Data Retention and Deletion
Version 2.1 · In effect from · Last updated
Data Retention and Deletion
This policy sets out how long we keep each kind of data and what happens when you ask us to delete it. It supplements the Privacy Policy.
The Platform is operated by Common Room Ventures Private Limited (CIN U32409KA2026PTC222161), Bengaluru, India.
The principle: we keep data for as long as we need it for the purpose it was collected for, and then we delete it. Where we have committed to a period below, that period is what we do.
1. Retention schedule
| Data | Kept for | Why |
|---|---|---|
| Account data (email, display name, linked FPL ID, settings) | While your account is open. Deleted within 30 days of a deletion request | To operate your account |
| League and standings data | While the league is active on the Platform, then archived (below) | To run the league and show season history |
| Published league page versions | Current season plus one, then deleted | So a season can be looked back on, and so nothing persists indefinitely |
| Message logs (type, time, delivery status, content sent) | 12 months | To prove consent, avoid duplicates, respect frequency caps, investigate failures |
| Consent records (what you opted into, when you opted in or out) | While your account is open, and afterwards only where needed to show an opt-out was honoured | To prove we honoured your choice |
| Analytics events (consented only) | 14 months | To compare a season against the one before it |
| Session recordings (consented only, where enabled) | 3 months | To diagnose interface problems |
| Internal season archive | 3 years, then deleted | To compute season-end outcomes and answer historical questions |
| Support and grievance correspondence | 3 years from resolution | To show how a complaint was handled |
| Payment and tax records | As long as Indian law requires | Legal obligation |
| Server and security logs | 90 days | Security, abuse investigation, debugging |
Where two rows could apply, the longer one governs, and only for the specific data the longer row covers.
2. Asking us to delete your data
Email [email protected]. Say what you want deleted. You do not need to give a reason.
We action deletion within 30 days and confirm when it is done.
You can ask for:
Your account and everything attached to it, or
Only your appearance on public league pages — anonymised rather than deleted, so the standings stay correct and nothing on the page identifies you — keeping your account, or
Something specific you would rather we did not hold
You do not need an account to ask. If your team appears on a league page and you have never signed up, see Public League Pages and Your Data.
2.1 What deletion covers
Deletion covers our live systems and the internal archive. If you ask us to delete your data, we do not quietly keep a copy in the archive.
2.2 What deletion cannot reach
Stated plainly rather than discovered later:
Previously published league page versions. Pages are published in versions, and an older version stays retrievable by anyone holding its direct address until it is deleted at the end of the following season. Anonymising works going forward; it does not pull you out of a version already published.
Copies other people hold. Screenshots, forwarded images, saved pages, and previews cached by messaging platforms are outside our control.
Fantasy Premier League. Your entry and league membership live there, not with us, and that is where the data originates. Removing it at source is a matter for Fantasy Premier League and for leaving the league.
Records we must keep. Payment records, tax records and grievance records are kept for the periods above even after a deletion request. We will tell you if this applies to yours.
3. Closing your account
Closing your account starts deletion of your account data on the schedule above.
Closing your account does not by itself change your team's row on a public league page, because that data comes from Fantasy Premier League rather than from your account. Ask for both and we will do both — the account data is deleted, and the row on the page is anonymised so nothing on it identifies you.
4. Inactive accounts
We do not currently delete accounts for inactivity. If we introduce that, we will give notice by email before anything is deleted, and a clear way to keep the account.
5. Backups
Deleted data may persist in encrypted backups for a short period after deletion from live systems. Backups are not used to restore deleted personal data, and they age out on their own cycle.
6. Changes
We may update this policy. Where we extend a retention period we will say so before it takes effect. The current version and effective date are at the foot of this page.
7. Contact
| Purpose | Contact |
|---|---|
| Deletion requests, questions about retention | [email protected] |
| Formal grievance | Shashwat Nandan, Grievance Officer, [email protected] |
Grievances are acknowledged within 24 hours and resolved within 15 days.