BetAtlas Privacy Policy
Effective date: 2026-05-22 Last updated: 2026-05-22
1. About This Policy
This Privacy Policy ("Policy") explains how 4 BETTOR INSIGHT LLC ("BetAtlas," "we," "us," or "our") collects, uses, shares, retains, and protects information about you when you use the BetAtlas mobile application, our backend services, and any related features (collectively, the "Service"). This Policy is incorporated by reference into our Terms of Service. Capitalized terms not defined here have the meanings given in the Terms of Service.
BetAtlas is a sports-betting analytics tracker. We connect to your sportsbook accounts on your behalf using credentials you provide, sync your bet history into a unified dashboard, and surface analytics on your betting performance. We do not place bets, move money, facilitate gambling transactions, or operate gambling infrastructure. We do not sell your personal information.
If you have questions about this Policy or wish to exercise your privacy rights, contact us at privacy@4bettorinsight.com.
2. Eligibility for Our Service
BetAtlas is intended solely for users who are at least the legal minimum age for sports wagering in their jurisdiction (typically 21 in the United States and 18 in most other jurisdictions where sports betting is legal) and who reside in a U.S. jurisdiction where online sports betting and the use of third-party analytics tools in connection with such activity are legally permitted. We do not knowingly collect personal information from individuals who do not meet these eligibility requirements. If you do not satisfy these requirements, do not use the Service. By using the Service, you represent and warrant that you meet all eligibility requirements.
3. Information We Collect
We collect information in three ways: information you provide directly to us, information we collect automatically through your use of the Service, and information we receive from third parties.
3.1 Information You Provide to Us
Account Information
When you register or sign in, we collect:
Email address (required for account creation and communications).
Password — stored only as a one-way Argon2id hash; we never store or have access to your plaintext password.
OAuth identifier — if you sign in via "Sign in with Google" or "Sign in with Apple," we receive a stable, opaque account identifier from the provider and only the email address you consent to share via the OAuth prompt.
Two-factor authentication (2FA) data — if you enable TOTP-based 2FA, we store the shared TOTP secret and a limited number of single-use backup codes, all encrypted at rest.
You may also optionally provide profile information in Account Settings, including a display name, username, and phone number (used only for opt-in features such as SMS account recovery; never shared with advertisers or third parties). All optional profile fields may be left blank, edited, or deleted at any time from Account Settings.
Sportsbook Credentials and Session Data
To sync your bet history, you may connect sportsbook accounts in one of two ways:
Credential connection: You enter your sportsbook username and password directly into the App. We encrypt these credentials at rest using AES-256-GCM. They are decrypted only in-memory at the moment a sync job runs and are transmitted solely to the applicable sportsbook on your behalf. We never log credentials in application or error logs.
Cookie connection: For supported sportsbooks, you log in within an embedded browser inside the App. We capture and encrypt the resulting session cookies with AES-256-GCM. The cookies are decrypted in-memory only when our scraper restores your session and are never shared with any party other than the applicable sportsbook.
We never sell, share, or otherwise transmit your sportsbook credentials or session data to any third party for any purpose. You may revoke our access to any sportsbook at any time by disconnecting that account within the App.
Bet History and Imported Data
We collect your betting activity from each connected sportsbook, including: bet placement timestamp and settlement timestamp; amount wagered, potential payout, and final result; sport, league, event, selection, line, odds, and bet type; bet status (pending, won, lost, push, canceled); and bet structure (single, parlay, prop, future, etc.). If you manually import bets via CSV upload, we capture the same fields plus a copy of the original CSV row for schema-compatibility purposes.
3.2 Information We Collect Through Your Use of the Service
Device Information
We may collect certain technical information about the device you use to access the Service, including device type, operating system version, app version, language and locale settings, and unique device identifiers to the extent necessary for authentication and service delivery. We do not use device identifiers for advertising purposes on the Pro tier.
Device and Advertising Information (Free Tier)
If you use the free tier, our advertising provider (Google AdMob) may collect:
Device advertising identifier (IDFA on iOS, AAID on Android).
IP address (used briefly for ad delivery and fraud detection).
Approximate device type, OS version, and language settings.
On iOS, we request your consent via the App Tracking Transparency (ATT) prompt before allowing AdMob to use your IDFA for personalized advertising. You may decline this prompt or change your choice at any time in iOS Settings → Privacy & Security → Tracking. If you decline, AdMob will continue to serve non-personalized ads.
Pro subscribers see no advertisements and we do not transmit any device advertising identifiers to AdMob.
