Privacy Policy

Last updated: June 21, 2026

Auction Analyzer is a product of MDI Fantasy LLC (“we,” “us,” or “our”), a Maryland limited liability company. We operate the website auctionanalyzer.com and related services (collectively, the “Service”). This Privacy Policy explains how we collect, use, and protect your information. By using the Service, you agree to the collection and use of information in accordance with this policy.

1. Information We Collect

1.1 Information you provide

  • Account information: Email address, name, and password (or authentication via Google OAuth).
  • Fantasy platform credentials: ESPN session cookies (SWID, espn_s2) or Yahoo OAuth tokens used to access your fantasy league data. Sleeper uses a public API and requires only your username. Platform credentials are stored encrypted at rest and are never returned in API responses.
  • League data: Auction draft results, league settings, team and manager names, and related statistics imported from ESPN, Yahoo, and Sleeper.
  • Content you create: Custom player rankings you upload, strategies, target and avoid tags, position notes, and valuation inputs you save in your workspace.

1.2 Information we collect automatically

  • Device and browser information:Your browser’s user-agent string (browser type, operating system, and device type) is logged when you log in, along with a timestamp, to help us understand how the Service is accessed and to support account security.
  • Basic analytics: Anonymized, aggregate usage data collected via Vercel Analytics (e.g., page views, device type). No personal information or individual browsing behavior is tracked.

1.3 Cookies and similar technologies

We use minimal cookies, primarily for authentication and to maintain your session, and we cache data locally in your browser to improve performance. These are essential for the Service to function. You can disable cookies in your browser settings, but this may affect your ability to use the Service.

1.4 Information we do NOT collect

We do NOT collect or track:

  • IP addresses for storage (IP addresses are processed in memory for rate-limiting purposes, and may be processed by our error- monitoring provider for diagnostics, but are not retained by us).
  • Detailed individual browsing behavior or usage analytics beyond aggregate page views.
  • Tracking cookies for advertising purposes.
  • Location data.

2. How We Use Your Information

We use your information solely to:

  • Provide and maintain the Service.
  • Import your league data and produce league-specific valuations and analytics.
  • Authenticate your account (including via Google OAuth).
  • Access your fantasy league data from ESPN, Yahoo, and Sleeper.
  • Process subscription payments through Stripe.
  • Send transactional emails (account verification, password reset).
  • Notify you of important Service updates or policy changes.
  • Improve and develop new features for the Service.

We do NOT and will NEVER:

  • Sell your personal information to third parties.
  • Use your data for advertising purposes.
  • Share your data for marketing purposes.

3. Data Sharing and Third Parties

Auction Analyzer does not have shared league pages — each user’s workspace is private. We share your information only with the following third parties necessary to operate the Service:

3.1 Fantasy platforms

  • ESPN and Yahoo: To retrieve your fantasy league data via their APIs using the credentials you provide.
  • Sleeper: To retrieve your fantasy league data via its public API (username only, no credentials).

3.2 Service providers

  • Railway: Cloud hosting (United States) for our database and backend services.
  • Vercel: Hosting (United States) for our website and frontend.
  • Vercel Analytics: Basic website analytics (device type and aggregate page views only, no personal tracking).
  • Sentry: Error-monitoring service that captures application errors and exceptions to help us diagnose and fix issues. Sentry may collect technical information such as stack traces, browser type, and IP addresses solely for error-reporting purposes.
  • Stripe: Payment processing (United States) for subscription billing. Stripe receives your payment information directly — we do not store credit-card numbers.
  • Brevo: Email service provider for transactional emails.

These providers are bound by data-protection obligations and may use your information only to provide services to us.

3.3 Data sources

We incorporate player rankings and projections from FantasyPros and player-identity and bye-week data from nflverse. These are inbound data sources — we do not send your personal information to them. See our Data Sources page for details.

3.4 Legal requirements

We may disclose your information if required by law or in response to valid legal requests (subpoenas, court orders, etc.).

4. Data Storage, Retention & Security

4.1 Location

Your data is stored on servers in the United States.

4.2 Retention

  • Active accounts: We retain your data while your account is active.
  • Deleted accounts: When you delete your account, your personal data is permanently removed from our database. Data may persist briefly in automated backups before being rotated out.

4.3 Security

We implement reasonable security measures to protect your information, including encrypted connections (HTTPS/SSL), encryption of platform credentials at rest, and industry-standard authentication and access controls. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.

5. Your Rights and Choices

You have the right to:

  • Access: View the league data and content associated with your account within the Service.
  • Data portability: Request a copy of your data by contacting us.
  • Delete: Permanently delete your account and all associated data at any time.
  • Non-discrimination: You will not face discriminatory treatment for exercising any of these rights.

5.1 Authorized agents

You may authorize another person or entity to submit requests on your behalf where permitted by law. We may require verification of the agent’s authority.

To exercise these rights, contact us at support@auctionanalyzer.com or use the account-management features in the Service.

6. International Data Transfers

We operate primarily in the United States. If you access the Service from outside the U.S., your information may be transferred to, stored, and processed in the U.S., which may have data-protection laws different from those of your jurisdiction. Where required by law, we rely on Standard Contractual Clauses or other approved mechanisms to safeguard international transfers.

7. Age Restrictions

The Service is intended for individuals 13 years of age or older. We do not knowingly collect personal information from children under 13. If you are under 18, you must have parent or guardian consent to use the Service.

If you believe a child under 13 has provided us information in violation of this policy, please contact us at support@auctionanalyzer.com and we will take appropriate steps to delete such information.

8. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by sending an email to the address associated with your account and updating the “Last updated” date at the top of this policy. Your continued use of the Service after changes take effect constitutes acceptance of the updated policy.

9. California Privacy Rights

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information is collected.
  • Right to delete personal information.
  • Right to opt out of the sale of personal information (note: we do NOT sell personal information).
  • Right to non-discrimination for exercising your rights.

To exercise these rights, contact us at support@auctionanalyzer.com.

10. Contact Us

If you have questions about this Privacy Policy or our data practices, contact us at:

MDI Fantasy LLC

d/b/a Auction Analyzer

Email: support@auctionanalyzer.com