Eventia Logo
ES

Global Privacy Policy

B2B2C Platform for Event Planning, Logistics Management, and Financial Control — EVENTIA
Last updated: July 20, 2026 | Operator: GMZ Studio

1. LEGAL ROLES: CONTROLLER VS. PROCESSOR (IMPORTANT)

Due to the B2B2C nature of Eventia, legal responsibilities regarding data are strictly divided in accordance with the General Data Protection Regulation (GDPR) and similar regulations:

  • The Organizer/Owner as "Data Controller": The Organizer (Wedding Planner) or Event Owner is legally and solely responsible for obtaining the explicit consent of their guests before uploading their data to Eventia. Any privacy request from a guest regarding the removal of their email from a guest list must be handled directly by the Organizer.
  • Eventia as "Data Processor": When an Organizer uploads guest lists, email addresses, phone numbers, or itineraries to our servers, Eventia acts solely as a technical processor. We do not own that data nor use it for our own marketing.

2. DATA WE COLLECT AND DEVICE PERMISSIONS

To provide our event management services, Eventia collects information and requests native permissions under the following categories:

A. Data from Organizers and Owners (Registered Users):

  • Account Data: Name, email address, encrypted credentials, and preferences.
  • Logistical and Financial Data: Budgets, event dates, vendors, and locations.

B. Guest Data (RSVP Web Portal):

  • Contact Data: Entered by the Organizer or by the guest themselves when confirming attendance.
  • Health Data (Diets and Allergies): If the guest declares dietary restrictions (e.g., celiac disease, allergies) in the RSVP form, they grant their explicit consent for the Organizer and Eventia to process this special category data for the sole purpose of organizing the event's catering.

C. Device Permissions (Strict Use):

Eventia will request access to your device's features only when strictly necessary:

  • Phone Contacts: We request access to your address book exclusively for the guest "Mass Import" feature. We do not store your unselected contacts on our servers.
  • Camera and Gallery: We require access so you can scan invoices, quotes, or add photos to vendor profiles.
  • Biometric Data (FaceID / TouchID): Used strictly locally for the "AppLock" feature, protecting access to the app. Eventia NEVER stores or transmits your fingerprint or face to our servers.

3. PROCESSING THROUGH ARTIFICIAL INTELLIGENCE (AI)

Eventia offers Virtual Assistance and quote reading (OCR) tools using third-party APIs (Google Gemini and DeepSeek).

AI Privacy Guarantee: Invoice images sent for reading (OCR) or queries to the virtual assistant are transmitted in an encrypted manner and processed temporarily. We guarantee that the sent content is NOT used by these providers to train their public AI models.

4. DATA SHARING (SUBPROCESSORS)

Eventia will NEVER sell, rent, or trade organizer or guest databases with Data Brokers. We only share data in an encrypted manner with the following trusted subprocessors to operate our infrastructure:

  • Supabase & Vercel: Database hosting, authentication, and web portal.
  • Sentry: Technical monitoring of application errors and crashes (anonymized).
  • RevenueCat and Apple/Google: Processing the in-app purchase status of Premium subscriptions. Eventia does not collect or process credit card numbers.

5. COOKIE POLICY AND LOCAL STORAGE

The Guest Web Portal (RSVP) and our applications use strictly necessary local storage technologies (localStorage, MMKV) and cookies to:

  • Keep the user session secure.
  • Support the "Offline-First" architecture, temporarily saving changes on the device when there is no internet connection.
  • Remember the user's technical consent. By not using invasive advertising tracking cookies, continued use of our essential tools after the initial notification constitutes your acceptance.

6. SECURITY AND OFFLINE ARCHITECTURE

  • Encryption: All communication occurs over secure channels (HTTPS/TLS). Data at rest is encrypted in our database.
  • Offline Responsibility: In Eventia's Offline-First architecture, data entered without a connection is queued locally. Eventia cannot protect or recover data if the user deletes the application or loses the device before restoring the internet connection.

7. DATA RETENTION AND RIGHT TO BE FORGOTTEN

You have the right to request the deletion of your personal information.

A. For Organizers/Owners:

From the application: Go to Settings > Profile > Delete Account. This will trigger a definitive purge of your personal data, events, and metadata from our servers immediately, except for minimal technical logs required for auditing.
By email: You can request deletion by sending an email to legal@eventia.app from your registered address.

B. For Guests (RSVP Portal):

If you wish your data to be removed from a specific event's list, you must contact the Owner or Organizer directly, who is the legal Data Controller of the information. If the Organizer refuses or does not respond, you can escalate the request to legal@eventia.app for technical mediation.

8. CHILDREN'S PRIVACY (COPPA)

Eventia is not directed at children under 13. We do not intentionally collect information from minors. If the event involves minors (e.g., Sweet 16 parties), it is the exclusive responsibility of the parents, guardians, or the Organizer to ensure the applicable legal consent to register their names on guest lists or create supervisory accounts.

9. CHANGES AND CONTACT (ARCO RIGHTS)

We may update this Privacy Policy periodically. For material changes, we will request your explicit acceptance within the application.

If you have questions about this policy, or wish to formally exercise your rights of access, rectification, cancellation, or opposition (ARCO), contact us at:

  • Official Email: legal@eventia.app
  • Website: https://eventia.app