Privacy Policy
Last updated: August 1, 2026
Manito Game (“Manito”, “we”, “our”) is an app for scoring golf rounds and tracking informal side games with friends. No money moves through the app — it's a scorekeeper and ledger. This page explains what data we collect, why, and how to delete it.
1. Information we collect
From you
- Account info: display name, email address, optional handicap index. Email is required only if you sign in with email magic link or Sign in with Apple; you can use the app as a cookie-based guest with no email.
- Apple Sign-In: if you use it, Apple sends us a stable user identifier and (on first login only) the email associated with your Apple ID and your first name. We do not receive your Apple password.
- Round data: the scores you enter, the names of players you add (real or guests), the side games you choose, the course you play, and the resulting ledger entries.
- Scorecard photos: if you choose Scan scorecard, the photo is sent to OpenAI only to extract player rows, holes, pars, and gross strokes. Manito does not store the photo or a photo URL. We store the structured review draft for up to seven days unless you apply it sooner.
Automatically
- Session cookie: a random token (`putt_session`) used to remember you across visits. Stored on your device, sent on every request.
- Server logs: request URLs, IP addresses, and error traces kept by our hosting provider (Vercel) for normal operations. We do not maintain a separate analytics pipeline.
2. How we use this information
- To let you score rounds and see your history.
- To compute and display the running ledger between you and players you've played with.
- To investigate bugs and security issues from server logs.
- To extract scores from a card only after you give consent.
We do not sell your data, share it with advertisers, or use it to train any machine learning models.
3. Sub-processors
- Vercel — hosts the web app and API; sees all request traffic.
- Neon — managed Postgres database; stores everything in section 1.
- Apple — if you use Sign in with Apple (iOS only), Apple sends us your stable user identifier and, on first sign-in, your email/first name. We do not receive your Apple password.
- OpenAI— processes a scorecard photo only when you use the scan feature. Provider response storage is disabled and Manito deletes the uploaded image immediately after the response. Under OpenAI's standard abuse monitoring controls, request content may be retained in logs for up to 30 days. See OpenAI data controls.
- Ably — carries round-scoped, subscribe-only invalidation messages so players see committed changes quickly. These messages contain revision and mutation identifiers, never names or scores.
4. Data retention
We keep your data as long as your account exists. You can initiate deletion from Profile inside the app. When you delete your account, we remove your user record, your sessions, your authored rounds, and your ledger entries. Round records you participated in but did not create (e.g. a friend invited you) are kept but your identifier is replaced with a generic “deleted user” placeholder so the round history isn't broken for other players.
Unapplied scorecard review drafts expire after seven days. Scorecard image bytes and image URLs are never written to Manito storage.
5. Children and gambling
Manito Game does not process payments and is not a gambling service — it tracks informal scoring between friends. Do not use Manito to facilitate unlawful gambling or wagering.
6. Your rights
You can request access to or correction of your data by emailing us, and you can delete your account from Profile inside the app. Subject to applicable law (including the GDPR for EU residents and the CCPA for California residents), we will respond to access and correction requests within 30 days.
7. Contact
Questions or requests: justin@virtech.mx
8. Changes
If we change this policy materially, we'll update the “Last updated” date and, where required, notify registered users by email.