Log Information and Usage Data
Our backend infrastructure generates standard server log entries including HTTP method, request path, timestamp, HTTP response status code, and error traces for operational diagnostics. These logs are retained for no longer than thirty (30) days and are used solely for system reliability, security monitoring, and debugging. We do not use server log data to build user profiles or for advertising purposes. We do not log your sportsbook credentials at any time.
Usage and Preference Information
We may collect information about how you interact with the Service, including features accessed, dashboard filters applied, report types viewed, and in-app preferences you configure. This information is used solely to deliver and improve the Service and to understand aggregate usage patterns. It is not linked to your betting data for advertising purposes.
Location Information
We do not request or collect precise GPS or real-time location data. IP-based approximate location (city or region level) may be inferred for fraud prevention, legal compliance, and ad delivery (free tier only). You cannot be identified by location alone from the data we collect.
Call and SMS Data
We do not collect call logs or SMS message content. If you provide a phone number and opt in to SMS account recovery, we use that number solely to transmit one-time verification codes. We do not share your phone number with advertisers, data brokers, or other third parties.
Log Files, Cookies, and Anonymous Identifiers
The Service uses short-lived JWT access tokens and rotating refresh tokens to maintain your authenticated session. These are stored securely on your device and are not third-party advertising cookies. We do not use browser-style tracking cookies in the mobile App for advertising or cross-site tracking purposes. Anonymous session identifiers used internally expire when your session ends or upon token rotation and are not associated with your personal identity.
3.3 AI Analytics Chat Data
If you use the AI Analytics feature (Pro subscribers only), we transmit to Anthropic's API to generate a response:
A summary of your last 90 days of betting activity, including aggregate P&L, win rate, and category breakdowns.
Your most recent approximately 50 individual bets (placement timestamp, sportsbook, sport, league, bet type, selection, stake, odds, status, and result).
The text of your AI Analytics chat messages.
Anthropic processes this data under its own Privacy Policy solely to generate the response to your query and does not retain your data for model training without your separate consent. The AI response is displayed to you and stored locally on your device as part of your chat history (capped at approximately your 20 most recent turns). We do not retain a server-side copy of AI chat transcripts.
3.4 Subscription Information
If you subscribe to the Pro tier, we receive from RevenueCat: your subscription tier, a non-payment-instrument subscription identifier, subscription status, and renewal or expiry date. We never receive or store your credit card number, bank account details, or other payment instrument information — that information is held by Apple, Google, or RevenueCat under their respective privacy policies.
3.5 Information We Collect From Other Sources
We may receive limited information from third-party sources integrated into the Service:
OAuth providers (Google, Apple): A stable account identifier and, if consented, an email address, when you sign in via OAuth.
RevenueCat: Subscription status updates and renewal/expiry webhooks.
Sportsbook platforms: Your bet history data, retrieved solely on your behalf using your credentials or session cookies as described in Section 3.1.
We do not purchase personal data from data brokers. We do not receive personal information about you from social media platforms, marketing data vendors, or consumer reporting agencies.
4. How We Use Your Information
We use the information we collect for the following purposes:
Providing the Service: to sync your bet history, render dashboards, generate analytics reports, power the AI Analytics feature, and deliver the core functionality of the App.
Authentication and security: to verify your identity, protect your account, detect and prevent fraud or unauthorized access, and enforce our Terms of Service.
Subscription management: to process subscription upgrades, downgrades, renewals, and cancellations in coordination with Apple, Google, and RevenueCat.
Advertising (free tier only): to serve and measure third-party advertisements via Google AdMob, subject to your ATT consent choice on iOS.
Service improvement and diagnostics: to diagnose bugs, monitor system performance, analyze aggregate (non-identifiable) usage patterns, and improve reliability.
Communications: to send transactional communications about your account (e.g., security alerts, account confirmations, billing notices) and material policy update notices. We do not send unsolicited commercial marketing email without your opt-in consent.
Legal compliance: to comply with applicable federal, state, and local laws, regulations, legal processes, and enforceable government requests.
WE DO NOT USE YOUR BET HISTORY OR SPORTSBOOK ACCOUNT ACTIVITY TO MAKE BETTING DECISIONS ON YOUR BEHALF, SHARE IT WITH OTHER USERS, ADVERTISE GAMBLING PRODUCTS TO THIRD PARTIES, BUILD PROFILES FOR SALE TO DATA BROKERS, OR INFER SENSITIVE CHARACTERISTICS UNRELATED TO SERVICE DELIVERY.
5. Sharing of Information
We share your information only as described below. We do not sell your personal information, and we do not "share" personal information for cross-context behavioral advertising as defined under the CCPA/CPRA.
