GDPR Compliance

Last updated: March 30, 2025

At EventBit, we are committed to ensuring the privacy and protection of your personal data in compliance with the General Data Protection Regulation (GDPR). This page outlines our approach to GDPR compliance and your rights under this regulation.

What is GDPR?

The General Data Protection Regulation (GDPR) is a regulation in EU law on data protection and privacy for all individuals within the European Union and the European Economic Area. It also addresses the export of personal data outside the EU and EEA areas.

Our Commitment to GDPR Compliance

EventBit is committed to ensuring that all personal data processing activities are conducted in accordance with GDPR principles. We have implemented appropriate technical and organizational measures to ensure a level of security appropriate to the risk.

Data Controller and Data Processor

EventBit acts as both a data controller and a data processor. As a data controller, we determine the purposes and means of processing personal data. As a data processor, we process personal data on behalf of our customers (who are the data controllers) in accordance with their instructions.

Legal Basis for Processing

We process personal data on the following legal bases:

  • Consent: Where you have given clear consent for us to process your personal data for a specific purpose.
  • Contract: Where processing is necessary for the performance of a contract with you.
  • Legal Obligation: Where processing is necessary for compliance with a legal obligation.
  • Legitimate Interests: Where processing is necessary for our legitimate interests or the legitimate interests of a third party.

Your Rights Under GDPR

Under GDPR, you have the following rights:

  • The right to be informed about how your personal data is being used.
  • The right to access the personal data we hold about you.
  • The right to request the correction of inaccurate personal data.
  • The right to request the erasure of your personal data in certain circumstances.
  • The right to restrict processing of your personal data.
  • The right to data portability, allowing you to obtain and reuse your personal data for your own purposes across different services.
  • The right to object to the processing of your personal data in certain circumstances.
  • Rights in relation to automated decision making and profiling.

Data Protection Officer

We have appointed a Data Protection Officer (DPO) who is responsible for overseeing questions in relation to this privacy notice. If you have any questions about this privacy notice, including any requests to exercise your legal rights, please contact our DPO at dpo@eventbit.com.

International Data Transfers

We may transfer your personal data to countries outside the European Economic Area (EEA). Whenever we transfer your personal data out of the EEA, we ensure a similar degree of protection is afforded to it by ensuring at least one of the following safeguards is implemented:

  • We will only transfer your personal data to countries that have been deemed to provide an adequate level of protection for personal data by the European Commission.
  • Where we use certain service providers, we may use specific contracts approved by the European Commission which give personal data the same protection it has in Europe.
  • Where we use providers based in the US, we may transfer data to them if they are part of the Privacy Shield which requires them to provide similar protection to personal data shared between Europe and the US.

Data Breach Notification

In the event of a personal data breach, we will notify the relevant supervisory authority within 72 hours of becoming aware of the breach, where feasible. If the breach is likely to result in a high risk to your rights and freedoms, we will also notify you without undue delay.

Changes to This GDPR Compliance Statement

We may update this GDPR Compliance Statement from time to time. We will notify you of any changes by posting the new statement on this page and updating the "Last updated" date.

Contact Us

If you have any questions about this GDPR Compliance Statement or our data protection practices, please contact us at privacy@eventbit.com.