Privacy policy
FUTZIP is a price and squad tool for EA Sports FC Ultimate Team, published as a website and as a mobile app. There is no advertising, and nothing you do is tracked across other apps or sites. An account is optional — everything except syncing your lists and publishing a squad works without one. This page describes everything it stores and everything it sends, including the one line the app sends by itself.
Last updated 6 September 2026.
What we do not collect
- No name, date of birth, address, phone number or payment details — an account is an email address and a password, and nothing else is ever asked for.
- No third-party analytics, advertising or crash-reporting SDK is bundled in the app or the site.
- No advertising identifier, and no cross-app or cross-site tracking.
- No EA account credentials. FUTZIP can open EA’s own sign-in inside the app so it can read your club; your EA password is typed on EA’s page and goes to EA, never to FUTZIP. What is read stays on your device, and FUTZIP never acts on your club.
- Nothing is sold, rented, or shared with data brokers.
What stays on your device
Your watchlist, price alerts, saved squads, favourites, filter history, language and the rest of your settings are stored locally — in the app’s own storage on your phone, or in your browser’s local storage on the website. We cannot read any of it, and deleting the app or clearing your browser data erases it for good.
Reading your club opens EA’s official web app inside the FUTZIP app, and only when you start it — no screen asks EA for anything on its own. You sign in on EA’s own page; FUTZIP never sees, stores or sends your password. Once you are signed in, the app reads the cards in your own club — and nothing else from your account — and it writes nothing to your EA account. What comes back replaces My club on your phone, including any cards you had typed in yourself, and it is kept on your phone like the rest of that list — never uploaded unless you have a FUTZIP account and keep your club on it.
Accounts, and how to delete one
An account is optional. Creating one stores an email address and a hashed password with our authentication provider, and lets four lists — watchlist, club, investments and alerts — be kept on the account so they survive a reinstall or a new phone. Nothing else is attached to it. We never post anything anywhere on your behalf.
You can delete your account from inside the app: Menu → Your account → Delete account. It removes the account, the email address and everything synced to it, immediately and permanently. No email to us is needed and there is no waiting period.
Reviews and published squads are attached to a random device identifier rather than to your account, so deleting the account does not remove them. Write to privacy@futzip.com and we will delete those too — or report the post from inside the app.
What other people can see
Five things you post are public: a review you write on a card, a reply under someone else’s review, the name of a squad you choose to publish, a Weekend League result you post, and the name you sign any of them with. All of them appear to every other user, attached to a random device identifier and never to your email address or your name. That identifier also has a page of its own: anyone can open it and see everything one identifier has posted, gathered together. The name beside a post is one you typed and nothing verifies it.
A Weekend League result is a number you type in. Nothing checks it, no source publishes one that could be checked, and every row on that screen says so.
Your club, your watchlist, your price alerts and the prices and quantities in your investment ledger are private and are never shown to anyone. One narrow thing about the ledger does leave the device, and only while a setting is on: see Card activity in the next section.
Posts are screened for offensive wording and links before they are published, every post can be reported from the app, and you can block a contributor so that nothing they post is shown to you again. Reports are read within 24 hours and content that breaks the rules is deleted.
What is sent to our server
One line a day is sent by the app itself, and it is first on the list below so it is not buried. Everything after it is sent only when you ask for it:
- A daily count. When you open the app, it sends one line so we can count how many people use FUTZIP: the random device identifier described below, whether the device is iPhone or Android, the version of its operating system, the app’s version and build number, the language the app is showing, and today’s date. That is the entire line. It carries no advertising identifier, no device name, no account, no location, and nothing about which cards or pages you looked at. Only one line is kept per device per day, so opening the app ten times counts once: the row notes the moment that day’s first line arrived, and nothing you do after it. It is the only thing on this page the app does without being asked, and it is our own count on our own server: no analytics company is involved and nothing is shared onward.
- Push alerts. If you turn on remote price alerts, the app sends the notification token issued by Apple or Google and a copy of the alerts you set — the card and the price you are watching for. A server cannot notify you about a target it cannot see. Turning the alerts off deletes those rows.
- Reviews and ratings. Text you choose to submit, stored against a random identifier your device generates for itself. It is not linked to you, to your email address, to your account, or to any identifier your phone came with. It is, however, the same random identifier used by the daily count above, by a squad you publish, by a report you send and by your push registration — so those rows can be matched to one another, and to nothing that names you. Deleting the app, or clearing its storage, ends that identifier for good: the next launch invents a new one and nothing connects the two.
- Published squads. If you publish a squad, its name, formation and eleven cards are stored so other people can open it, against the same random device identifier.
- Replies. A reply you write under someone’s review is stored the same way a review is: the text, the name you signed it with, and the same random device identifier. There is no edit and no delete — the database grants neither — so a reply, like a review, stands once it is published.
- Weekend League results. If you post one: how many games you played, how many you won, the platform if you gave it, a one-line note if you wrote one, and the code of a squad if you linked one. One result per week per device.
- Notifications. When somebody replies to a review you wrote, finds it helpful, or likes a squad you published, our server writes that to an inbox addressed to your random device identifier. Nobody can list that table — it is served by a function that answers only for an identifier the caller already knows — and whether you have read a notification is recorded on your device and nowhere else.
- Card activity. This one is a setting, it starts switched on, and it is in the app under Club → settings. While it is on, adding a card to your ledger or marking one sold sends the fact that it happened: which card, which season, whether it was an add or a sell, and today’s date. It does not send the price, the quantity, the profit or the order — the table those rows live in has no column for any of them, so they cannot be sent even by mistake. It also does not send the random device identifier: the row carries a digest computed from the identifier, the card and the day together, which means two of your rows cannot be matched to each other, to another day, or to your reviews. Someone who already knew your identifier could recompute a digest and look for it; someone reading the table cannot work backwards to you. Switch it off and nothing further is sent; rows already sent stay, because nothing here can prove which ones were yours.
- Reports. If you report a post, we store what you reported, the reason you picked, the app version and your language — so the report can be acted on. Blocking someone sends nothing at all: it happens on your device.
- Your synced lists, if you have an account. Watchlist, club, investments and alerts, stored against your user id and readable by nobody else.
- Ordinary web requests. Fetching prices means our server briefly sees your IP address and user agent, as any web server does. These live in access logs for operational and abuse-prevention purposes and are not used to build a profile of you.
Who else is involved
Data is hosted on Supabase (database) and on our own server in the EU. Push notifications are delivered by Apple Push Notification service and Firebase Cloud Messaging, which necessarily handle the notification token. Card images and player data originate from public EA Sports FC sources; FUTZIP is not affiliated with, endorsed by, or connected to EA Sports.
Children
FUTZIP is not directed at children under 13, and we do not knowingly collect personal information from them.
Your choices
- Delete your account, and everything synced to it, from inside the app: Menu → Your account → Delete account.
- Turn push alerts off in the app to stop sending — and to delete — your token and alert mirror.
- Delete the app, or clear your browser data, to erase everything stored locally.
- Block any contributor from the Report control under their post, and unblock them again under Menu → Legal & safety.
- Ask us to delete a review or a published squad. Those are not attached to an account, so we may need the six-character squad code or the card the review is on to find it.
Contact
Privacy questions and deletion requests: privacy@futzip.com. Reports about something another user posted: support@futzip.com. We answer both within 24 hours.
Changes
If this policy changes, the date at the top changes with it. A change that widens what we collect will be described here before it takes effect.