Privacy Policy

Last updated: August 2026

VenueOps ("we", "us", "our") operates a venue and booking management platform. This Privacy Policy explains what personal data we collect, how we use it, and the rights you have regarding your data.

1. Data We Collect

Account data: your name, email address, and role within your organization (admin or user).

Profile preferences: your preferred language and display name.

Business data you enter: event bookings, client contact details (name, email, phone), customer records, venue and space information, tasks, notes, and uploaded files.

Usage data: authentication tokens, session information, and basic analytics events generated when you use the platform.

2. How We Use Your Data

To provide and maintain the VenueOps service — managing bookings, venues, customers, tasks, and operational logistics.

To authenticate you and enforce multi-tenant data isolation so that each organization only sees its own data.

To send service-related notifications such as coordinator messages and booking alerts.

To improve the platform, diagnose technical issues, and develop new features.

3. Legal Basis

We process your data based on the performance of a contract: we provide the service you signed up for. We also rely on our legitimate interests to operate and secure the platform, and where applicable, on your consent.

When you are a potential customer and we want to help you organize events better and offer your guests a better experience, we process your contact details based on our legitimate interest. This applies, for example, when you contact us or we reach out to you about a possible booking. You have the right to object to this processing at any time (see Your Rights below).

4. Data Sharing

Your data is not sold to third parties.

Data is shared only within your organization based on role permissions, and with service providers (such as cloud hosting and authentication) that help us operate the platform under appropriate data-processing agreements.

We may disclose data when required by law or to protect the rights, property, or safety of our users.

5. Data Storage and Security

Your data is stored on secure cloud infrastructure. Each organization's records are isolated using row-level security so users can only access data belonging to their company.

We apply technical and organizational measures such as encrypted authentication tokens, access controls, and regular security reviews. No method of transmission or storage is fully secure, but we work to protect your data.

6. Data Retention

We retain your data for as long as your account is active and for a reasonable period afterward to meet legal, accounting, or operational requirements. You may request deletion of your data at any time (see Your Rights below).

7. Your Rights

Under the EU General Data Protection Regulation (GDPR) and Finnish data protection law, you have the right to:

Access the personal data we hold about you.

Request correction of inaccurate or incomplete data.

Request deletion of your personal data ("right to be forgotten").

Restrict the processing of your data.

Object to the processing of your data. This applies in particular when the processing is based on our legitimate interests, such as when you are a potential customer. If you object, we will stop the processing and remove your data upon your request unless we have compelling legitimate grounds to continue.

Receive a copy of your data in a structured, machine-readable format (data portability).

Withdraw consent at any time where processing is based on consent.

To exercise these rights, contact your organization administrator or our support team.

8. Cookies

VenueOps uses essential cookies and local storage to maintain your session, remember your language and theme preferences, and keep you logged in. We do not use cookies for cross-site advertising or third-party tracking.

9. International Transfers

Your data may be processed and stored on cloud infrastructure located outside the EU/EEA. Where this occurs, we rely on appropriate safeguards such as Standard Contractual Clauses to ensure a level of data protection consistent with EU law.

10. Children's Privacy

VenueOps is a business-to-business platform and is not directed at individuals under 16. We do not knowingly collect data from children. If you believe a minor has provided us with data, please contact us so we can delete it.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes through the platform or by other means. The "Last updated" date at the top reflects the most recent revision.

12. Contact

If you have questions about this Privacy Policy or your personal data, contact your organization administrator or the VenueOps team through the in-app support channels.

VenueOps venueops.ai Helsinki, Finland

13. Supervisory Authority

If you believe we have not handled your personal data in accordance with this Privacy Policy or applicable law, you have the right to lodge a complaint with the Finnish Data Protection Ombudsman's Office (Tietosuojavaltuutetun toimisto, TSV).

Tietosuojavaltuutetun toimisto (Office of the Data Protection Ombudsman) tietosuoja.fi Helsinki, Finland

Submit a Data Request

Use this form to exercise your rights under GDPR. We will respond to your request as soon as possible.