E
Evenger

Privacy Policy

Last updated: 21 June 2026

This policy explains what personal data Evenger handles, why, how long we keep it, and the choices you have. It is a starting template; have it reviewed by qualified counsel before relying on it for compliance.

Who we are

Evenger is a conference management platform operated by the Evenger team. For privacy questions or requests, contact privacy@evenger.studio.

Data we process

Why we process it

To provide the service: authentication, running your conferences, managing registrations, and securing accounts. We do not sell personal data and do not use it for advertising.

Where it is stored and who can see it

Data is stored in Supabase (PostgreSQL) and the site is served via Netlify. Within an organizer's workspace, access is role-based: administrators and editors can see attendee details; reviewer and viewer roles do not see attendee names, emails, or payment amounts. Sign-in can use Google, Microsoft, or Apple, who process the standard sign-in handshake. If you link a Google Drive folder, that link is stored but file contents are not pulled into Evenger.

Security

Data is encrypted in transit (TLS) and at rest (AES-256) by our infrastructure providers. Access is enforced by row-level security so each tenant can reach only its own data. Sensitive operations run server-side with privileged keys that are never exposed to the browser.

Data retention

Attendee personal data (names, emails, payment amounts) is automatically anonymized 18 months after an event's end date. Aggregate, non-identifying counts may be retained for historical reporting. Account data is kept while your account is active.

Automated purge runs monthly. Organizers can also delete individual attendee records at any time from the Attendees screen, which removes that person's data immediately.

Your rights

Depending on your location, you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. To exercise these rights, email privacy@evenger.studio. Attendees should know that the organizer who collected their registration is the primary controller of that data; we will route requests to the relevant organizer and assist with deletion.

How to request deletion

Email privacy@evenger.studio with the email address tied to the data. We will verify the request and delete or anonymize the data within a reasonable period. Organizers can delete attendee records directly, and account holders can request full account deletion.

Changes

We will update this page when our practices change and revise the date above.