Whosin

Privacy Policy

Last updated: September 2026

This policy explains what Quantech collects and how we use it when you use Whosin.

Data we collect

  • Account data: your email address and a securely hashed password.
  • Billing data: card payments are processed by a licensed payment provider on our behalf. We receive a transaction reference and a saved-card token for renewals; we never see or store your full card number. Invoices are generated in our accounting system and include the name and email you give at checkout.
  • Group data: to run registrations we store your WhatsApp group’s ID, the display names/numbers of players who register, match lists, schedules and settings.
  • Technical data: basic logs and a session cookie needed to keep you signed in.
  • Affiliate data: if you join the affiliate programme, your referral code, who signed up through it, what they paid you, and the payout details you give us so that we can pay you.
  • Payment links: if you ask the Service to post a payment link in your group, we store the link, the wording next to it, and which people you ticked as having paid. We never see the payments themselves.
  • Analytics data: which pages are viewed, approximate location by country, and whether you are on a phone or a computer. It is not used to identify you personally.

How we use it

To provide and operate the Service, process payments, send service emails (e.g. password resets, expiry reminders), and keep the Service secure.

Cookies

Essential: one cookie keeps you signed in. It is required for the site to work and cannot be switched off.

Analytics: we use Google Analytics to count visits and see which pages people find useful. It sets cookies in your browser for that purpose. We do not use advertising or profiling cookies, advertising features are switched off, and Google is asked not to store your full IP address. You can opt out at any time by blocking cookies for this site in your browser, or by installing Google's opt-out add-on; the site works normally either way.

Sharing

We share data only with processors needed to run the Service: our payment provider (to charge your card), our invoicing/accounting system (to issue your tax invoice), our email provider (to send service emails), our hosting provider, and Google Analytics (traffic measurement). We do not sell your data and we do not use it for advertising.

Data security

All traffic between your browser and Whosin is encrypted with TLS (HTTPS). Passwords are stored only as salted one-way hashes, never in plain text. Card payments are entered on the payment provider's PCI-DSS-certified page; card numbers never reach our servers, and we hold only a payment reference. Access to our servers is by key-based SSH only, and the database is backed up daily. If we ever learn of a breach affecting your data, we will notify you by email without undue delay.

Where your data is kept

Our servers are hosted in the European Union. Account and group data is stored there; payment and invoicing data is held by the payment and invoicing providers named above under their own privacy policies.

Retention

We keep data while your account/group is active. You can delete your account from the Account page, which removes your login and disassociates your groups.

Your rights

You may request access to, correction of, or deletion of your personal data by emailing support@whosin.chat.

Contact

Quantech · support@whosin.chat