Privacy Policy
Last updated: 3 September 2026Seamless Events ("we", "us", "our") operates the Seamless Events platform — a speaker management tool for event organisers. This Privacy Policy explains how we collect, use, and protect personal data when you use our platform, website, and related services (collectively, the "Service").
We are committed to protecting your personal data in accordance with applicable data protection laws, including the EU General Data Protection Regulation ("EU GDPR"), the UK General Data Protection Regulation ("UK GDPR"), and where applicable, US state privacy laws (including the California Consumer Privacy Act, "CCPA") and Canada's Personal Information Protection and Electronic Documents Act ("PIPEDA").
For details on how we protect the data we process, see our Security page.
What this policy covers
This policy covers personal data we process when:
- An event organiser creates an account and uses the platform
- A speaker submits an intake form or is added to an event by an organiser
- Anyone visits our website
It does not cover personal data that event organisers collect from their speakers and submit to the platform — that processing is governed by a separate Data Processing Addendum (available on request to enterprise customers).
Data we collect
Event organisers
| Category | Detail |
|---|---|
| Account data | Name, email address |
| Event data | Event name, dates, branding, configuration, and settings |
| Usage data | Features used, pages visited, actions taken |
| Technical data | IP address, browser type, device type, operating system |
| Communications | Messages sent to us via email or contact forms |
Speakers
| Category | Detail |
|---|---|
| Profile data | Name, email address, job title, company name, biography |
| Media | Headshot / profile photograph |
| Form responses | Answers to intake form fields configured by the event organiser |
| Social links | Any social media profile URLs voluntarily provided |
Speaker data is submitted either directly by the speaker (via a public intake form) or added by the event organiser. Where an organiser adds or imports speaker data, the organiser is the controller of that data and we act as their processor.
Technical and analytics data
Standard session and usage data collected automatically when you use the Service. See the Cookies section below for more detail.
How we use your data
| Purpose | Legal basis |
|---|---|
| Providing and operating the Service | Contractual necessity |
| Account creation and authentication | Contractual necessity |
| Generating speaker cards and wall embeds | Contractual necessity |
| Sending transactional emails (e.g. login links, notifications) | Contractual necessity |
| Security, fraud prevention, and abuse detection | Legitimate interests |
| Improving and developing the Service | Legitimate interests |
| Responding to enquiries and support requests | Legitimate interests |
| Complying with legal obligations | Legal obligation |
| Marketing communications (opt-in only) | Consent |
We do not use personal data for automated decision-making that produces legal or similarly significant effects on individuals.
How we share your data
We do not sell personal data.
Service providers. We share personal data with third-party processors who help us operate the Service (such as hosting providers, authentication services, and email delivery). These providers process data only on our instructions. See the Subprocessors section below.
Payment providers. If you purchase a subscription, your billing data (name, email, billing details) is processed by Polar (our merchant of record) and, for payouts, Stripe. Card details are entered on their checkout pages and never reach our systems.
Event organisers. Speaker data submitted through an intake form or added to the platform is accessible to the organiser running that event. Organisers are responsible for their own lawful basis for collecting and using that data.
Public embeds. Where an organiser enables a Speaker Wall embed on their website, speaker profile data (name, title, company, headshot, and generated card) becomes publicly accessible as part of that embed. Speakers are informed of this through the organiser's intake process.
Legal and regulatory. We may disclose personal data where required by law, court order, or to protect the rights, safety, or property of us, our users, or others.
Business transfers. In the event of a merger, acquisition, or transfer of all or part of our business, personal data may be transferred to the successor entity. We will notify you of any such change.
Subprocessors
| Provider | Purpose | Location |
|---|---|---|
| Google (Firebase / Google Cloud) | Authentication, application and website hosting | USA / EEA |
| Cockroach Labs | Primary database (CockroachDB Cloud) | EU (Belgium) |
| Cloudflare | Event file storage, CDN, and DNS | EU (Western Europe) |
| Polar | Payments (merchant of record) | USA |
| Stripe | Organiser payouts (Stripe Connect) | USA / EEA |
| Brevo | Transactional emails (login links, notifications) | EU (France) |
| Microsoft | Sign-in provider (optional) | USA / EEA |
International transfers
Some of our subprocessors are based outside the UK and European Economic Area. Where we transfer personal data internationally we rely on one or more of the following:
- An adequacy decision by the UK Government or European Commission
- Standard Contractual Clauses (SCCs) approved by the European Commission
- UK International Data Transfer Agreements (IDTAs) issued by the ICO
You can request further information about the transfer mechanisms we use by contacting us at the address below.
Retention
We retain personal data for as long as necessary to provide the Service and meet our legal obligations.
| Data type | Retention period |
|---|---|
| Organiser account data | Duration of account, plus 90 days after deletion |
| Speaker profile data | Duration of the organiser's account |
| Technical / analytics data | Up to 26 months |
| Communications and support records | Up to 3 years |
You can delete your account yourself at any time from your account settings, or request deletion of your data — see Your Rights below.
Your rights
Under UK/EU GDPR you have the right to:
- Access — request a copy of personal data we hold about you
- Correct — ask us to correct inaccurate or incomplete data
- Delete — request erasure where there is no lawful reason to retain it
- Restrict — ask us to pause processing in certain circumstances
- Object — object to processing carried out on the basis of legitimate interests
- Portability — receive a copy of your data in a machine-readable format
- Withdraw consent — where processing is based on your consent, withdraw it at any time without affecting prior processing
To exercise any of these rights, contact us at contact@seamlessevents.io. We will respond within one month. We may ask you to verify your identity before acting on a request.
Additional rights — US and Canada
California (CCPA)
If you are a California resident, you have the right to:
- Know — request disclosure of the personal data we collect, use, and share about you
- Delete — request deletion of personal data we hold about you, subject to certain exceptions
- Correct — request correction of inaccurate personal data
- Opt out of sale — we do not sell personal data
To make a request, contact us at contact@seamlessevents.io.
Canada (PIPEDA)
If you are in Canada, you have the right to access personal data we hold about you and to request corrections where it is inaccurate. To make a request, contact us at contact@seamlessevents.io.
Cookies
We use cookies and similar technologies on our website and platform:
- Necessary cookies — required for the Service to function (e.g. keeping you logged in)
- Analytics cookies — help us understand how the Service is used so we can improve it
You can manage your cookie preferences via the cookie banner on our website, or read our full Cookie Policy.
Children
The Service is not directed at anyone under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
Complaints
If you are unhappy with how we handle your personal data, please contact us first — we would like the opportunity to resolve your concern.
If you remain unsatisfied, you have the right to lodge a complaint with a supervisory authority:
- UK users — Information Commissioner's Office (ICO)
- EU users — your local data protection authority
Contact
Seamless Events
contact@seamlessevents.io
Updates
We may update this policy from time to time. We will notify active users of material changes by email. The "Last updated" date at the top of this page reflects the most recent revision.