Privacy policy.
How Yashwant Technologies Inc. collects, uses, shares, and protects personal information when you use the TTConnect Platform.
TTConnect (the “Service”) is operated by Yashwant Technologies Inc. (“we”, “us”, “our”, or the “Company”), a New Jersey corporation. For purposes of the California Consumer Privacy Act (CCPA) and similar United States state privacy laws, Yashwant Technologies Inc. is the “business” with respect to personal information collected through the Service.
This Privacy Policy applies to your access to and use of the TTConnect Service, which includes:
- ttconnect.us — the public marketing website
- app.ttconnect.us — the TTConnect web application
- The TTConnect iOS mobile application (Apple App Store)
- The TTConnect Android mobile application (Google Play Store)
Collectively, these are referred to in this Policy as the “Service” or the “TTConnect Platform”. This Privacy Policy is incorporated by reference into our Terms of Service, and your use of the Service is governed by both documents together, including the limitations of liability set out in the Terms.
- 01Who We Are
- 02Scope of This Policy
- 03Information We Collect
- 04How We Use Your Information
- 05How We Share Your Information
- 06Third-Party Services and Integrations
- 07Data Retention
- 08Data Security
- 09Your Rights and Choices
- 10Children’s Privacy
- 11Limitation of Liability
- 12Changes to This Policy
- 13Contact Us
1. Who We Are
TTConnect is a league management platform for table tennis clubs, league directors, and players. The Service is owned and operated by Yashwant Technologies Inc., a New Jersey corporation organized under the laws of the United States.
TTConnect provides tools for clubs to organize and operate table tennis leagues — including player registration, division management, match scoring, USATT-compliant rating calculation, and league reporting — and provides players with a mobile and web experience to view their leagues, enter scores, and track their ratings.
All obligations under this Privacy Policy, and any related claims arising out of or relating to the processing of personal information through the Service, are the obligations of Yashwant Technologies Inc. as the operating entity. No officer, director, employee, shareholder, contractor, or agent of the Company is personally liable for the Company’s obligations under this Privacy Policy or for any claim arising out of or relating to the Service.
2. Scope of This Policy
This Privacy Policy applies to all personal information processed in connection with your access to and use of:
- The ttconnect.us website (our public marketing and information site);
- The app.ttconnect.us web application;
- The TTConnect mobile application for iOS, available on the Apple App Store; and
- The TTConnect mobile application for Android, available on the Google Play Store.
This Policy does not apply to third-party websites, services, or applications that may be linked to from the Service, even if those services are integrated with TTConnect. Third-party services are governed by their own privacy policies, and we encourage you to review them. A list of the third-party services we currently integrate with is provided in Section 6.
3. Information We Collect
We collect information in three ways: information you (or your league administrator) provide to us; information we collect automatically when you use the Service; and information we receive from third parties (such as USATT, via the JustGo platform, and our payment processor, Stripe).
3.1 Information You or Your League Administrator Provides
Accounts on TTConnect are created by administrators or league directors on behalf of players, or directly by players through self-registration. You may also update some of your own profile information after first login. The categories of information collected include:
- Identity information: First name, last name, country of residence.
- Contact information: Email address. A phone number may be collected by some league directors but is not required by the Service.
- USATT membership information: USATT membership number (where the player has one). Where you do not have a USATT membership number, the Service generates a placeholder internal identifier for use within your league.
- Equipment setup: Each player’s forehand and backhand rubber type (one of: smooth/inverted, short pips, long pips, or anti-spin). We retain a history of equipment changes so league analytics reflect the setup in use at the time of each match. Equipment setup is treated as standard player profile data, not sensitive personal data.
- League and match information: League name and metadata, division assignments, opponents played, match results (game-level wins and losses), defaults, and rating history within TTConnect.
- Authentication credentials: A password you set for your account. Passwords are not stored by us in readable form; they are managed by Amazon Cognito (see Section 6).
- Optional biometric sign-in (on-device only): If you enable biometric sign-in (Face ID, Touch ID, or fingerprint) on your device, your biometric data is processed entirely on your device by the operating system and is never transmitted to or stored by us. We only store a small encrypted credential on your device (in the iOS Keychain or Android Keystore) that allows you to sign in after a successful biometric check. This credential never leaves your device.
