Skip to content
ThisOver

Privacy Policy

Effective September 27, 2026

This policy explains what ThisOver ("we", "us") collects, how we use it, and the choices you have. By using the app or website you agree to this policy.

What changed in this version

Two features added since the last version handle photos, and both are worth reading before you use them.

  • Match photos. A scorer can take photos during a match with the device camera. They are stored with the match and visible only to players registered in that league and its organisers. See Match photos.
  • Your photo on live streams. If you switch on Show my photo on live streams, a copy of your profile photo is published so a streamed match can show it on your player card. It is off unless you turn it on. See Live streams.

The earlier additions still apply: a push notification token for anyone who turns notifications on, and the contact details Find a Team exchanges between two captains who have agreed a game.

Information we collect

  • Account details you provide when you sign up: name, email address, and date of birth.
  • Profile details you choose to add: nickname, jersey number, gender, phone number, city, playing role, batting/bowling style, profile photo, and an optional emergency contact.
  • Your profile photo, if you add one, is shown to other signed-in ThisOver users wherever your name appears with a picture — rosters, leaderboards, scorecards and your profile — in any league, not just yours. Visitors who are not signed in see your initials. Remove the photo in Edit profile and it disappears everywhere.
  • Content you create: leagues, teams, player rosters, fixtures, scorecards, availability answers, news posts, uploaded team logos/documents, registrations, and match photos taken while scoring.
  • Your live-stream photo choice: whether your profile photo may appear on a streamed match's player cards.
  • YouTube connection, if you go live from the app: a Google access credential kept on our servers, and your channel's ID, name and picture. See YouTube.
  • Find a Team details, if you use that feature: your team name, your name as the point of contact, the country and state or region you play in, an optional city and venue, the posts and requests you write, and the phone number and/or email address you give for contact exchange. See Find a Team.
  • A push notification token for each device you enable notifications on, together with that device's platform and time-zone offset, so a notification reaches the right device and is not delivered in the middle of your night. See Push notifications.
  • Reports and blocks: if you report content or a user we record who reported what, the reason and any detail you add, and a copy of the reported content as it was at that moment. If you block someone we record that too, privately to you.
  • Diagnostic & usage data: crash reports and basic usage/analytics collected via Google Firebase (Crashlytics and Analytics) to keep the app stable and improve it. This may include device and app-version information and approximate, coarse location derived by those components. We do not use this to track you across other companies' apps, and the app does not request the advertising identifier (IDFA).

The app does not ask for or record your precise device location. Nothing in ThisOver uses GPS. The camera is used only when a scorer taps the camera button to take a match photo, or while you stream a match with Go live on YouTube (with the microphone); nothing is captured in the background.

How we use it

  • To provide the service: create and manage leagues, display rosters, fixtures, standings, and scorecards.
  • To authenticate you, secure your account, and let league admins approve registrations.
  • To show teams that are free to play in the area you selected, and to pass contact details between two captains who have both agreed to a game.
  • To send the notification categories you have switched on.
  • To keep people safe: reviewing reports, removing content, and disabling accounts that break our community standards.
  • To diagnose crashes and improve performance and features.
  • To respond to your support requests.

Community

Community is a feed inside the app. What you post there — text, up to four photos, comments, and likes — is visible to every signed-in ThisOver user together with your name and profile photo, and is not visible to signed-out visitors. You can edit the text of your own posts and delete your posts and comments at any time (an edited post shows “edited”); deleting a post also deletes its photos, comments and likes. Anyone can report a post or comment, and can block its author so it no longer appears to them (the author is not told). Reports are reviewed by our moderators, who may hide or remove content and disable accounts that break our community standards. Reports keep a copy of the reported text so they can be reviewed even if it is deleted. If someone comments on your post we send you a push notification containing their name and the start of their comment; you can turn this off under Notifications.

What is public

ThisOver has a public "Browse" mode. Information you add to a league — player names, team names, league names, fixtures, standings, news, and uploaded logos — is publicly viewable, including by people who are not signed in. Player email addresses and dates of birth are kept private and are not shown publicly. A league's registration list (its Players tab) is not public either: it is shown only to signed-in people who are part of that league — registered or rostered players and its admins — and the list of who holds admin access to a league is shown only to its admins. Please do not add other people's personal information without their consent.

Unless a league admin switches it off, a league's table, results and scorecards can also appear on thisover.com and in search engines. Scorecards show player names, as printed scorecards do; contact details and dates of birth are never published. A league admin can take their league off the website under League → Public website. This does not make the league private inside the app.

A match's live score — team names, player names and their figures — is public while it is being scored, so it can be followed in the app and shown on a stream's score overlay.

A Find a Team post is public in the same way: it shows the team name, the contact person's name, the area, the date or pattern on offer, the ball type, and anything you typed as a venue or note. It carries no way to contact you — no phone number, no email address, no handle — and we check those free-text fields before a post goes up so that a number cannot be published there instead.

Find a Team

Find a Team lets one captain advertise that their side is free and another ask them for a game. It is for signed-in players aged 18 and over; we check that against the date of birth on your account, and an account with no date of birth is refused rather than assumed to be an adult.

Location is typed, not sensed. You pick a country and a state or region from a list, and that pair is what posts are matched on. City is optional free text for other people to read. We do not use your device's location for this, or for anything else.

Contact details. You supply a phone number and/or an email address when you set the feature up, and you tick a separate box agreeing that we may share them on an agreed game. They are stored privately and are not readable by other users, or shown anywhere in the app, until then. When a request is accepted, both sides' details are exchanged in the same step — the other captain gets yours and you get theirs, and it goes no further than that one person. Each exchange is a snapshot taken at the moment of acceptance.

