Privacy Policy

Effective Date: January 18, 2025 Version 1.0

Your Privacy Matters

At PartyGem, we are committed to protecting your privacy and ensuring transparency in how we collect, use, and safeguard your personal information. This Privacy Policy explains our data practices in clear, understandable terms.

Privacy Quick Summary

✓ We Protect

Your data with industry-standard security

✓ We Don't Sell

Your personal information to third parties

✓ You Control

Your data and privacy settings

Information We Collect

Account Information

  • Email address (required for account creation)
  • Name and profile information you provide
  • Password (encrypted and never stored in plain text)
  • Profile preferences and settings

Event Data

  • Event details (titles, descriptions, dates, locations)
  • RSVP responses and attendee lists
  • Messages and communications within events
  • Event analytics and engagement metrics

Payment Information

🔒 Secure Payment Processing

  • Payment information is processed securely by Stripe
  • We never store credit card numbers or sensitive payment data
  • Only transaction IDs and payment statuses are retained
  • All payment data follows PCI DSS compliance standards

Usage Information

  • Device information (browser type, operating system)
  • IP address and general location data
  • Usage patterns and feature interactions
  • Performance analytics and error reports

How We Use Your Information

Core Services

  • Create and manage your events
  • Process RSVPs and manage attendee lists
  • Facilitate peer-to-peer payments
  • Send event notifications and updates
  • Provide customer support

Improvements & Analytics

  • Analyze usage patterns to improve features
  • AI-powered event recommendations
  • Personalize your experience
  • Detect and prevent fraud
  • Ensure platform security

Information Sharing

❌ We Never Sell Your Data

PartyGem does not and will never sell your personal information to third parties for marketing or advertising purposes.

We Share Information Only When:

  • Event Coordination: Event organizers can see attendee contact information for their events
  • Payment Processing: Stripe receives necessary information to process payments securely
  • Legal Requirements: When required by law or to protect safety and security
  • Service Providers: With trusted partners who help us operate our platform (under strict privacy agreements)
  • With Your Consent: When you explicitly agree to share information

Data Security

Technical Safeguards

  • End-to-end encryption for sensitive data
  • Secure HTTPS connections for all communications
  • Regular security audits and vulnerability testing
  • Multi-factor authentication support
  • Automated threat detection and monitoring

Operational Security

  • Limited employee access to personal data
  • Regular security training for all staff
  • Incident response procedures
  • Secure data backup and recovery systems
  • Compliance with industry security standards

Data Breach Notification: In the unlikely event of a data breach, we will notify affected users within 72 hours and provide clear information about what happened and what we're doing about it.

Your Privacy Rights

Data Access & Control

  • Access: Request a copy of your data
  • Correction: Update inaccurate information
  • Deletion: Request account and data deletion
  • Portability: Export your data in standard formats

Communication Preferences

  • Opt-out: Unsubscribe from marketing emails
  • Customize: Choose which notifications you receive
  • Control: Manage privacy settings in your account
  • Contact: Reach out with privacy concerns

Cookies & Tracking

Cookie Types We Use

Essential Cookies

Required for core functionality (login, security)

Analytics Cookies

Help us understand usage patterns (anonymized)

Preference Cookies

Remember your settings and preferences

You can control cookies through your browser settings. Note that disabling essential cookies may affect platform functionality.

Data Retention Policy

Comprehensive Data Retention Framework

We maintain a comprehensive data retention policy that balances service functionality, legal compliance, and user privacy. Our retention periods are designed to serve specific business and legal purposes while minimizing data storage.

Active User Data

  • Profile Information: Retained while account is active + 30 days after deletion
  • Event Data: Retained while account active + 12 months after event conclusion
  • Communications: Event messages retained for 24 months after event conclusion
  • Usage Analytics: Anonymized data retained indefinitely for service improvement
  • Support Communications: 3 years for quality assurance and training

Financial & Business Data

  • Payment Records: 7 years (required for tax and regulatory compliance)
  • Transaction History: 7 years for financial auditing and dispute resolution
  • Subscription Data: 7 years for billing and tax purposes
  • Processing Fee Records: 7 years for business accounting requirements
  • Sponsorship Records: 7 years for contract compliance and business records
  • Tax Documents: 7 years as required by US tax regulations

