YOUR INFORMATION
Privacy and security
Your club uses BallChute to check membership, run booking releases and arrange tee times. This page explains the information involved and how to ask for help.
Updated 28 September 2026.
Who is responsible?
Your golf club normally controls its membership and booking information. BallChute processes that information to provide the service on the club's instructions. BallChute separately manages its own customer accounts, billing, support and service security.
BallChute is operated by Maraboustork Limited. Its public registered-office and company-registration details are being finalised.
Privacy and security contact: admin@ballchute.co.uk. For membership records or bookings, contact your club office first; BallChute can help route your request.
Pilot enquiries
If you request a pilot, we store your name, email address, club, message and our follow-up notes so that we can respond and arrange a pilot. Submitting the form does not subscribe you to marketing or start a payment. Access is restricted to platform administration. We may send an internal notification that an enquiry is waiting; this notification does not contain your enquiry details.
What information is used?
- Name, member identifiers, contact email and membership eligibility supplied by you or your club, including its connected membership system.
- Your waiting-room entries, proposed playing groups, bookings, verification results, session records and relevant administrative activity.
- Club administrator account, subscription and support details. Card payments are handled through Stripe when billing is enabled; BallChute does not store full payment-card numbers.
- Connection and diagnostic information needed to operate the service. Hosting and security providers may process IP addresses and browser information.
Members can find eligible playing partners by name or member number. Search results show names and internal selection identifiers, not contact emails or membership numbers. Group members see the names on their booking. Authorised club staff see the information needed to administer bookings and may receive tee sheets.
Why is it used?
Member information is used only to identify and authenticate eligible users and carry out the club's tee-time booking service: allocating turns, preventing duplicate bookings, recovering entries, and providing the tee-sheet administrator with the details needed to book, or making bookings through a supported and enabled back-office integration. Necessary security and support are limited to those purposes. Joining is deliberate; the server records and randomises opening-cohort order and applies the club's rules. Ask the club to review a disputed outcome.
Your club must identify and explain its lawful basis for membership and booking processing in its own privacy notice. BallChute's final operator-specific lawful-basis statement is still being completed.
Member information is not sold or used for advertising, unrelated profiling or AI training. The club data-processing terms document these limits.
Using BallChute through Intelligent Golf
Where your club enables the connection, you access BallChute from your club's Intelligent Golf member page. BallChute uses the member details supplied through that page and the club's membership records to recognise you and provide the booking service. You do not need to give BallChute your Intelligent Golf password.
Your club controls the connection and the booking releases it makes available. BallChute uses connected membership and tee-time information for the club's booking service. BallChute is provided independently by Maraboustork Limited.
Booking security checks
To protect fair access, BallChute uses human-verification checks and, where set up, passkeys. Short-lived security records link booking actions to pseudonymised network and browser identifiers within your club. These records expire after one hour. A security cookie also lasts one hour. Shared networks alone do not cause a block. Additional checks or club review may be required; contact your club if you need an accessible alternative. Passkey public keys remain with your member account until reset or account removal; biometric data stays with your authenticator.
How information is protected
Access to member information is restricted by club and account permissions. Member accounts cannot perform administrator operations. BallChute passwords are stored as hashes, and saved integration credentials are encrypted. Sign-in sessions expire, and signing out revokes the active session. Personal booking responses are marked not to be cached.
If you have a privacy or security concern, contact us using the address on this page.
Suppliers and transfers
BallChute uses Render for application and database hosting. Depending on the features your club uses, service providers may also include Resend (or a configured email provider) for service email, Stripe for payments and Cloudflare Turnstile for human verification. Clubs using Intelligent Golf exchange membership and tee-time information with their club system.
The BallChute application and database are hosted in Frankfurt, Germany. Contact us for information about the suppliers involved in your service, their processing locations and applicable international-transfer arrangements.
How long information is kept
Member sessions expire after up to 14 days, embedded sessions after one hour and platform administrator sessions after eight hours. Expired authentication records are checked for removal hourly while the service is running. Logout revokes the active session.
For integrated clubs, the club system is the primary member record. BallChute refreshes a temporary database cache normally every five minutes and expires it after one hour without a successful refresh. Obsolete entries and passwordless member profiles are removed unless needed for a live entry or retained booking; stale contact emails are removed. Unsuccessful proposals and verification history are discarded when the release closes. Confirmed bookings, necessary booking identities, tee sheets, queued delivery copies and related audit records expire at the end of the playing date in the club timezone. Later bookings are retained until their own playing date. Expiry is enforced before affected records are returned and through background cleanup, including after a restart or restore. Other raw audit activity lasts up to one hour unless tied to a retained release.
Club administrator and standalone password accounts have a separate account lifecycle. Minimal identifiers and access restrictions may remain to prevent disabled identities being reactivated by cache cleanup. Business billing, support and enquiry retention still needs finalisation. Club exports, delivered email and the club system have their own retention arrangements. Deleting the live copy cannot remove any separately retained provider copy immediately.
Your rights and how to make a request
You can ask about access, correction, erasure, restriction, objection and, where applicable, portability. These rights depend on the circumstances; some information may need to be retained for a justified purpose. Contact your club or the privacy address above. Tell us which club and request you mean, but do not send passwords or identity documents in an initial message.
The responsible organisation will need to verify your identity proportionately and normally respond within one month, subject to applicable exceptions. We work with your club to respond to requests and protect other members' information. An erasure request is assessed with regard to the relevant records and responsibilities.
You can also raise a data-protection concern with the Information Commissioner's Office.
Cookies and browser storage
BallChute uses essential session cookies for sign-in and security. Embedded member sessions use an in-memory token instead of a third-party login cookie. The browser also remembers the last club address in local storage so the home-page sign-in link returns you to that club; clearing site data removes this preference. Optional analytics, when enabled, is limited to public marketing pages. Accepting analytics allows us to send your IP address, browser information, public page path and referring site origin to Writesonic to understand discovery traffic. Page query strings and member, booking and administration pages are excluded. Your choice is stored in this browser; use Analytics choices on a public page to withdraw consent for future visits. Requests claiming to be search or AI crawlers may be counted separately without browser storage; these claims are not verified identities. Analytics is disabled until its privacy configuration is approved. Human verification may use Cloudflare Turnstile when required for a release. The host club website has its own cookie arrangements. Any future non-essential tracking needs its own assessment and, where required, consent.