- Communication preferences: Your preferences for which non-essential emails you wish to receive (such as league recap emails, weekly digests, and monthly performance summaries). You can update these preferences at any time within the Service.
- Date of birth (for players under 13 only): When a league director registers a player under 13 years of age, we collect and store the player’s date of birth and a record of the parental or guardian consent attestation made by the registering league director. For players aged 13 or older, the date of birth is used only at the moment of registration to confirm the player meets our minimum age, and is not retained.
- Feedback and support submissions: If you submit feedback or contact support, we collect the content of your message and any optional screenshot or attachment you choose to include.
We may also collect registration information through forms we provide (for example, registration forms shared through club communication channels), which is used solely to set up player accounts and is handled under this policy.
3.2 Payment Information
The Service may allow a Club to collect payments from players (for example, league registration fees or other amounts a Club determines), and may allow the Company to charge Clubs for use of the Service. All such payments are processed by our third-party payment processor, Stripe, using Stripe Connect. We use Stripe so that we are not required to handle or store sensitive payment credentials ourselves.
- We do not collect or store full payment card numbers, card security codes (CVV/CVC), bank account numbers, or other sensitive cardholder data. This information is collected directly by Stripe through its own systems and is governed by Stripe’s privacy policy and terms. Stripe is certified to applicable Payment Card Industry Data Security Standard (PCI-DSS) requirements.
- What we do store is limited to non-sensitive payment metadata returned to us by Stripe, which may include: a Stripe transaction or payment identifier, the payment status (such as succeeded, pending, refunded, or failed), the amount and currency, the date and time of the transaction, the last four digits and card brand of the instrument used (where Stripe provides this for display and reconciliation), and the Stripe account or customer identifier associated with the paying or receiving party.
- Where a Club receives payments through the Service, the Club connects its own Stripe account, and we store the Club’s Stripe account identifier so that funds can be routed to that Club. We do not receive or store the Club’s underlying banking credentials.
We use this payment metadata to display payment history and receipts, reconcile transactions, support and troubleshoot payment issues, prevent fraud and abuse, and meet our accounting and legal obligations. See Section 6 for further details on the Stripe integration.
3.3 Information Collected Automatically
When you use the Service, we automatically collect technical information needed to provide and secure it:
- Device and app information: Device type, operating system and version, app version, language, and time zone.
- Log and usage information: IP address, access timestamps, pages or screens viewed, actions taken (such as match scores entered), and error or crash data.
- Push notification token: If you enable push notifications, a unique device token issued by Apple (APNs) or Google (FCM) to allow us to deliver notifications to your device.
3.4 Information from Third Parties
Through our integration with USA Table Tennis (USATT), operated via the JustGo platform, we receive the following membership information: USATT member number and a JustGo member identifier, name, date of birth, gender, state, club affiliation, membership plan and expiration, and tournament and league ratings.
We do not receive email addresses, phone numbers, postal addresses, or family-relationship information from USATT/JustGo. Contact information in TTConnect is provided directly by users.
Date of birth received from USATT is used to verify that the person registering controls the USATT membership number they provide.
The USATT/JustGo integration is operated by Yashwant Technologies Inc., the New Jersey corporation that operates TTConnect.
We also receive payment-related metadata from Stripe as described in Section 3.2. See Section 6 for further details on these integrations.
3.5 Categories of Personal Information Collected
The table below summarizes the categories of personal information we collect:
| Category | Examples | Source |
|---|---|---|
| Identifiers | Name, email, USATT member number | You / your league administrator |
| Contact information | Email, optional phone number | You / your league administrator |
| Identifiers (minors only) | Date of birth, guardian-consent attestation record | Provided by the registering league director |
| Internet activity | App and website usage, IP address, device info | Collected automatically |
| Profile and inferences | League standings, ratings, match results, equipment setup history | Generated by the Service from your activity |
| Communication preferences | Email opt-in flags for non-essential communications | Provided by you in the Service |
| Payment metadata (non-sensitive) | Stripe transaction ID, payment status, amount, currency, card brand and last four digits, Stripe account/customer ID | Stripe (via payment processing) |
| Operational and audit records | Logs of administrative actions, password-reset attempts, email sends | Generated by the Service for security and accountability |
| Third-party data | USATT member number and JustGo member identifier, name, date of birth, gender, state, club affiliation, membership plan and expiration, tournament and league ratings | JustGo (USATT) via API integration |
3.6 Operational and Audit Records We Maintain
To operate the Service securely, support our users, and meet our legal obligations, we maintain internal operational and audit records. These records are accessible only to authorized personnel and are not visible to other players. They include:
- Administrative action logs: A record of significant administrative actions taken on your account by league directors or platform administrators — for example, changes to your role (Player, Director, or Admin), including who made the change and when, with an optional reason for the change.
