The pages on the website ("the website") are published by Crowd Reactive Limited ("us" or "we").
Crowd Reactive Limited ("us" or "we") will not collect any information about individuals, except where it is specifically and knowingly provided by them. Examples of such information are:
The information collected will be used to send you the information you have requested and to provide information that may be useful to you.
We may share non-personal aggregate statistics (group) data about our site visitors' traffic patterns with partners or other parties. However, we do not sell or share any information about individual users.
See our cookie page for more information on the types of Cookies we use.
In addition to the company's safeguards, your personal data is protected in the EU by GDPR. This provides amongst other things that the data we hold about you should be processed lawfully and fairly. It should be accurate, relevant and not excessive. The information should be kept up to date, where necessary, and not retained for longer than is necessary. It should be kept securely to prevent unauthorised access by other people. You have the right to see what is held about you and correct any inaccuracies online. You can do this by using the "contact us" link or “chat to us” link on any page.
Any changes to this policy will be posted here.
Crowd Reactive Limited treats all the data held with the utmost care and security. Any details you give will remain completely confidential.
Whilst our Privacy/Terms covers all aspects of GDPR we wanted to provide a clear document detailing the 12 points of GDPR.
For the purposes of this document SERVICE means EventsTag/CrowdReactive Ltd. WE means the company providing the SERVICE as per point 12.
EventsTag's data is stored in the European Union, in situations where it is transferred and stored in the USA sub-processors are on the certified EU-US Privacy Shield framework.
Sub-processor: SendGrid | Office Location: USA | Purpose: Email Notifications
Sub-processor: Twilio | Location: USA | Purpose: SMS/MMS Notifications
Sub-processor: Amazon | Office Location: USA | Purpose: Hosting Provider
Sub-processor: Xero | Office Location: USA | Purpose: Accounting Software
Sub-processor: Mailchimp | Office Location: USA | Purpose: Newsletter Marketing
Sub-processor: Google Analytics | Office Location: USA | Purpose: Website usage tracking
Our employees, responsible for infrastructure, software development and support are fully aware of the concepts and principles of GDPR.
2.1 Customer Data (our users)
2.1 User Data (the users of our products)
This can change on a case-by-case basis but our basic product collects the following information
This data is kept for the minimum amount of time possible before being deleted from our system (mostly within 8 weeks, depending on needs). It is only used for the purposes for which the user has given consent. We cannot use the data or pass it on to anyone without the explicit consent from the user.
Our privacy and terms are clearly communicated on our website .
We reply to all access requests within 4 weeks (the legal limit from GDPR is 1 month).
All access requests are free of charge.
User consent is the lawful basis for any processing.
7.1 Our customers
Consent is provided by our customers when signing up for the service and logged by us.
7.2 Users of our products
Consent is provided by our users when using the products.
8.1 Our customers
This service is not available to Children (under the age of 16). Our product is strictly B2B (business-to-business)
8.2 Our users
Photos and data of under 16s will only be processed with the express consent of their parent or guardian.
You can read more on our security here .
We will notify customers and the relevant supervisory authority within 24 hours of a breach.
Security and Data Privacy always comes first when implementing new features, our Data Protection Officer is in involved at every stage of development.
For the purposes of EventsTag/CrowdReactive Ltd and related services our Data Protection Officer is:
We operate and are established in the UK (England), our supervisory authority is the ICO (Information Commisioner's Office) based in the UK.
Address: 103 Gaunt Street, London, SE1 6DP, United Kingdom
Company No: 08504555 (registered in England & Wales)
Companies using EventsTag's platform and handling European user data may need to sign a Data Processing Agreement (DPA). If we need this from you then we notify you via email or phone.
We know you have questions about how we're protecting the information of our customers and users of our products so we have written some frequently requested details about EventsTag's information security below.
Primarily hosted in Ireland region. They provide physical security protection measures and adhere to high quality standards.
Security in our software is very important, we are frequently scanning for vulnerabilities using Amazon Inspector.
We also do the following:
Our services are provided by AWS based in Ireland with a near 100% up time. We can also scale resources automatically based on demand to avoid any performance issues.
How long do we keep your data?
How can I report a security issue?
Have you had an incident that resulted in a data breach?