5.1 Service Providers
We use the following processors to operate the Service, each of which is bound by data processing agreements or equivalent contractual obligations limiting their use of your data to service delivery on our behalf:
Google Cloud Platform — cloud hosting (Cloud Run), relational database (Cloud SQL for PostgreSQL), and managed cache (Redis). Data processed in the us-central1 (Iowa, USA) region.
Anthropic — generates AI Analytics chat responses on a per-message, per-session basis.
Google AdMob — serves third-party advertisements on the free tier only.
RevenueCat — manages subscription lifecycle events and payment platform webhooks for Apple App Store and Google Play.
Google Sign-In and Sign in with Apple — for OAuth-based authentication if you choose those options.
5.2 Through Our Services — Sportsbook Operators
When we sync your bet history, we authenticate to your sportsbook account using your credentials or session cookies solely on your behalf. The sportsbook receives HTTP traffic that is functionally equivalent to you logging in. We do not disclose to the sportsbook that BetAtlas is initiating the request, and we do not share your analytics data or personal profile with any sportsbook operator.
5.3 Analytics and Advertising Services Provided by Others
Google AdMob (free tier only) may use your device advertising identifier and IP address to deliver, measure, and report on advertisements it serves within the App. AdMob's collection and use of data is governed by Google's Privacy Policy. We do not share your bet history, sportsbook credentials, or personal analytics with AdMob or any other advertising platform. On the Pro tier, no advertising SDKs receive any data from your use of the Service.
5.4 Social Sharing Features
The Service does not currently include native social sharing features. If we add such features in the future, we will update this Policy and provide appropriate disclosure and consent mechanisms before any sharing occurs. You will always control what, if anything, is shared.
5.5 Links to Third-Party Websites and Advertisers
The Service may contain links to third-party websites or services. We are not responsible for the privacy practices or content of those third parties. We encourage you to review the privacy policies of any third-party site you visit. Clicking on an advertisement or third-party link may allow that party to collect information about you directly.
5.6 Other Sharing — Legal, Safety, and Business Transfers
We may disclose your information to third parties in the following circumstances:
Legal process: in response to a valid subpoena, court order, search warrant, or other legally compelled disclosure, or to comply with applicable law or a regulatory requirement. Where permitted by law, we will endeavor to provide you with advance notice.
Protection of rights and safety: to protect the rights, property, or safety of 4 Bettor Insight LLC, our users, or the public; to enforce our Terms of Service; or to detect, prevent, or address fraud, security incidents, or technical issues.
Business transfer: in connection with a merger, acquisition, financing, reorganization, bankruptcy, or sale of all or a portion of our assets, provided the successor entity agrees to protect your information in a manner consistent with this Policy.
6. Do Not Track; Your Preferences and Account Information
6.1 Do Not Track
The Service is a native mobile application and does not respond to browser-based "Do Not Track" (DNT) signals. On iOS, we honor your App Tracking Transparency (ATT) consent choice with respect to advertising identifiers. On Android, we honor your selection in Settings → Privacy → Ads regarding personalized advertising. We do not engage in cross-site or cross-app tracking outside of the AdMob advertising context described above.
6.2 Account Information and Your Preferences
You may review and update your account information, notification preferences, and connected sportsbooks at any time from Account Settings within the App. Changes to optional profile fields take effect immediately. You are responsible for keeping your account information accurate and up to date.
6.3 Promotional Communications Opt-Out
If we send you promotional or marketing emails (which require your prior opt-in consent), you may opt out at any time by clicking the "unsubscribe" link in any such email or by contacting us at privacy@4bettorinsight.com. Please note that even after opting out of promotional communications, you will continue to receive transactional and account-related messages (e.g., password reset emails, billing alerts, and material policy changes), which are necessary to operate your account.
7. Legal Basis and Reasons for Collection and Processing
We process your personal information on one or more of the following legal bases, depending on the nature of the processing activity and your jurisdiction:
Contractual necessity: Processing required to create your account, provide the core Service features (bet history sync, dashboard, analytics), manage your subscription, and fulfill our contractual obligations to you under the Terms of Service.
Legitimate interests: Operating, securing, maintaining, and improving the Service; detecting and preventing fraud and abuse; enforcing our Terms of Service; aggregate analytics on Service usage; and communicating transactional notices. We balance these interests against your privacy rights and do not rely on legitimate interests where your interests or rights override them.
Consent: Advertising-related tracking on iOS via the ATT prompt; any other processing for which we expressly request your consent. You may withdraw consent at any time without affecting the lawfulness of prior processing.
