Last updated: 26 August 2026 · Applies to the Booster RH mobile app and to boosterrh.com.
Booster RH runs booster clubs — volunteers, events, money and messages. This policy explains what we store, why we store it, and how to get rid of it. Families are involved, so the short version matters: we collect the minimum, we never sell it, and you can delete your account from inside the app.
Booster RH is operated by Dr. Hines Inc., Tulsa, Oklahoma. In this policy "we" and "us" mean that company. Questions, requests and complaints go to hello@boosterrh.com.
This policy covers both halves of Booster RH: the mobile app, and the website at boosterrh.com where a club runs its dashboard, publishes its pages and can collect payments. They share one database, so they are one service for the purposes of this policy. Where something is true of only one of them, it says so.
Your club decides who joins it, what it records, and which board members can see what. We store and protect that information on the club’s behalf and do not use it for our own purposes.
Only what the service needs to work:
Card payments are not switched on today. Booster RH does not currently take payments by card, for dues, donations, tickets or anything else. Clubs collect money the way they always have — cash, a check, the club’s own bank arrangement — and a treasurer records it here. What we hold is that record: what it was for, how much, and who it was against. No card number, because there is no card.
We never hold your club’s money, we take no cut of it, and we cannot move it. That is true today and would stay true if card payments were enabled.
The groundwork for card payments through Stripe exists in the software for future use and is not enabled. If it is ever turned on, the design is that each club connects its own Stripe account, the charge is created directly on it, and the money goes from the payer to the club without passing through us. We would then hold the amount, what it paid for, whether it succeeded, and a Stripe reference — never the card number. We will update this policy before any of that goes live.
Refunds, chargebacks and payment disputes are between the payer and the club. Because the money never reaches us, we cannot issue a refund on a club’s behalf. See the Terms of Service for how this works.
We do not collect the contents of a background check. No screening runs through Booster RH today; the app records a status and a date so an admin knows who their club considers cleared, and nothing else.
We do not collect location from your device. The app has no location permission. Map coordinates for a club or an event come from geocoding the address that was typed in, not from your phone.
We do not track you across other companies’ apps or websites, we do not sell or rent your data, and we do not build advertising profiles.
Most students appear in Booster RH only as a record — a name, a grade, and which clubs they are in — entered by their own parent or by a club administrator. Those students have no login, are not messaged by the service, and are never the subject of analytics.
On the website, a club board can additionally invite a named student to become a student leader. An invited student creates their own login and can then propose events for the board to approve, message their team, and upload files to it. That is the one case where a student has an account.
Booster RH is not intended for children under 13, and a club must not invite one to become a student leader. We do not knowingly collect personal information from a child under 13. Access is by board invitation to a specific email address, so the club controls who gets an account and is responsible for confirming they are old enough. If you believe a child under 13 has an account, write to us and we will delete it and their information.
A parent or guardian may ask us for a copy of what is held about their student, ask for it to be corrected, or ask for it to be deleted, at hello@boosterrh.com. A club administrator can also remove a student, or revoke a student leader’s access, at any time.
Macy answers questions about your club — "how much has the spring campaign raised?", "who is signed up for Friday?" — by sending your question, and the club data needed to answer it, to Anthropic’s Claude API through our own server. Anthropic processes the request and does not use it to train models.
What Macy is given is limited to the club you are currently in: its name, description, location, activity and nonprofit details, how many members it has, its recent transactions, events, campaigns, volunteer needs, announcement titles and dues amounts. It is not given student records, background check information, private messages, or any club you do not belong to.
Conversations are stored against your account so you can scroll back, and they are deleted when your account is.
This build ships with no crash-reporting or analytics SDK. The reporting switch in Settings → Privacy is honoured either way, and while it is off nothing at all leaves the phone.
If a reporting service is added in a future release it will carry the app version, device model, OS version and an anonymous install identifier — never a name, an email, a phone number, or anything you post. The switch will keep working, and this policy will be updated before that release ships.
Club records are stored in Supabase (PostgreSQL) in the United States, and uploaded photos and files in Supabase storage alongside them. Tables are protected by row-level security so a signed-in account reaches only rows for clubs it belongs to, and uploaded files are served through links that expire.
Traffic to and from the app and the website is encrypted with TLS, and your login session is held in the iOS keychain or the Android keystore.
Inside a club, other members see your name, your role, the activities you listed, and anything you post. Your phone number appears in the member directory only if you entered one.
Club administrators additionally see volunteer sign-ups, payment records and background check statuses for their own club.
An administrator of a district can see records across every club in that district, including each club’s books and the background check status of individual volunteers. They cannot see private messages, and they cannot see the contents of any background check, because we do not hold those.
A student leader sees their own events, the teams they belong to, and the messages and files on those teams. They do not see club finances, member records or volunteer data.
If you sign in with Apple, we receive the email address Apple releases to us — which may be a private relay address — and, on first sign-in only, the name you choose to share. Apple tells us nothing else about you. Deleting your account also revokes that credential with Apple.
Settings → Delete my account removes your login immediately and permanently. There is no waiting period and no recovery. Backups roll off within 30 days.
Deleted with it: your profile, your club memberships, your volunteer shifts and sign-ups, your device tokens, your support tickets, your Macy conversations, and any administrator role you hold.
Two things deliberately survive, with your login detached from them. Records the club needs to keep its own books straight — a treasurer’s ledger of money that actually moved, and payment records — stay with the club, with your name removed. And where you were the parent account for a family, the family and student records stay with the club so the club’s roster does not collapse; ask a club administrator to delete those, or write to us and we will.
If you want everything erased rather than detached, ask us at hello@boosterrh.com and we will do it, subject to anything the club must keep by law.
At any time you can:
A short list, each doing one job:
No background checks run through Booster RH today. No screening provider is connected, and no check can be started from the app or the website. What follows describes how it would work if screening is enabled in a future release.
Where a club runs background checks, the screening is performed by a separate screening agency, not by us. Before any check runs, the volunteer reviews and signs a separate disclosure and authorization provided by that agency. Those are standalone documents and are not part of this policy.
The identifying details a check needs are handled by the screening agency. We store the status of a check and its dates, and never the report.
Questions about the contents or accuracy of a report go to the screening agency named in the paperwork you signed, not to us — we do not hold the report and cannot investigate it.
Deleting your account removes your data immediately; backups roll off within 30 days. When a club closes its account, its records are deleted within 90 days, except anything the club is required to keep for tax or accounting purposes.
We answer a request to see, correct or delete information within 30 days.
If this policy changes in a way that affects you, we will say so before the change takes effect, and club administrators get an email.
Questions, requests and complaints: hello@boosterrh.com, or through Help & support in the app.