Privacy Policy
Last updated: 5 October 2026
The short version
- We collect what we need to run CS2 team matchmaking: your account details, your player profile, public data about your Steam account, and what you do on STACK5.
- Your player profile and STACK5 Trust Score are public. Your email address, if you give one, is never shown to anyone.
- We never ask for your Steam password, Steam Guard code, trade URL or inventory access.
- We don't sell your data, show ads or use tracking/analytics cookies.
- You can delete your account yourself at any time from your account page, or ask us to see, correct or delete your data: contact@stack5cs.com.
1. Who we are
STACK5 (stack5cs.com) is a CS2 team matchmaking and reputation platform. It is operated by an individual based in Morocco, who is the data controller for the personal data described in this policy ("STACK5", "we", "us").
Contact for anything privacy-related: contact@stack5cs.com.
STACK5 is an independent project. It is not affiliated with, endorsed by or sponsored by Valve, Steam, FACEIT or Leetify.
2. What we collect
Information you give us
| Data | Why |
|---|---|
| Account: username, the SteamID64 you sign in with, and optionally an email address | To create your account and sign you in. STACK5 has no passwords: you sign in through Steam. The email is optional; if you add one, we verify it and use it only for match notifications and important account news. |
| Player profile: link to your Steam profile, display name, optional avatar URL, country, matchmaking region, FACEIT level and Elo (as you enter them), main role, language | To show your profile to other players and to match teams by region and level. |
| Terms acceptance: the date you accepted our terms | To record your agreement. |
Information created when you use STACK5
| Data | Why |
|---|---|
| Teams you create or join, invitations, join requests, queue entries, matches found, accepted, declined and confirmed | To run team building and matchmaking. |
| Ratings you give to and receive from players you played a confirmed match with | To calculate peer reputation in the STACK5 Trust Score. |
| Reliability events: declining a found match or letting it expire (as captain), and leaving a team while it is queued | To calculate the reliability part of the Trust Score. |
| Your STACK5 Trust Score, its breakdown and confidence level | Shown on your profile and used in matchmaking (see section 4). |
Information we get from Steam
Steam sign-in: the only way to sign in to STACK5 is "Sign in through Steam", on Steam's own website. Steam then tells us only your SteamID64; we never see your Steam password, and we have no access to your inventory or trades. We store that SteamID64 with your account and mark your profile as Steam-verified.
When you create a profile, and roughly once a week after that, we use the official Steam Web API to look up public information about the Steam account you linked:
- your SteamID64 (from Steam sign-in);
- whether your profile is public, and the account creation date if it is;
- your Steam level and your CS2 playtime (only if your game details are public);
- the number of VAC bans and game bans on the account, days since the last ban, and whether the account has a Steam community ban.
We store these values to calculate your Trust Score and to check the requirements to play (account age, CS2 hours, no recent bans). If you make parts of your Steam profile private, we simply don't receive them, but then we can't verify that you meet the requirements.
Information shown from Leetify
Your profile page shows CS2 statistics from Leetify's public API (for example Leetify Rating, Premier rating, aim and utility). These are requested live from Leetify when someone opens your profile, kept in server memory for at most 5 minutes, and not stored in our database. They are shown only if your Leetify privacy settings allow it, and they are not used in the STACK5 Trust Score.
Information shown from FACEIT
If a FACEIT account is linked to your Steam account, your profile page shows information from FACEIT's Data API: your FACEIT nickname, level, Elo, number of CS2 matches, the date you joined FACEIT, and any FACEIT bans. These are requested live from FACEIT when someone opens your profile, kept in server memory for at most 5 minutes, and not stored in our database. They are not used in the STACK5 Trust Score or in the requirements to play.
Technical information
- Contact form: the topic and message you write, the email you give (optional) and, if you're signed in, your STACK5 username. It's sent to our inbox (contact@stack5cs.com) by email so we can answer, and isn't stored on the STACK5 site.
- Last activity: the time you last used STACK5 while signed in, only to show how many players are online. It's never shown for an individual player.
- Server logs: when you visit STACK5, our server records your IP address, browser user agent, the page requested and the time. We use this for security, abuse prevention (including rate limiting) and fixing problems.
- Session cookie: see section 7.