Legal obligation: Processing necessary to comply with applicable federal, state, or local law, tax obligations, regulatory requirements, or valid legal process.
8. Your Privacy Rights
8.1 Access Rights; General Rights
Regardless of your location, you may:
Access your data by signing into the App; your dashboard, bet history, and account settings are all visible to you at any time.
Export your full bet history as a CSV at any time from Settings → Export Bet History.
Correct account-level information from Account Settings.
Delete your account from Account Settings → Delete Account. Deletion immediately and permanently removes your account record, all stored bet data, sportsbook connections (including encrypted credentials and session cookies), subscription metadata, and queued sync jobs. This action is irreversible.
8.2 California Privacy Rights — CCPA / CPRA
If you are a California resident, the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA), grants you the following rights:
Right to Know: to request disclosure of the categories and specific pieces of personal information we have collected about you, the categories of sources, our business purpose for collecting it, and the categories of third parties with whom it is shared.
Right to Delete: to request deletion of your personal information, subject to certain exceptions permitted by law.
Right to Correct: to request correction of inaccurate personal information.
Right to Opt Out of Sale or Sharing: We do not sell or share personal information for cross-context behavioral advertising as those terms are defined under the CCPA/CPRA. Accordingly, there is nothing to opt out of with respect to sale or sharing, but you retain this right.
Right to Limit Use of Sensitive Personal Information: to request that we limit use of sensitive personal information (e.g., account credentials) to the purposes specified in the CPRA. We only use such information for the purpose of providing the Service.
Right to Non-Discrimination: We will not discriminate against you for exercising any CCPA/CPRA right.
To submit a verifiable consumer request, contact us at privacy@4bettorinsight.com. We will verify your identity using your registered email address before fulfilling any request. We will respond within 45 days of receipt; where necessary, we may extend this period by an additional 45 days with notice. You may designate an authorized agent to submit requests on your behalf by providing written authorization.
8.3 GDPR — European Union, UK, and Swiss Residents
If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, you have the following rights under the General Data Protection Regulation (GDPR) and, where applicable, the UK GDPR:
Right of access — to obtain confirmation of whether we process your personal data and to receive a copy of it.
Right to rectification — to correct inaccurate or incomplete personal data.
Right to erasure ("right to be forgotten") — to request deletion of your personal data where there is no overriding legitimate ground for continued processing.
Right to restriction of processing — to request that we restrict our processing of your data in certain circumstances.
Right to data portability — to receive your personal data in a structured, commonly used, machine-readable format, where processing is based on consent or contract and is carried out by automated means.
Right to object — to object to processing based on legitimate interests at any time; we will cease such processing unless we demonstrate compelling legitimate grounds.
Right to lodge a complaint — with your national or local data protection supervisory authority if you believe we have processed your personal data unlawfully.
To exercise any of these rights, contact us at privacy@4bettorinsight.com. We will respond within the timeframes required by applicable law. Please note that we will need to verify your identity before processing your request.
8.4 Nevada Consumer Privacy Rights
Nevada Revised Statutes Chapter 603A grants Nevada residents the right to opt out of the sale of certain covered information to third parties. We do not sell covered information as defined under Nevada law. However, if you are a Nevada resident and wish to submit an opt-out request, you may do so by contacting us at privacy@4bettorinsight.com with the subject line "Nevada Privacy Opt-Out." We will respond within 60 days.
8.5 Colorado, Connecticut, Virginia, and Utah Privacy Rights
Residents of Colorado (CPA), Connecticut (CTDPA), Virginia (VCDPA), and Utah (UCPA) have the following rights with respect to their personal data, subject to applicable thresholds and exceptions under each respective law:
Right to access and confirm whether we are processing your personal data.
Right to correct inaccurate personal data.
Right to delete personal data you have provided to us or that we have collected about you.
Right to data portability — to obtain a copy of your personal data in a portable format (Colorado, Connecticut, Virginia).
Right to opt out of the processing of personal data for targeted advertising, sale of personal data, or profiling in furtherance of decisions that produce legal or similarly significant effects. We do not sell personal data or conduct profiling for such purposes.
To exercise any of these rights, contact us at privacy@4bettorinsight.com. We will respond within 45 days of receipt. If we decline to act on your request, we will inform you of the reason and, where required by law, provide a means to appeal our decision to us. If your appeal is denied, you may have the right to contact your state Attorney General.
