LiveFixtureMatchday intelligence
PRIVACY POLICY

The minimum data needed to move a signal safely.

This policy explains what LiveFixture collects across checkout, channel activation, delivery, support, and the public website, including who receives it and how long it is kept.

Version
2026-08-21
Effective
21 August 2026
Primary jurisdiction
Kenya
Privacy contact
[email protected]
PRIVACY AT A GLANCE

We do not sell personal data.

  • Checkout: we use your email, order reference, transaction state, and recorded policy acceptances.
  • Payments: Paystack handles payment credentials. LiveFixture does not store your full card number or card security code.
  • Telegram: we use the minimum operator, channel, permission, and delivery identifiers required to provide the feed.
  • Control: you may ask to access, correct, object to, or delete qualifying personal data.
01

Who controls your data

The contracting LiveFixture supplier identified in the order review and receipt is the data controller for information collected to sell, activate, deliver, secure, and support the service. Before live checkout opens, its legal name, registration details, physical address, telephone, and data-controller contact will be displayed.

Privacy requests may be sent to [email protected] with the subject “Privacy request”. We may verify your identity before disclosing or changing account-linked data.

02

Personal data we collect

Order and payment data

  • Receipt and activation email.
  • Public order reference, product code, offer version, amount, currency, payment status, and timestamps.
  • Terms, Privacy, Refund, and Delivery policy versions accepted at checkout, plus channel-authority and service-start acknowledgements.
  • Paystack transaction and refund references and limited payment-channel information returned for reconciliation.

LiveFixture does not collect or store your full card number, card security code, or Paystack secret credentials. Payment information entered on hosted checkout is processed by Paystack.

Channel and delivery data

  • Telegram operator identifier, channel identifier, optional channel title, and channel-binding state.
  • Administrator and bot-permission check outcomes, test-delivery outcome, activation timestamps, and delivery audit records.
  • We do not ask for your Telegram password, Telegram phone login code, or personal bot token.

Support and technical data

  • Messages you send to support and any evidence you choose to provide.
  • IP address and limited request, security, error, and device/browser data needed to prevent abuse and operate the site.
  • Your theme choice stored locally in your browser. The public site does not currently use advertising cookies or behavioral advertising trackers.
03

Why we process personal data

Provide the contract
Create the order, verify payment, issue a claim, bind one channel, deliver alerts, and provide support.
Meet legal obligations
Maintain accounting, tax, consumer, payment, dispute, and compliance records where required.
Protect legitimate interests
Prevent fraud and abuse, secure the service, debug failures, reconcile transactions, and maintain evidence.
Act on consent
Use information for an optional purpose when we specifically ask and you may withdraw that consent.

Providing the checkout email and required policy acceptances is voluntary, but we cannot create or support the paid order without them. Providing the required Telegram identifiers and permissions is voluntary, but we cannot activate channel delivery without them.

04

Who receives personal data

We disclose only what is reasonably required for the stated purpose. Our current core service providers are:

PaystackHosted checkout, payment verification, refunds, fraud and dispute handling.Privacy terms ↗
TelegramChannel administration checks, bot permission, test posts, and alert delivery.Privacy policy ↗
RailwayApplication hosting, databases, networking, and operational infrastructure.Privacy policy ↗

We may also disclose data to professional advisers, regulators, courts, payment networks, banks, or law-enforcement authorities when required by law or reasonably necessary to establish, exercise, or defend legal rights. We do not sell or rent personal data.

05

International processing

Some service providers may process data outside Kenya or outside your country. Where personal data is transferred, we use provider agreements, access controls, encryption in transit, data minimization, and other appropriate safeguards required by applicable data-protection law.

Do not use the paid service if the stated provider locations or safeguards do not meet your organization's requirements. Contact us before purchase if you need a data-processing or international-transfer review.

06

Retention schedule

  • Order, payment, consent, refund, and dispute records: up to seven years after the transaction, or longer only where required for an active legal hold or statutory obligation.
  • Raw payment-event payloads: up to 180 days, then deleted or minimized to the transaction evidence needed for audit, unless a dispute, fraud review, or legal hold requires longer retention.
  • Telegram channel bindings and delivery evidence: the service period plus twelve months, unless needed for an unresolved support, security, refund, or legal matter.
  • Support correspondence: up to twenty-four months after the request closes, unless linked to a longer-lived transaction or legal record.
  • Routine application and security logs: up to ninety days, unless isolated for an active incident investigation.

Backups may retain deleted data for a limited recovery cycle before secure overwrite. We may keep aggregated or de-identified information that no longer identifies an individual.

07

Your data-protection rights

Subject to applicable law and any valid exception, you may ask to be informed about processing, access your personal data, object to processing, correct inaccurate or misleading data, or delete qualifying data. You may also withdraw consent where processing depends on consent.

Send the request from the email connected to your order where possible. State the right you want to exercise and the relevant order reference. We will acknowledge the request, verify identity where necessary, and explain the outcome or any lawful reason we cannot complete it.

If you believe your request has not been handled properly, you may contact Kenya's Office of the Data Protection Commissioner ↗ or another competent authority.

08

Security and incident response

LiveFixture uses measures appropriate to the service, including encrypted network transport, server-side payment verification, restricted administrative access, secret separation, input validation, audit records, rate limiting, data minimization, and credential redaction from logs.

No system is completely secure. If a personal-data breach creates a risk that triggers notification duties, we will investigate, contain it, preserve evidence, and notify affected people and regulators as required by applicable law.

09

Children, changes, and contact

The paid operator service is intended for adults and organizations, not children. We do not knowingly collect a child's personal data for checkout or channel activation.

Material policy changes receive a new version and effective date. Each checkout records the version accepted for that order. Questions and requests should be sent through the contact page or to [email protected].