Tier-Specific Data

Free Tier
  • Basic analytics: 12 months
  • Donation records: 7 years
  • Event data: 12 months
Premium Tier
  • Enhanced analytics: 3 years
  • Sponsorship data: 7 years
  • Custom reports: 2 years
Business Tier
  • AI analytics: 5 years
  • Enterprise data: 7 years
  • Custom exports: 5 years

Automated Deletion Process

  • Automated systems delete data when retention periods expire
  • Users can request early deletion (subject to legal requirements)
  • Data anonymization when deletion isn't legally permitted
  • Regular audits ensure compliance with retention policies
  • Secure deletion methods prevent data recovery
  • Monthly cleanup processes for expired data

Exceptions & Legal Holds

Data may be retained beyond standard periods when required by:

  • Legal proceedings or government investigations
  • Regulatory compliance requirements
  • Ongoing dispute resolution processes
  • Fraud prevention and security investigations
  • Tax audit or examination periods
Your Data Rights
  • Request early deletion (subject to legal requirements)
  • Download your data before deletion
  • Understand what data we retain and why
  • File complaints about retention practices

Our Business Model & Your Privacy

Privacy-First Revenue Model

PartyGem operates on a subscription-based SaaS model with processing fees. We do not sell your data or rely on advertising for revenue. This alignment means our success depends on providing excellent service, not exploiting your personal information.

✅ How We Make Money
  • Subscription fees (Premium/Business tiers)
  • Processing fees on transactions
  • Enterprise custom solutions
❌ What We Don't Do
  • Sell personal data to third parties
  • Generate revenue through advertising
  • Share data with data brokers

Subscription Tier Privacy Features

Free Tier Standard Privacy
  • • Standard data protection and encryption
  • • Basic privacy controls and settings
  • • Community support for privacy questions
Premium Tier Enhanced Privacy
  • • Advanced privacy controls and data export
  • • Granular data sharing preferences
  • • Priority support for privacy concerns
Business Tier Enterprise Privacy
  • • Enterprise-grade security and compliance
  • • Advanced data governance and audit logs
  • • Dedicated privacy officer support
  • • Custom data processing agreements

AI Features & Privacy Protection

Privacy-Preserving AI

Our AI features are designed with privacy at their core. We use advanced techniques to provide intelligent insights while protecting your personal information and maintaining user control.

AI Data Processing Principles

  • Aggregation & Anonymization: AI models use aggregated, anonymized data patterns
  • Local Processing: Personal data processed locally when possible
  • No Third-Party AI Sharing: Personal data never shared with external AI services
  • User Control: Opt out of AI features while retaining core functionality
  • Minimal Data Principle: AI uses only necessary data for specific purposes
  • Transparency: Clear disclosure of what data AI features access

AI Feature Availability by Tier

  • Free Tier: Basic analytics with standard privacy protections
  • Premium Tier: Enhanced AI insights with advanced privacy controls
  • Business Tier: Full AI capabilities with enterprise privacy guarantees

International Users

PartyGem operates primarily in the United States. If you're using our service from outside the US, please be aware that:

  • Your data may be transferred to and processed in the United States
  • We comply with applicable international privacy laws
  • EU users have additional rights under GDPR
  • Data transfers are protected by appropriate safeguards

GDPR Rights (EU Users)

If you're in the European Union, you have additional rights including the right to object to processing, request data portability, and lodge complaints with supervisory authorities.

Children's Privacy

Age Requirement: 18+

PartyGem is not intended for use by individuals under 18 years of age. We do not knowingly collect personal information from children under 18. If we discover that we have collected information from a child under 18, we will delete it immediately.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. When we make changes:

  • We'll update the "Effective Date" at the top of this policy
  • We'll notify you via email for significant changes
  • We'll post a notice on our platform for 30 days
  • Continued use of our service constitutes acceptance of changes

Contact Us About Privacy

Privacy Questions

  • Email: privacy@partygemai.com
  • Response Time: 48 hours
  • Subject Line: "Privacy Inquiry"

Data Requests

  • Email: data-requests@partygemai.com
  • Response Time: 30 days
  • Include: Account verification info

Mailing Address:
PartyGem, Inc. - Privacy Office
[Address to be updated]
United States

Thank You for Trusting Us

Your privacy is fundamental to our mission of creating better event experiences. We're committed to earning and maintaining your trust through transparent, responsible data practices.

Last Updated: January 18, 2025 | Questions? Contact us at privacy@partygemai.com