Privacy Policy for Pipe Band Hub
Last Updated: November 14, 2025
Introduction
Pipe Band Hub ("we", "our", or "us") operates the Pipe Band Hub mobile application (the "App"). This page informs you of our policies regarding the collection, use, and disclosure of personal data when you use our App.
Information We Collect
Information You Provide
When you use Pipe Band Hub, we collect the following information that you provide:
- Email Address: Used for authentication and account management
- Profile Information: Full name, bio, instrument selection
- Profile Photo: Optional avatar image
- Band Information: Band names, grades, locations you create or join
- Event Data: Events you create or RSVP to
- Announcements: Content you create as an admin
- Availability Responses: Your responses to availability requests
Automatically Collected Information
- Usage Data: Information about how you use the App (screens visited, features used)
- Device Information: Device type, operating system version, unique device identifiers
How We Use Your Information
We use the collected data for the following purposes:
- To Provide the Service: Enable you to manage your pipe band activities
- To Authenticate: Verify your identity through magic link email authentication
- To Enable Collaboration: Allow band members to share information and coordinate
- To Improve the App: Analyze usage to enhance features and user experience
- To Communicate: Send important updates about the App
Data Storage and Security
- Storage: Your data is stored securely using Supabase (a third-party service)
- Location: Data is hosted on Supabase servers (see their privacy policy at https://supabase.com/privacy)
- Security: We use industry-standard encryption (HTTPS) for data transmission
- Access Control: Role-based permissions ensure only authorized users can access band data
Data Sharing
We do not sell, trade, or rent your personal information to third parties.
We may share your information with:
- Band Members: Information you add to a band is visible to other band members
- Service Providers: Supabase (for backend infrastructure and database)
We will never share your data for marketing purposes.
Your Rights
Access and Export
- View all your data within the App
- Request a copy of your data by contacting support
Modify
- Update your profile information at any time
- Edit or delete content you've created
Delete
- Leave any band you're a member of
- Delete your account entirely through Settings
- Request data deletion by contacting support
Withdraw Consent
- Delete your account to stop using the service
- Your data will be permanently deleted
Children's Privacy
The App is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us.
Third-Party Services
Supabase
We use Supabase for:
- User authentication
- Database storage
- File storage (avatars)
Supabase's privacy policy: https://supabase.com/privacy
Expo
The App is built with Expo. During development and updates, Expo may collect:
- Crash reports
- Performance data
Expo's privacy policy: https://expo.dev/privacy
Data Retention
- Active Accounts: We retain your data as long as your account is active
- Deleted Accounts: All personal data is permanently deleted within 30 days of account deletion
- Band Data: If you're the last member of a band, all band data is deleted when you leave
Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by:
- Updating the "Last Updated" date
- Sending an in-app notification (for material changes)
Cookie Policy
The App does not use cookies. Some third-party services (Supabase, Expo) may use cookies or similar technologies. Please refer to their privacy policies.
International Data Transfers
Your data may be transferred to and stored on servers located outside your country of residence. We ensure appropriate safeguards are in place to protect your data.
Legal Basis for Processing (GDPR)
If you are in the European Economic Area (EEA), we process your data based on:
- Consent: You agree to our privacy policy when creating an account
- Contract: Processing is necessary to provide the service you've requested
- Legitimate Interests: Improving and maintaining the App
Your GDPR Rights (EEA Residents)
If you are in the EEA, you have the following additional rights:
- Right to access your data
- Right to rectification (correct inaccurate data)
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent
To exercise these rights, contact us at the email below.