3. What is public
STACK5 is built around players being able to see who they will play with. The following is visible to anyone, including people who are not logged in:
- your display name, avatar, country, region, role, language and FACEIT level/Elo;
- a link to your Steam profile, and whether your Steam account is verified;
- information from Leetify and FACEIT about your Steam account, if those services have it (see section 2), including any FACEIT bans;
- your STACK5 Trust Score, reliability and teamplay scores, confidence level and score breakdown. The breakdown can include your Steam account age, CS2 hours, the number of ratings you've received and their average, and any VAC, game or community bans on your Steam account;
- teams you belong to (name, region, roster) and match pairings you take part in.
Never public: your email address, individual ratings (who rated you and how), and server logs.
4. The STACK5 Trust Score
The Trust Score (0–100) is calculated automatically from four parts: identity (35%, from the public Steam data above), peer reputation (30%, ratings from players you actually played with, weighted by the rater's own trust and how recent the rating is), reliability (25%) and track record (10%, confirmed matches on STACK5). A recent VAC, game or cheating-related ban caps the score.
The score is used to describe players on their profile and as one factor (15%) when matchmaking compares two teams. It does not ban or exclude anyone from STACK5 by itself.
STACK5 is a reputation layer, not an anti-cheat. A score is not a finding that anyone is or isn't cheating. If you think your score is wrong, for example because of incorrect data, email us and a person will review it.
5. Legal bases
Where data protection laws such as the EU/UK GDPR or Moroccan Law 09-08 apply, we rely on:
- Performance of a contract: running your account, profile, teams and matchmaking.
- Legitimate interests: keeping STACK5 safe and trustworthy (Trust Score, ban checks, rate limiting, security logs) and improving the service. We've balanced these against your interests: we only use public Steam data, never sell data, and you can contest your score.
- Legal obligations: where we have to keep or disclose data by law.
6. Who we share data with
We don't sell or rent personal data. We share it only with services that are needed to run STACK5:
- Hostinger: hosts our server and database.
- Our email provider: sends email verification and notification emails, only if you added an email address.
- Valve (Steam): handles Steam sign-in, and receives your SteamID or profile name when we look up your public Steam data.
- Leetify: receives your SteamID when your profile page requests your stats.
- FACEIT: receives your SteamID when your profile page requests your FACEIT information.
We may also disclose data if required by law, or to protect STACK5 and its users from fraud or abuse.
These providers may process data outside your country (for example in the EU or the United States). Where required, we rely on appropriate safeguards offered by those providers.
7. Cookies and local storage
stack5_session: a strictly necessary cookie that keeps you logged in (HttpOnly, lasts up to 30 days, removed when you log out).stack5_lang: saved in your browser's local storage to remember your language choice.
We don't use advertising, analytics or third-party tracking cookies, and our pages load no third-party scripts or fonts.
8. How long we keep data
- Account, profile, teams, matches, ratings, Trust Score: for as long as your account exists. When you delete your account (from your account page), we immediately delete your account, email, ratings, Steam data and reliability history, and replace your player profile with an anonymous "Deleted player" placeholder so past team and match records stay consistent. Copies in backups disappear when those backups are deleted (within 30 days).
- Steam data: refreshed about weekly; deleted with your account.
- Login sessions: up to 30 days, or until you log out.
- Email verification links: 24 hours. Unfinished first sign-ins (Steam sign-in done, username not picked yet): 30 minutes.
- Server logs: for a limited period, normally no more than 30 days.
- Backups: kept for up to 30 days, then deleted automatically.
9. Your rights
Depending on where you live, you can ask us to:
- give you a copy of your personal data;
- correct inaccurate data;
- delete your account and data;
- restrict or object to certain processing, including the Trust Score;
- have a person review your Trust Score.
You can delete your account yourself on your account page. For anything else, email contact@stack5cs.com and tell us your STACK5 username; we may ask you to confirm it's you by signing in. We'll reply within 30 days. You can also complain to your data protection authority, for example the CNDP in Morocco or the authority in your EU country.
10. Security
We don't store passwords (sign-in goes through Steam), store only hashes of session and email tokens, use HttpOnly cookies, CSRF protection, HTTPS and rate limiting, and limit server access. No system is perfectly secure. If a breach affects your data, we'll notify you as required by law.
11. Age
You must be at least 16 years old to use STACK5. If we learn that someone under 16 has created an account, we'll delete it.
12. Changes
We'll update this page when our practices change, and change the "Last updated" date above. For significant changes, we'll also tell registered users on the site (and by email, if they added one) before they take effect.