Privacy Policy
Last updated August 11, 2026
Who we are
ColosseumHQ is operated by The Colosseum Company (“Colosseum”, “we”). It is a client workspace for organizations that have engaged Colosseum to produce gameday presentation content. This policy covers ColosseumHQ at hq.colosseum.co.
What we collect
- Account details. Your name, email address, and profile photo. If you sign in with Google or Microsoft, we receive these from that provider using the basic sign-in scopes (
openid,email,profile). We do not request access to your mail, files, or calendar. - What you submit. Messages, files, notes, requested date changes, task updates, and support requests you create in HQ.
- Activity. A record of actions taken in HQ (for example, signing in, marking a task complete, or reporting an issue) so your production team can see and respond to what is happening on your project.
Why we use it
To authenticate you, to show you the projects belonging to your organization, and to run the production work you have engaged us for. We do not sell your information, and we do not use it for advertising.
Who can see it
Your organization’s data is visible to members of your organization who have been granted HQ access, and to Colosseum staff working on your projects. We use a small set of service providers to operate HQ: Supabase (database and authentication), Vercel (hosting), Slack (internal team notifications), Dropbox and Frame.io (file delivery and review, where your project uses them). We share information with them only as needed to provide the service.
Google user data
If you sign in with Google, we receive only your basic profile information and email address and use them solely to create and identify your HQ account. Colosseum’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. We do not transfer Google user data to third parties except as needed to provide HQ, and never for advertising or to build profiles.
Retention and deletion
We keep your account and project information for as long as your organization works with us and as needed for our records afterward. To request access to, correction of, or deletion of your information, email connor@colosseum.co. Removing your HQ access does not delete the production work created for your organization.
Security
Access is restricted per organization: signing in does not grant access to another organization’s projects. Data is encrypted in transit, and files are served through short-lived signed links rather than public URLs.
Changes and contact
We will update this page if our practices change and revise the date above. Questions go to connor@colosseum.co.