8.6 Canadian Privacy Rights
If you are a resident of Canada, your personal information is governed by the Personal Information Protection and Electronic Documents Act (PIPEDA) and, where applicable, provincial privacy legislation. You have the right to access, correct, and request deletion of your personal information held by us. You may also withdraw consent to our processing of your personal information at any time, subject to legal or contractual restrictions and reasonable notice, provided that withdrawal may affect our ability to provide the Service to you. To exercise these rights, contact us at privacy@4bettorinsight.com. If you are dissatisfied with our handling of your personal information, you may file a complaint with the Office of the Privacy Commissioner of Canada.
9. International Privacy Practices; International Data Transfers
Our servers are located in the United States (Google Cloud Platform, us-central1 region, Iowa, USA). The Service is designed for U.S. users. If you access the Service from outside the United States, your information will be transferred to and processed in the United States, where data protection laws may differ from those in your jurisdiction.
For transfers of personal data from the European Economic Area, the United Kingdom, or Switzerland to the United States, we rely on the Standard Contractual Clauses (SCCs) adopted by the European Commission as a lawful transfer mechanism, and where applicable, the UK International Data Transfer Addendum to those clauses. By using the Service from outside the United States, you acknowledge and consent to the transfer of your information to the United States as described in this Policy.
10. Our Information Retention Policy
We retain your personal information only for as long as necessary to fulfill the purposes for which it was collected, to provide the Service, to comply with our legal obligations, resolve disputes, and enforce our agreements. Our specific retention practices are as follows:
Account information, bet history, sportsbook connections, and subscription data: Retained for the duration of your active account. Permanently and irreversibly deleted upon account deletion.
Server logs: Retained for up to thirty (30) days, then automatically deleted.
AI Analytics chat transcripts: Stored locally on your device only (capped at approximately 20 turns). We do not retain server-side copies of AI chat transcripts.
Legally required retention: Where applicable law requires us to retain certain information for a specified period (e.g., financial records or tax documentation related to subscription transactions), we will retain only the minimum information required for only as long as required.
11. Security
We implement administrative, technical, and physical safeguards designed to protect your personal information against unauthorized access, alteration, disclosure, or destruction, including:
TLS encryption in transit for all client-server communication.
AES-256-GCM encryption at rest for sportsbook credentials and session cookies.
Argon2id password hashing — passwords are never stored in plaintext.
Short-lived JWT access tokens with rotating refresh tokens to limit session exposure.
Optional biometric authentication (Face ID, Touch ID, or fingerprint) on supported devices.
No system is completely secure, and we cannot guarantee that unauthorized third parties will never be able to defeat our security measures. You are responsible for maintaining the confidentiality of your account credentials. If you become aware of any unauthorized access to your account, please notify us immediately at privacy@4bettorinsight.com. In the event of a security incident affecting your personal information, we will notify you in accordance with our obligations under applicable breach notification laws.
12. Children
BetAtlas is not directed to, and is not intended for use by, anyone under the legal sports-betting age in their jurisdiction (typically 21 in the United States, 18 elsewhere where sports betting is legal) or under 13 years of age under any circumstances. We do not knowingly collect, use, or disclose personal information from anyone under these age thresholds. If we become aware that we have inadvertently collected personal information from a person below the applicable minimum age, we will take steps to delete such information as soon as reasonably practicable. If you believe we have collected information from a minor, please contact us immediately at privacy@4bettorinsight.com.
13. Changes to This Privacy Policy
We may update this Policy from time to time to reflect changes in our practices, applicable law, or the Service. If we make material changes, we will notify you by email to your registered address or via prominent in-app notice at least thirty (30) days before the changes take effect. The "Effective date" at the top of this Policy reflects the date the current version became effective. Non-material clarifications or corrections may be made without prior notice and will be indicated by the updated "Last updated" date. Your continued use of the Service after the effective date of any revised Policy constitutes your acceptance of the changes. If you disagree with a revised Policy, you must cease using the Service and may delete your account before the effective date.
14. Contact Us
For privacy questions, requests, complaints, or to exercise any of your rights under this Policy:
4 BETTOR INSIGHT LLC
10716 Wynspire Rd, Highlands Ranch, CO 80130
Appendix: Third-Party Privacy Policies
The following links provide access to the privacy policies of our key service providers. Their policies govern their own collection and use of your data independent of our practices:
Google (Cloud Platform, AdMob, Sign-In): https://policies.google.com/privacy
Anthropic (AI Analytics): https://www.anthropic.com/legal/privacy
Apple (Sign in with Apple): https://www.apple.com/legal/privacy/
RevenueCat (subscription management): https://www.revenuecat.com/privacy