Legal
Privacy Policy
Last updated: 27 June 2026
1. Who we are
ievent is a white-label platform for running conferences, member meetings, and AGMs. Each organiser (“client account”) is the data controller for the personal data of its own attendees; ievent acts as the processor that operates the platform on the organiser's behalf.
2. What we collect
- Account data for organisers and staff: name, email, role, and login credentials.
- Attendee data, depending on the event's join mode: name and email (registered), a lightweight display name, or nothing identifying (anonymous join).
- Participation content: questions, poll responses, and (where enabled) votes.
- Operational data: check-in records, device/session metadata, and audit logs of privileged actions.
3. Identity & anonymity
Every session runs under a stated anonymity policy that attendees can see on the join screen. We never re-label, fabricate, or expose an identity that someone submitted anonymously. Under a Truly-Anonymous policy we do not store a link between a submission and the person who made it — and, as described below, such submissions are never sent to any external AI provider.
4. AI moderation & sub-processors
To help moderators, the platform offers an AI assist that groups duplicate questions and flags ones already answered. It only suggests — a human always makes the decision. Each client account chooses which engine powers this:
- Built-in engine (default): runs entirely on our own servers. No question content leaves the platform, and no third party is involved.
- OpenAI (optional, opt-in): an organiser may choose OpenAI as the engine for a given account.
When — and only when — an organiser has both selected OpenAI and turned AI moderation on for a specific event, the text of questions from that event is sent to OpenAI for matching. We send a temporary reference identifier alongside the text so results can be returned; we do not send attendee names, email addresses, or any other identity field. OpenAI processes this content in the United States as our sub-processor. Truly-Anonymous sessions are excluded and always remain on the built-in engine.
Selecting OpenAI requires an explicit, recorded sign-off by the organiser in the account settings. The platform operator maintains the data-processing agreement (DPA) and, where available, zero-data-retention terms with OpenAI. Organisers can switch back to the built-in engine at any time.
Current sub-processors
- OpenAI — AI duplicate/topic matching (United States). Active only for accounts that opt in to the OpenAI engine.
5. How we use data
We use personal data to operate events you take part in: registration and check-in, running Q&A and polls, moderation, reporting to organisers, and keeping the service secure. We do not sell personal data, and we do not use attendee content to train AI models.
6. Retention
Event data is retained for as long as the organiser's account requires it to provide the service, after which it is deleted or anonymised. Anonymous submissions carry no identity to retain.
7. Your rights
Depending on your jurisdiction, you may have rights to access, correct, export, or delete your personal data. Because the organiser is the controller for attendee data, please direct such requests to the organiser of the event; we will support them in fulfilling your request.
8. Contact
For privacy questions about the platform itself, contact the platform operator. For your personal data tied to a specific event, contact that event's organiser.
This is a prototype build. This policy describes intended data handling and must be reviewed with legal counsel before any production launch.