Privacy Policy
Teevine is a content directory, not an account-based service. We collect as little personal data as possible. This policy explains what we process, why, and the rights you have under the GDPR.
Who we are
Teevine (“we”, “us”) operates this golf & lifestyle directory and is the controller responsible for the personal data described below. For operator and contact details, see our Imprint.
What we collect
Browsing Teevine does not require an account. The data we process is limited to:
- Server & security logs — your IP address, browser type, pages requested, and timestamps, generated automatically by our hosting provider to keep the Site running and secure.
- Essential cookies — a session cookie and a CSRF (anti-forgery) token needed for the Site to function. We do not use advertising or third-party tracking cookies.
- Administrator sign-in data — if you are an authorised editor, we process your Google account email and name when you sign in (see section 04). This applies only to a small whitelist of site administrators, not to ordinary visitors.
Cookies
We use only strictly necessary cookies: a session cookie and a CSRF token. These are required for secure operation and do not track you across other websites. Because they are essential, they are not subject to consent under the GDPR/ePrivacy rules. You can block or delete cookies in your browser, though parts of the Site may then stop working.
Google Sign-In (administrators only)
Our admin area uses Google OAuth for sign-in. When an authorised administrator signs in, Google shares their basic profile information — name and email address — with us so we can verify they are on our editor whitelist. We do not receive your Google password, and we do not access any other Google data. Google’s own handling of this sign-in is governed by the Google Privacy Policy. Public visitors are never asked to log in.
Third-party services that may receive your IP
To deliver the Site, your browser connects to a few infrastructure providers. When it does, those providers necessarily receive your IP address as part of the request:
- Hosting — our application and database are hosted on a managed cloud platform that processes server logs on our behalf.
- Image storage — photography is served from a cloud object-storage / CDN provider.
- Maps — interactive maps load tiles from an open map-tile provider; loading a map transmits your IP to that service.
- Fonts — the Geist typeface is loaded from Google Fonts, which receives your IP when the font files are requested.
These providers act as processors or independent services strictly to deliver content you request. We do not sell or share your personal data for advertising.
Legal basis & purpose
We process the data above on the basis of our legitimate interest (GDPR Art. 6(1)(f)) in operating a secure, functioning website and, for administrator sign-in, to manage access to editorial tools. We process essential cookies on the basis that they are necessary to provide the service you request (Art. 6(1)(b)).
Data retention
Server and security logs are kept only for as long as needed for operational and security purposes and are then deleted or anonymised. Session cookies expire when you close your browser or after a short period of inactivity. Administrator account data is retained only while that person remains an authorised editor.
Your rights under the GDPR
If you are in the EU/EEA, you have the right to access, rectify, erase, restrict, or object to the processing of your personal data, and the right to data portability. You also have the right to lodge a complaint with your local data protection authority. To exercise any of these rights, contact us via the details in our Imprint.
Changes to this policy
We may update this Privacy Policy as the Site evolves. The “last updated” date above always reflects the current version. Material changes will be reflected here.