Withdrawing. You can withdraw your agreement at any time from your Find a Team setup. That clears the stored details and stops any future exchange. Details already sent to another captain cannot be recalled, in the same way an email cannot be unsent.

Blocking and reporting. You can block another team, which stops their posts reaching you and stops them requesting a game; the person you blocked is not told. You can report any post, request or profile from inside the app. Reports go to a moderation queue that an administrator works through, and we aim to review each one within 24 hours. Reports are readable only by our moderators, and are kept as a record of the decision.

Match photos

A scorer can capture up to 10 photos an innings and 20 a match from the scoring screen. Each is compressed on the device, uploaded to our storage, and captioned with the score at the time. Match photos are not public: only players registered in that league, and its organisers, can see them, and someone signed out or outside the league sees a members-only message instead. Whoever took a photo, or a league admin, can delete it, which removes it for everyone; anyone who can see it can report it. Please only photograph people who are happy to be in the league's photos.

Live streams

A league can stream a match with the ThisOver score overlay, which shows the live score and a player card when a batter comes in or a bowler starts. A card shows a player's initials unless that player has switched on Show my photo on live streams, which we ask about at sign-up and which can be changed any time under Edit profile → Account. It is off unless you turn it on.

When it is on, we publish a copy of your profile photo, keyed by your player ID, so the overlay can load it; anyone watching a stream can see it. Only a photo you uploaded to your own account is ever published. Switching the setting off, removing your photo, or deleting your account removes the published copy. We cannot recall a stream that has already been recorded or broadcast.

Linked YouTube streams. A scorer can link a match to its YouTube live by pasting the video's link. We store the video's ID with the match, who linked it and when. It is public in the same way as the live score: anyone who can see the match can watch the video through YouTube's own embedded player, even if it is Unlisted on YouTube. Playback is provided by YouTube and is subject to Google's Privacy Policy. A scorer can remove the link at any time, and it is deleted when the match is deleted.

YouTube (going live from the app)

If you choose Go live on YouTube, ThisOver uses YouTube API Services. By using this feature you agree to the YouTube Terms of Service, and Google's use of your data is covered by the Google Privacy Policy.

Connecting your channel. You sign in to Google in your browser and allow ThisOver to manage YouTube live broadcasts on your channel. We never see your Google password. We store, on our servers only: a Google access credential (a refresh token) that lets us act for your channel, your channel's ID, name and picture. The credential is never sent to the app or to anyone else; your channel's name and picture are visible only to you in the app.

What we do with it. Only what you start from the Go live screen: create a live broadcast for a match with the title and privacy you choose, bind it to a stream, and end it. We read your channel's name to show which channel is connected. We do not upload, change or delete your other videos, read your subscribers, or use your YouTube data for advertising.

Camera and microphone. While the Go live screen is streaming, your phone's camera picture and sound are sent directly to YouTube, with the live score drawn on the video. We do not record or store them. Nothing is sent until you tap Go live.

Removing access. Tap Disconnect on the Go live screen: we ask Google to revoke our access and delete what we stored. You can also revoke it in your Google Account under Third-party apps with account access. Deleting your ThisOver account does the same. The videos you streamed stay on your YouTube channel, which you control.

Push notifications

Notifications are optional and are set per category under More → Notifications: match results, fixtures and events, and teams near you. "Teams near you" is off unless you switch it on. You can also mute individual leagues.

If you enable any of them, we store a push token for that device so the notification can be delivered, along with the device platform and its time-zone offset — the offset is what lets us hold a non-urgent notification back rather than wake you at 3am. A token identifies a device, not a person's activity — we do not use it to track what you do in the app. Tokens are not readable by other users or by league admins.

You can turn every category off, which stops delivery. Signing out removes that device's token, and tokens that stop working are discarded.

Sharing & third parties

We use Google Firebase (Authentication, Cloud Firestore, Cloud Storage, Cloud Messaging, Crashlytics, and Analytics) to run the app. Your data is processed by Google as our service provider — see Google's Privacy Policy. Organiser plans bought on our website are paid through Stripe, and plans bought in the iPhone app are paid through Apple's App Store; either way we do not receive or store your card details. For App Store plans we keep Apple's transaction ID and renewal dates so your plan can be unlocked on your account. Aside from the contact exchange you agree to in Find a Team, we do not share your personal information with other users, and we do not sell your personal information.

Children

ThisOver is not directed to children under 13, and we do not knowingly collect personal information from them. Find a Team is restricted to users aged 18 and over. Because cricket leagues may include youth players, the league organiser is responsible for obtaining any necessary parental consent before adding a minor's information. If you believe a child's data is in the app, contact us and we will remove it.

Retention & deletion

You can delete your account at any time from the app: Edit profile → Account → Delete account. This removes your personal details and disables your sign-in. You can also email us to request deletion. We may retain limited information where required by law, and we keep reports and moderation decisions for as long as we need them to keep the app safe. Historical match data may remain in leagues without your personal details. Match photos stay with the match until the person who took them or a league admin deletes them; your published live-stream photo is removed when your account is deleted.

Find a Team posts expire 30 days after they are made, or once the date they advertise has passed, and you can close or delete one before that. Contact details already exchanged with another captain remain with them.

Security

We use industry-standard measures (including encrypted transport and access-controlled storage) to protect your information. No method of transmission or storage is 100% secure.

Your choices & rights

You can review and edit your profile in the app, including your date of birth, and delete your account as described above. You can switch your live-stream photo off, turn any notification category off, mute a league, and withdraw your Find a Team contact consent at any time. Depending on where you live, you may have rights to access, correct, or delete your personal data — contact us to exercise them.

Changes

We may update this policy; we will post the new effective date here.

Contact

Questions or requests: support@thisover.com.