ELO TERRORISTS — Privacy Policy
Last updated: July 2026 · Chrome Extension
Overview
ELO TERRORISTS is a Chrome extension that allows FACEIT CS2 players to flag and track suspected match-fixers and game-throwers in a shared community database. This policy explains what data the extension collects, how it is stored, and how it is used.
How trust works — FACEIT OAuth
To submit a flag you must connect your FACEIT account via the extension's built-in OAuth flow. This proves you own a real FACEIT account without requiring you to create a separate account on our service. When you click “Connect with FACEIT”, you are redirected to FACEIT's own login page; we never see your FACEIT password.
When you flag a player from inside a matchroom, the extension sends the current match ID to our server. Our server independently calls the FACEIT Data API to confirm that your FACEIT account appears in that match's player roster before accepting the flag. This check happens entirely server-side — we do not rely on anything the extension claims about who you are.
Data collected by the extension
FACEIT access token
After you connect your FACEIT account, an OAuth access token and refresh token are stored in chrome.storage.local on your device. These tokens allow the extension to authenticate your flagging requests. They are never sent to any server other than FACEIT (for token refresh) and our own API (attached to flag submissions so we can verify your identity).
Reporter identifier
We never store your FACEIT username or GUID in plain text. When a flag is accepted, our server computes a one-way SHA-256 hash of your FACEIT GUID and stores that hash as your stable reporter identifier. This hash cannot be reversed to recover your FACEIT identity, but it is consistent across all flags you submit, allowing you to view and delete your own reports.
Flags you submit
When you flag a player, the following is sent to our server and stored in the community database:
- The flagged player's Steam ID (a public numeric identifier)
- Their FACEIT display name at the time of flagging
- The rank you assigned (S / A / B / C / D / F)
- The comment you wrote explaining the reason
- Your hashed reporter identifier
- The timestamp of submission
We do not store your FACEIT username, email, IP address, or any other personally identifiable information in the community database.
FACEIT page data read locally
On every FACEIT page you visit, the extension reads player nicknames visible in the page to look them up in the community database and apply highlights. This reading happens entirely inside your browser and the raw list of nicknames is never logged or transmitted to our server. Nickname-to-Steam-ID mappings resolved via our API are cached in chrome.storage.session (cleared on browser close) to reduce network requests.
Data shared with third parties
To resolve FACEIT nicknames to Steam IDs, our server queries the FACEIT Open Data API. To verify match participation, our server calls the FACEIT Data API using a server-side API key — your FACEIT access token is used only to verify your identity via the FACEIT userinfo endpoint and is never forwarded to any third-party service. We do not sell or share any data with advertisers or analytics providers.
Data stored on your device
The extension stores the following in chrome.storage.local:
- Your FACEIT OAuth access and refresh tokens
- Your FACEIT display name (shown in the popup)
- A local copy of the flags you have personally submitted (for display in the popup and to allow removal)
Nothing is synced across devices via chrome.storage.sync. Disconnecting your FACEIT account from the popup removes all stored tokens from your device immediately.
Community database
Flags submitted through the extension are stored in a shared database and are visible to all extension users. Do not include personal information about yourself or others in flag comments beyond what is relevant to in-game behavior.
Deleting your data
You can remove any flag you have submitted at any time from within the extension popup. Removing a flag deletes it from the community database permanently. To request deletion of all flags associated with your reporter identifier, or to request that your hashed GUID be removed, email help@steamfriends.xyz.
Changes to this policy
If this policy changes materially, the updated version will be published at this URL with a new "Last updated" date.
Contact
Questions can be sent to help@steamfriends.xyz.