- Password reset attempt logs: A record of attempts to use the self-service password reset feature, including the email address attempted, the originating IP address, the time of the attempt, and the outcome. We use these records to detect and prevent abuse, and to investigate user-reported access issues. We never log the temporary password itself or any other secret values.
- Email send logs: Where the Service sends transactional or notification emails on your behalf or to you (such as league recap emails or password-reset emails), we record the email address the message was sent to, the time of sending, and the delivery outcome (success or failure). We do not log the email body itself beyond what is required for delivery.
These operational records are retained for periods appropriate to their purpose, after which they are deleted or anonymized.
3.7 Aggregated, Anonymized, and Derived Data
We may derive aggregated, anonymized, statistical, and analytical information from your use of the Service. Such information does not identify you individually. We may use this derived information for any lawful purpose, including operating and improving the Service, developing new features, conducting research, training analytical models, evaluating market trends, and publishing aggregate insights about league activity. Derived information that does not identify any individual is not subject to the rights described in Section 9 and may be retained indefinitely.
4. How We Use Your Information
We use the information we collect for the following purposes:
- To provide the Service: Create and authenticate your account, run leagues, calculate ratings (including via the three-pass USATT algorithm), display standings, and deliver league results and exports.
- To verify USATT membership: Look up your USATT membership status and rating, where applicable, via the JustGo integration.
- To process payments: Facilitate payments through Stripe, display payment history and receipts, reconcile transactions, and support payment-related issues, where the payment features of the Service are used.
- To communicate with you: Send transactional emails (password resets, account-related notifications) and push notifications about league events you have not opted out of.
- To secure the Service: Detect and prevent fraud, abuse, and unauthorized access; investigate and respond to security incidents.
- To improve the Service: Analyze how the Service is used (in aggregate), diagnose bugs, and develop new features.
- To comply with law: Meet our legal, regulatory, accounting, and dispute-resolution obligations.
- For any other purpose disclosed to you at the time of collection or with your consent.
We do not sell your personal information. We do not use your information for cross-context behavioral advertising, and we do not allow third-party advertisers to track you through the Service.
5. How We Share Your Information
We share personal information only in the following limited circumstances:
5.1 With Other Users of Your League
If you are a player in a league, your name, USATT membership number (if any), country, match results, and ratings will be visible to your Club’s administrator, your league director, and to other players who are participants in the same league or division as you, as is necessary for the operation of league play and standings. Information is not made visible to users outside your league or club except where you choose to make it public through Service features.
5.2 With Service Providers
We share information with third-party service providers that process data on our behalf to operate the Service. These providers are bound by contractual obligations to protect your information and may only use it to provide services to us. See Section 6 for the current list.
5.3 With Stripe and Clubs (Payment Processing)
When you make a payment through the Service, the payment information you enter is transmitted directly to Stripe, our payment processor, to complete the transaction. Where you pay a Club, Stripe routes the funds to the Club’s connected Stripe account, and the Club — not the Company — is the recipient of those funds. We share with Stripe the information necessary to initiate and reconcile the transaction, and we share with the relevant Club the non-sensitive payment metadata (such as amount, status, and date) needed to administer the Club’s leagues and registrations. We do not share your full payment card details with the Club, because we never receive or hold them. Stripe’s processing of your information is governed by Stripe’s own privacy policy.
5.4 With Professional Advisors
We may share personal information with our legal counsel, accountants, auditors, insurance brokers, and other professional advisors, in each case where reasonably necessary for the lawful conduct of the Company’s business and subject to obligations of confidentiality.
5.5 With USATT (via JustGo)
When you or your league administrator perform a USATT lookup or refresh for your account, your USATT membership number is sent to JustGo to retrieve membership status and rating data.
