Privacy Policy
Effective from: May 26, 2026
1. Data Controller
GRO Sport Kft. is the data controller responsible for personal data collected through this platform.
| Company name: | GRO Sport Kft. |
| Registered address: | H-1201 Budapest, Kossuth L. u. 18. Fsz/1., Hungary |
| Company registration number: | 01-09-403258 |
| Tax number: | 32025480-2-43 |
| E-mail: | contact@golfrange.online |
This document complies with the EU General Data Protection Regulation (GDPR) and applicable Hungarian data protection law.
2. Data Processing Principles
The service provider processes personal data in accordance with the EU General Data Protection Regulation (GDPR).
Data is used only to the extent necessary for the operation of the service.
The purposes of data processing are: operation of the service, communication with users, and statistical analysis.
Users have the right to access their data and may request its deletion or correction.
3. Personal Data We Collect
When you register and use GolfRange Online, we collect the following personal data:
- Account data: name, nickname, email address, date of birth, gender, country, city
- Profile data: profile picture (optional), skill level (WHS), handedness, measurement preference
- Training data: practice plans, recorded sessions, performance results
- Payment data: transaction ID, payment status, subscription status, billing information (full card details are processed by Stripe — we do not store card numbers)
- Technical data: IP address, device data, browser type, and session data collected automatically
- Activity data: user activity on the platform
4. Legal Basis for Processing
We process your personal data on the following legal bases (GDPR Art. 6):
- Performance of a contract — to provide the service you signed up for
- Legitimate interests — to improve the platform, prevent fraud, and ensure security
- Legal obligation — where required by applicable law
- Consent — where you have given explicit consent (e.g. marketing communications and non-essential cookies)
5. Purpose of Data Processing
- Operation of the service and user account management
- User identification and authentication
- Subscription and payment management
- Customer support
- Sending transactional emails (e.g. email verification, password reset)
- Statistical analysis and service improvement
- Marketing communication (with consent)
- Compliance with legal obligations
6. Third-Party Service Providers
We share your data with trusted third parties only where necessary:
- Stripe — payment processing. Stripe may act as a data processor, independent controller, or joint controller depending on the specific processing operation. Details: stripe.com/privacy, stripe.com/legal/dpa
- Amazon Web Services (AWS) EMEA SARL — cloud hosting, file storage, and infrastructure (EU region). AWS acts as a data processor on our instructions. AWS provides a GDPR-compatible Data Processing Addendum as part of its service terms. Details: aws.amazon.com/agreement
- Brevo (Sendinblue) — transactional email delivery
- Sentry — error monitoring (anonymised technical data)
All providers are bound by data processing agreements and appropriate safeguards.
7. Marketing and Remarketing
The platform may use marketing and remarketing technologies, such as Google Analytics, Google Ads, Meta Pixel, TikTok Pixel, or LinkedIn Insight Tag. These systems enable measurement of advertising effectiveness and personalisation of ads.
Marketing and remarketing tools are activated only with the user's prior, voluntary, and informed consent.
8. Cookies
We use the following cookies and third-party resources:
- Essential cookies: used to keep you logged in and protect against cross-site request forgery (CSRF). These are strictly necessary for the service to function.
- Statistical cookies: used to analyse how the platform is used, in order to improve it. Activated only with your consent.
- Marketing cookies: used for personalised advertising and remarketing. Activated only with your prior, voluntary, and informed consent.
- Stripe (checkout page only): Stripe loads scripts from
js.stripe.comand may set cookies for fraud prevention. These are necessary to process payments securely. - Google Fonts: we load fonts from
fonts.googleapis.com. This causes your browser to send your IP address to Google's servers. No cookies are set by Google Fonts.
The cookie consent banner appears on first visit, before any non-essential cookies are activated. You can accept all cookies, reject non-essential cookies, or configure your preferences individually.
9. International Data Transfers
When using marketing and analytics systems, data may be transferred to servers outside the European Union. All such transfers take place with appropriate data protection safeguards in place.
AWS provides a GDPR-compatible Data Processing Addendum that forms part of its service terms and applies automatically to AWS customers using its services to process personal data. Further details: AWS DPA documentation.
Stripe may apply appropriate international data transfer mechanisms, including EU Standard Contractual Clauses. Details: stripe.com/legal/dta.
10. Data Retention
We retain your personal data for as long as your account is active. If you delete your account, your personal data will be removed within 30 days, except where retention is required by law (e.g. financial records for 8 years under Hungarian accounting law).
11. Your Rights (GDPR)
As a data subject in the EU/EEA, you have the following rights:
- Right of access — request a copy of the data we hold about you
- Right to rectification — request correction of inaccurate data
- Right to erasure — request deletion of your data ("right to be forgotten")
- Right to restriction — request that we limit how we process your data
- Right to data portability — receive your data in a machine-readable format
- Right to object — object to processing based on legitimate interests
- Right to withdraw consent — where processing is based on consent
To exercise any of these rights, contact us at contact@golfrange.online. We will respond within 30 days.
12. Supervisory Authority
You have the right to lodge a complaint with the Hungarian National Authority for Data Protection and Freedom of Information (NAIH):
- Website: naih.hu
- Address: H-1055 Budapest, Falk Miksa utca 9-11., Hungary
- Phone: +36 (1) 391-1400
13. Complaints and Contact
Users may submit a complaint through the service provider's customer service. For any privacy-related questions or requests:
contact@golfrange.online
14. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or via a notice on the platform. The effective date at the top of this page indicates when it was last updated.
Effective from: May 26, 2026 — valid until revoked or amended.
