FranchiseHQ / Trust

Privacy notice

FranchiseHQ uses only the account and league data needed to operate private connected-franchise communities, imports, competition tools, trades, and Discord features.

Effective September 18, 2026 · Release 7.7.1

Data we handle

  • Discord identity: your Discord user ID, username, display name, avatar reference, and the servers you are allowed to connect during authorization.
  • League membership: assigned league, role, team, access state, and commissioner-reviewed ownership history.
  • Madden league data: commissioner-supplied exports and derived teams, players, schedules, game results, statistics, standings, contracts, draft picks, and source status. If Free Agent data is blocked or missing, FranchiseHQ records it as unknown—not zero.
  • League activity: trades, reviews, commissioner settings, rules, confidence picks, audit events, import state, and delivery outcomes needed to provide the service.
  • Security and operations: hashed session tokens, request IDs, sanitized route and timing data, rate-limit state, and recovery evidence. FranchiseHQ does not intentionally log raw passwords, cookies, authorization headers, Discord bot credentials, permanent export credentials, request bodies, or raw Madden exports.
Unrelated Discord chat is not imported. FranchiseHQ stores its own trade notes, workflow messages, command receipts, and message-delivery references. It does not collect general server conversations.

How data is used

Data is used to authenticate members, enforce league roles and team authority, publish league pages, process commissioner imports, calculate source-backed results, run league competitions and trades, deliver requested Discord messages, prevent abuse, diagnose failures, and recover the correct tenant state.

FranchiseHQ does not sell personal data. It does not use blocked or missing source data to invent a value.

When data is shared

League information is visible according to the feature and role involved. Public league pages may show published football data. Private trade negotiations, unfinished confidence picks, account/session data, commissioner operations, and internal recovery evidence remain role-restricted.

Data is processed through service providers needed to operate FranchiseHQ, currently including Cloudflare for hosting and storage, Discord for sign-in and bot delivery, and commissioner-authorized Madden Companion export transport. Those providers handle data under their own terms and privacy notices. FranchiseHQ is not affiliated with or endorsed by Electronic Arts, the NFL, or Discord.

Your choices

You can stop using FranchiseHQ, sign out to end the current browser session, change Discord direct-message settings, or ask your commissioner to correct a team assignment or remove your league access. A commissioner can remove league membership without deleting the global identity needed for audit and security integrity.

For an access, correction, or deletion request, contact your league commissioner first and identify the league and Discord account involved. Some competitive, security, audit, backup, and legal records may need to be retained; the retention notice explains the current behavior.

Security and questions

FranchiseHQ isolates each league by tenant, applies role checks on private actions, stores session credentials as hashes, rate-limits sensitive requests, retains immutable audit evidence, and verifies the exact database target before migration or recovery work. No internet service can promise absolute security.

Report a suspected privacy or security issue privately to a league commissioner with the affected league, time, and surface. Do not post export URLs, cookies, tokens, raw exports, or private trade content. See Service & incidents for the reporting process.