Legal
Privacy Policy
Effective October 1, 2026 · Version 2026-10-01
This Privacy Policy explains how If You Please (“we”, “us”, or “the Service”) collects, uses, discloses, and protects personal information when you use our multi-tenant RSVP, seating, and event check-in platform. It is written with Canadian privacy expectations in mind (including PIPEDA and, where applicable, provincial laws such as Alberta’s PIPA).
1. Who this applies to
This policy covers:
- Guests who RSVP, decline, or check in to an event organized through the Service;
- Organization users (admins, planners, check-in staff, and other teammates) who sign in to manage events; and
- Visitors to our public pages (home, login, and legal documents).
Each customer organization (“Tenant”) that hosts an event is independently responsible for how it uses guest information it collects through the Service, subject to our Tenant Data Use Agreement.
2. Information we collect
Depending on how the Service is used, we may process:
- Identity and contact details — name, company/organization affiliation, email address, and phone number;
- RSVP and attendance details — attendance choice, plus-ones, table or seat selections, check-in status, and related event logistics;
- Dietary information — allergies, preferences, and free-text notes provided for catering (treated as sensitive and role-restricted);
- Communication preferences — SMS and email consent records;
- Account information — name, email, password hash, role/membership, and optional MFA settings for Tenant users;
- Operational records — audit logs (for example logins, imports, approvals, seating changes), and technical logs needed to run and secure the Service;
- Session cookies — an HTTP-only session cookie to keep signed-in users authenticated. We do not use advertising or third-party marketing trackers.
3. How we use personal information
We use personal information only to operate the Service as designed, including to:
- Match guests to invitation lists and process RSVPs;
- Manage seating, approvals, check-in, exports, and event-day operations;
- Send transactional messages you or a Tenant have authorized (for example RSVP confirmations, reminders, or check-in details), subject to consent rules for SMS;
- Provide Tenant administration, team invites, and support;
- Secure the Service, prevent abuse, and maintain auditability; and
- Comply with applicable law.
4. No sale and no marketing use
We do not sell personal information. We do not use personal information for advertising or marketing purposes. Guest and Tenant-user data is processed solely to provide event RSVP, seating, dietary coordination, notifications (where consented), and check-in features of the Service.
Tenants must likewise use guest information only for managing the events for which the Service was designed, and must not sell it or use it for unrelated marketing. See the Tenant Data Use Agreement.
5. Sharing and access
Personal information may be accessed by:
- Authorized users of the Tenant that hosts the event (according to their role — for example check-in staff see limited fields needed for arrival);
- Service providers that help us operate the platform (for example hosting, email, or SMS delivery), under contractual obligations to protect the data and use it only to provide those services; and
- Authorities when required by law.
Phone numbers and email addresses are not exposed to other guests. Dietary details are not shown on public seating maps.
6. Retention
We retain personal information for as long as needed to provide the Service, meet Tenant operational needs for an event, satisfy legal or audit obligations, and then delete or anonymize it in accordance with our retention practices and Tenant requests (including party destruction / archival workflows in the product). Tenants are responsible for requesting deletion when an event’s purpose is complete, subject to any legal hold.
7. Security
We use administrative, technical, and organizational measures appropriate to the nature of the data — including authenticated sessions, role-based access, password hashing, and audit logging. No method of transmission or storage is perfectly secure; please use strong passwords and enable MFA where offered.
8. Your choices and rights
Guests may contact the event organizer listed on the invitation to update or correct RSVP details, withdraw SMS consent where applicable, or request access/deletion subject to the Tenant’s policies and applicable law. Tenant users may update account details through their administrator or by contacting us.
Depending on your province or territory, you may have rights to access, correct, or challenge our handling of your personal information.
9. International and hosting notes
The Service is intended to be hosted with Canadian data residency where configured by the operator. If subprocessors process data in other regions, we will take steps consistent with applicable Canadian privacy requirements.
10. Changes
We may update this Privacy Policy from time to time. The effective date and version above will change when we do. Material changes affecting Tenants may require re-acceptance of related legal terms.
11. Contact
Privacy questions about the platform: contact the platform operator that hosts your If You Please deployment.
Questions about a specific event’s guest list, RSVP, or dietary records should go to that event’s organizer (contact details appear on the invitation).
This document is provided for operational transparency and is not a substitute for legal advice. Have counsel review it before production use in your jurisdiction.