GDPR Information
Last updated: December 30, 2025
Your Data Protection Rights
The General Data Protection Regulation (GDPR) provides residents of the European Union with specific rights regarding their personal data. At LeetTracker, we are committed to respecting and facilitating these rights. This page provides detailed information about your GDPR rights and how to exercise them.
Your Rights Under GDPR
Right of Access (Article 15)
You have the right to obtain confirmation as to whether your personal data is being processed, and if so, to access that data along with information about:
- The purposes of the processing
- The categories of personal data concerned
- The recipients or categories of recipients
- The envisaged storage period
- The source of the data (if not collected from you)
How to exercise: You can export your data through the app settings or contact us to request a copy.
Right to Rectification (Article 16)
You have the right to have inaccurate personal data corrected without undue delay. You also have the right to have incomplete personal data completed.
How to exercise: You can update your profile information directly in the app settings, or contact us if you need assistance.
Right to Erasure (Article 17)
Also known as the "right to be forgotten," you have the right to request deletion of your personal data when:
- The data is no longer necessary for the purposes it was collected
- You withdraw consent (where consent was the legal basis)
- You object to the processing and there are no overriding legitimate grounds
- The data has been unlawfully processed
- The data must be erased for compliance with a legal obligation
How to exercise: You can delete your account through the LeetTracker mobile app by navigating to Settings → Account → Delete Account. This will permanently remove all your personal data including:
- Your account credentials and profile information
- All check-in history and streaks
- All unlocked achievements
- All associated authentication tokens
This action is immediate and irreversible.
Right to Restriction of Processing (Article 18)
You have the right to request restriction of processing when:
- You contest the accuracy of the data (during verification)
- The processing is unlawful but you prefer restriction over erasure
- We no longer need the data but you need it for legal claims
- You have objected to processing (pending verification)
How to exercise: Contact us through our website to request restriction of processing.
Right to Data Portability (Article 20)
You have the right to receive your personal data in a structured, commonly used, and machine-readable format (such as JSON or CSV). You also have the right to transmit this data to another controller.
How to exercise: Use the data export feature in the app settings, or contact us to request your data in a portable format.
Right to Object (Article 21)
You have the right to object to processing of your personal data based on legitimate interests. Upon objection, we will cease processing unless we can demonstrate compelling legitimate grounds that override your interests, rights, and freedoms.
How to exercise: Contact us through our website to object to specific processing activities.
Right to Withdraw Consent (Article 7)
Where we process your data based on consent, you have the right to withdraw that consent at any time. Withdrawal of consent does not affect the lawfulness of processing that occurred before the withdrawal.
How to exercise: You can manage consent preferences in the app settings or contact us to withdraw consent.
What Data We Process
LeetTracker processes the following categories of personal data:
| Category | Data | Purpose | Legal Basis |
|---|---|---|---|
| Account Data | Email, display name | Authentication, account management | Contract |
| Check-in Data | Timestamps, streaks | Core service functionality | Contract |
| Achievement Data | Unlocked achievements | Core service functionality | Contract |
| Technical Data | Device info, crash logs | Bug fixing, service improvement | Legitimate Interest |
Data Retention
We retain your personal data only for as long as necessary:
- Active accounts: Data is retained while your account is active
- Inactive accounts: Automatically deleted after 12 months of inactivity
- Deleted accounts: Data is permanently removed within 30 days
- Crash reports: Anonymized technical data retained for up to 90 days
Data Security Measures
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
- Encryption of personal data in transit (TLS/SSL)
- Encryption of personal data at rest
- Secure authentication mechanisms
- Regular security assessments and updates
- Access controls and least-privilege principles
- Incident response procedures
International Data Transfers
When your data is transferred outside the European Economic Area (EEA), we ensure appropriate safeguards are in place:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Adequacy decisions where the destination country provides adequate protection
- Binding Corporate Rules for intra-group transfers where applicable
How to Exercise Your Rights
You can exercise your GDPR rights by:
- Using the privacy controls in the app settings (access, export, delete)
- Contacting us through the contact form on our website
When you submit a request, we will:
- Verify your identity to protect your data
- Respond within 30 days (or notify you of any extension)
- Provide the service free of charge (unless requests are manifestly unfounded or excessive)
Right to Lodge a Complaint
If you believe that we have not complied with your data protection rights, you have the right to lodge a complaint with a supervisory authority. You can contact:
- The data protection authority in your EU member state of residence
- The data protection authority where we are established
- The data protection authority where the alleged infringement occurred
A list of EU data protection authorities can be found at: European Data Protection Board
Related Documents
For more information about how we handle your data, please also review:
- Privacy Policy - Comprehensive information about data collection and use
- Terms of Service - Terms governing your use of the Service
Contact Us
If you have any questions about your GDPR rights or how we process your data, please contact us through the contact form on our website at leettracker.leetlabs.app.