5.6 For Legal Reasons
We may disclose personal information if required to do so by law, valid legal process, regulatory request, or to protect the rights, property, or safety of Yashwant Technologies Inc., our users, or the public. This includes situations where we are required to defend ourselves in legal proceedings or to enforce these Terms or the Privacy Policy.
5.7 In Connection with a Business Transfer
If we are involved in a merger, acquisition, financing, reorganization, sale of assets, or similar transaction, personal information may be transferred as part of that transaction. We will provide notice on the Service before personal information becomes subject to a different privacy policy.
6. Third-Party Services and Integrations
We use the following third-party services to operate the Service. Each of these providers has its own privacy practices, which we encourage you to review.
| Service | Purpose | Data Shared |
|---|---|---|
| Amazon Web Services (AWS) | Cloud hosting, database, file storage | All data processed by the Service |
| Amazon Cognito | User authentication and password management | Email, password hash, sign-in events |
| Amazon Simple Email Service (SES) | Transactional email delivery | Email address, message content |
| Expo Push (APNs / FCM) | Mobile push notification delivery | Push token, notification content |
| Google Maps Platform | Location and address lookup (where used by directors for club setup) | Address strings entered by directors |
| Stripe | Payment processing and payout routing (via Stripe Connect) | Payment card and bank details (collected directly by Stripe), name, email, transaction amount, Stripe account/customer identifiers |
| USATT / JustGo | USATT membership lookup and rating retrieval | USATT member number |
We may add, change, or remove third-party providers as the Service evolves. We will update this Policy when we make such changes that materially affect how personal information is processed.
7. Data Retention
We retain personal information for as long as needed to provide the Service and meet the purposes described in this Policy, unless a longer retention period is required by law or is reasonably necessary to establish, exercise, or defend legal claims. Specifically:
- Account information is retained while your account is active and for a reasonable period afterwards to allow for reactivation, dispute resolution, and legal compliance.
- League and match records (including ratings) are retained indefinitely as part of the historical record of league play and as part of the operational record of the Service, unless you request deletion as described in Section 9 and we are able to fulfill that request consistent with the limitations described there.
- Current membership status and current ratings are retrieved from USATT/JustGo on demand and are not warehoused. Historical rating events are retained as part of league and match records. A JustGo member identifier is stored with the player record to support membership lookups.
- Payment metadata received from Stripe is retained for as long as needed to display payment history, reconcile transactions, and meet our accounting, tax, and legal obligations, which may require retention for several years after a transaction.
- Logs, technical records, and operational and audit records are retained for periods we determine appropriate for security, diagnostic, dispute-resolution, and compliance purposes.
- Feedback and support submissions are retained for as long as needed to investigate and respond, and to improve the Service.
- Aggregated, anonymized, and derived data may be retained indefinitely.
8. Data Security
We implement and maintain reasonable and appropriate administrative, technical, and physical safeguards designed to protect personal information against unauthorized access, alteration, disclosure, or destruction. These safeguards may include, where applicable: encryption in transit and at rest, multi-factor authentication for administrative accounts, restricted internal access to production data, on-device encrypted storage of biometric sign-in credentials, use of established cloud security services such as Amazon Cognito for password management, and use of a PCI-DSS-certified payment processor (Stripe) so that sensitive payment credentials are not handled or stored on our systems.
The specific safeguards we use evolve with industry practice and threat landscape, and the foregoing list is illustrative rather than exhaustive or contractual.
You are responsible for safeguarding your password and any credentials used to access the Service, and for promptly notifying us of any unauthorized access. We are not responsible for losses, damages, or unauthorized disclosures arising from your failure to maintain the confidentiality of your credentials, your use of unsecure networks or devices, or unauthorized actions of third parties on your devices or accounts.
No method of transmission over the internet or method of electronic storage is fully secure. While we work to protect your information, we cannot and do not guarantee its absolute security.
9. Your Rights and Choices
Depending on where you live, you may have certain rights regarding your personal information under applicable law (including, in the United States, the California Consumer Privacy Act, the California Privacy Rights Act, and similar state privacy laws). These rights may include:
- Access: You may request access to the personal information we hold about you.
- Correction: You may request that we correct inaccurate or incomplete information.
