Tillbaka till startsidan

GDPR & dataskydd

Privacy Policy

Effective Date: October 19, 2025 • Last Updated: September 26, 2026

1. Introduction

Make Simple Events ("we," "our," or "us") operates makesimple.events and provides event management services. This Privacy Policy explains how we collect, use, store, and protect your personal information in accordance with the General Data Protection Regulation (GDPR) and Swedish data protection laws.

Data Controller:
Make Simple Events
Sweden
Email: privacy@makesimple.events

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, profile picture (from OAuth providers)
  • Event Information: Event titles, descriptions, dates, locations, and images you create
  • RSVP Information: Guest names, emails, and phone numbers (when provided)
  • Payment Information: Processed by Stripe (we do not store credit card details)

2.2 Automatically Collected Information

  • Usage Data: Pages visited, features used, time spent on platform
  • Device Information: Browser type, IP address (anonymized), operating system
  • Cookies: Analytics cookies via PostHog (EU region)

3. How We Use Your Information

We use your personal data to:

  • Provide Services: Create and manage events, process RSVPs, send notifications
  • Communication: Send email confirmations, event reminders, and platform updates
  • Payment Processing: Handle subscription payments via Stripe
  • Analytics: Improve platform performance and user experience (anonymized data)
  • Legal Compliance: Comply with legal obligations and prevent fraud

Legal Basis (GDPR Article 6):
Contract performance, legitimate interest, and consent (for marketing communications).

4. Data Sharing

We share data only when necessary:

  • Stripe: Payment processing (PCI-DSS compliant)
  • Email Service (Resend): Transactional emails and notifications
  • PostHog (EU): Analytics (IP anonymization enabled)
  • Event Organizers: Guest information shared with event creators

We never sell your data to third parties.

5. Data Retention

  • Active Accounts: Data retained while account is active
  • Deleted Accounts: Personal data deleted within 30 days
  • Legal Requirements: Some data retained for accounting/legal purposes (7 years)
  • Event Data: Retained until organizer deletes event or account

6. Your Rights (GDPR)

You have the right to:

  • Access: Request a copy of your personal data
  • Rectification: Correct inaccurate information
  • Erasure: Delete your account and data ("right to be forgotten")
  • Data Portability: Export your data in CSV format
  • Object: Opt-out of marketing communications
  • Withdraw Consent: Unsubscribe from emails at any time

Exercise Your Rights: Contact privacy@makesimple.events

7. Cookies

We use cookies for:

  • Essential: Authentication, security
  • Analytics: PostHog (EU region, anonymized)

You can disable cookies in your browser, but some features may not work.

Cookie Consent: Required before analytics cookies are set.

8. Data Security

We implement industry-standard security measures:

  • Encryption: HTTPS/TLS for all data transmission
  • Database Security: Row-level security (RLS)
  • Access Control: Role-based permissions
  • Regular Audits: Security reviews and updates

9. International Transfers

All data is stored in the EU region. No data transfers outside EU/EEA.

10. Children's Privacy

Make Simple Events is not intended for users under 16. We do not knowingly collect data from children.

11. Changes to This Policy

We may update this policy. Changes will be posted on this page with updated "Last Updated" date. Continued use after changes constitutes acceptance.

12. Contact Us

Data Protection Questions:
Email: privacy@makesimple.events

Supervisory Authority (Sweden):
Integritetsskyddsmyndigheten (IMY)
Website: imy.se