This Privacy Policy explains how [Company Legal Name] (“we”, “us”) collects, uses, discloses, and protects personal information when you use our website or attend the Detroit Real Estate Investment Experience (“Services”). By using the Services you consent to the practices described here.
1. Information We Collect
- Registration data: full name, email, phone, ticket tier, consents.
- Payment data: processed by Stripe and, if used, Afterpay/Clearpay, Klarna, or Cash App Pay. We receive limited transaction metadata (last-four digits, brand, status) but not full card numbers.
- Event data: attendance, check-in status, photos/video captured on-site.
- Technical data: IP address, device/browser info, pages viewed, and cookies (see Cookie Policy).
- Communications: messages you send us and our replies.
2. How We Use Information
- process registrations, payments, refunds, and check-in;
- send transactional messages (confirmations, logistics, receipts) and, with consent, marketing;
- operate, secure, and improve the Services and Event;
- comply with legal obligations and enforce our Terms;
- produce non-identifying analytics and marketing materials.
3. Legal Bases (for EEA/UK visitors)
Where GDPR/UK GDPR applies, we rely on: performance of a contract (registration, ticket, Event delivery), legitimate interests (site security, analytics, direct marketing to existing customers), consent (marketing where required, non-essential cookies), and compliance with legal obligations.
4. Sharing
We share personal information with:
- Service providers acting on our behalf (payment processing by Stripe, hosting, email delivery, analytics, customer support).
- Sponsors and contractors only where you opt in or where necessary for a session you elected (e.g., VIP dinner attendee list).
- Authorities if required by law or to protect rights, safety, or property.
- Business transfers in connection with a merger, acquisition, or asset sale, subject to this Policy.
We do not sell personal information for money.
5. International Transfers
We are based in the United States. If you access the Services from outside the U.S., your information will be transferred to and processed in the U.S. under appropriate safeguards where required.
6. Retention
We keep personal information as long as needed to provide the Services, comply with legal, tax, and accounting obligations, resolve disputes, and enforce agreements. Registration and transaction records are typically retained for at least seven (7) years for tax and audit purposes.
7. Your Rights
Depending on your jurisdiction (including California CCPA/CPRA, Virginia, Colorado, Connecticut, Utah, and other U.S. state laws, and EU/UK GDPR), you may have the right to access, correct, delete, or port your personal information; to opt out of certain sharing or targeted advertising; and to withdraw consent. To exercise these rights, email privacy@example.com. We will verify your request and respond within the timeframe required by law. You may also lodge a complaint with your local data-protection authority.
Do Not Sell or Share / Global Privacy Control (GPC): we honor recognized browser-level opt-out signals for applicable interest-based advertising, where required.
8. Children
The Services are not directed to children under 16 and we do not knowingly collect their personal information. Contact us if you believe a child has provided data and we will delete it.
9. Security
We use reasonable administrative, technical, and physical safeguards to protect personal information. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.
10. Third-Party Sites
Our Services may link to third-party sites (including Stripe, sponsors, and social media). Their privacy practices are governed by their own policies.
11. Changes
We may update this Policy from time to time. We will post the updated version with a new “Last updated” date and, where required, notify you.
12. Contact
[Company Legal Name], [Street Address, City, State, ZIP]. Privacy contact: privacy@example.com.