- Deletion: You may request that we delete your personal information, subject to certain exceptions (for example, where we are required to retain information by law, where it is necessary to defend or assert legal claims, where deletion would affect the integrity of historical league records of other players, or where the request is technically infeasible).
- Portability: You may request a copy of the personal information you provided to us in a portable format.
- Opt-out of certain processing: You may opt out of receiving non-essential communications at any time from within the Service’s settings. This includes individual controls for league recap emails, weekly platform digests, and optional monthly performance summaries. Essential transactional communications (such as password reset emails and account-related notifications) are not opt-out, as they are necessary for operating your account.
We do not sell your personal information, as that term is defined under the CCPA and similar laws. We do not engage in cross-context behavioral advertising.
To exercise any of these rights, please contact us using the details in Section 13. We will respond to your request within the time required by applicable law and may need to verify your identity before fulfilling your request. We reserve the right to decline requests that are manifestly unfounded, excessive, or repetitive, and to charge a reasonable fee, or refuse to act, in such cases, to the extent permitted by law.
10. Children’s Privacy
The Service is intended for users aged 13 and over. League directors may register players under the age of 13 on the Service, but only where a parent or legal guardian has consented to the account being created and operated on the minor’s behalf. We require the registering league director to attest to such consent at the time of registration, and we record this attestation — including the identity of the attesting director and the timestamp of the attestation — for compliance purposes.
The league director who registers a minor is solely responsible for obtaining, documenting, and maintaining evidence of verifiable parental or guardian consent. TTConnect relies on the director’s attestation; we do not separately verify the consent. By registering a minor on the Service, the league director represents and warrants that valid parental or guardian consent has been obtained and will indemnify the Company in accordance with Section 12 of the Terms of Service for any claim arising from a failure to obtain such consent.
For players under 13, we collect and retain only the information necessary to operate the account on their behalf (such as name, country, USATT membership number where applicable, league and match information, and date of birth). We do not collect a separate email address or phone number for a minor; communications regarding the account are directed to the parent or guardian via the league director or via a contact provided by the parent or guardian.
If you are a parent or guardian and you believe a TTConnect account has been created for your child without your knowledge or consent, or if you wish to review, correct, or request deletion of your child’s information, please contact us using the details in Section 13. We will investigate promptly and, where appropriate, delete the account and the associated data. We do not knowingly retain personal information about a child under 13 without verifiable parental or guardian consent.
11. Limitation of Liability
The limitations of liability, disclaimers of warranty, indemnification, dispute resolution, and other provisions set out in the TTConnect Terms of Service apply equally to any claim arising out of or relating to this Privacy Policy or to our processing of personal information through the Service, including any claim under federal, state, or foreign privacy law. In particular, the cap on our total cumulative liability set out in Section 12 of the Terms of Service applies to all claims of every nature, including privacy-related claims.
12. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, the Service, or applicable law. When we make material changes, we will update the “Last Updated” date at the top of this Policy and, where appropriate, provide additional notice (for example, by posting a prominent notice within the Service or sending an email to the address associated with your account).
Your continued use of the Service after the effective date of an updated Policy constitutes your acceptance of the updated terms. If you do not agree to the updated Policy, you must stop using the Service before it takes effect.
Version 1.7 (August 6, 2026): Updated USATT/JustGo data descriptions, verification method, and retention terms.
13. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our handling of your personal information, please contact us:
| Company | Yashwant Technologies Inc. |
| Jurisdiction of Incorporation | New Jersey, United States |
| Service | TTConnect |
| support@ttconnect.us | |
| Website | https://ttconnect.us |
We will respond to your inquiry as soon as reasonably practicable.
Trademark Notice
USATT is a registered trademark of USA Table Tennis. JustGo is a registered trademark of GoMembership / JustGo Ltd. Stripe is a registered trademark of Stripe, Inc. Apple, Face ID, and Touch ID are trademarks of Apple Inc. Google and Android are trademarks of Google LLC. Amazon Web Services is a trademark of Amazon.com, Inc. or its affiliates. All other trademarks, service marks, and trade names referenced in this Policy are the property of their respective owners. The use of these marks does not imply any affiliation with or endorsement by their respective owners, except as expressly described in this Policy.