constitutes acceptance of the updated policy.

12. Contact

If you have questions about this Privacy Policy or your personal data, please contact us at [email protected].