Privacy Policy
Last updated: February 20, 2025
1. Introduction
Coulisse Ventures ("Coulisse," "we," "our," or "us") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, and protect your information when you use our event ticketing services.
We process personal data in accordance with the General Data Protection Regulation (GDPR) and other applicable data protection laws.
2. Data Controller
Coulisse Ventures is the data controller for the personal data processed through our services.
RSIN: 867645003
Chamber of Commerce (KVK): 96518103
Email: here@coulisse.io
3. Data We Collect
We collect and process the following categories of personal data:
Account Information
- Name and email address
- Account credentials
Transaction Data
- Purchase history and ticket details
- Payment method tokens (stored securely by Stripe)
- Billing information
Event Data (for organizers)
- Event details and descriptions
- Attendee lists
Technical Data
- IP address and device information
- Browser type and settings
- Usage data and analytics
4. How We Use Your Data
We use your personal data for the following purposes:
- Service Delivery: To provide our ticketing services, process transactions, and deliver tickets
- Payment Processing: To process payments securely through Stripe, including storing payment method tokens for authorized transactions
- Communication: To send transactional emails about your purchases and events
- Account Management: To manage your account and provide customer support
- Service Improvement: To analyze usage and improve our services
- Legal Compliance: To comply with legal obligations and protect our rights
5. Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Contract Performance: Processing necessary to fulfill our contract with you (e.g., processing ticket purchases)
- Consent: Where you have given explicit consent (e.g., for marketing communications)
- Legitimate Interests: Processing necessary for our legitimate business interests, such as fraud prevention and service improvement
- Legal Obligation: Processing necessary to comply with legal requirements
6. Payment Data and Tokens
We use Stripe as our payment processor. When you provide payment information:
- Your full payment card details are processed directly by Stripe and are never stored on our servers
- Stripe may create a secure token representing your payment method, which allows us to process authorized transactions
- Payment method tokens are stored securely in compliance with PCI-DSS standards
For more information about how Stripe handles your data, see Stripe's Privacy Policy.
7. Data Sharing
We may share your personal data with:
- Event Organizers: When you purchase tickets, relevant information is shared with the event organizer
- Payment Processors: Stripe processes payments on our behalf
- Service Providers: Third parties that help us operate our services (e.g., hosting, analytics)
- Legal Requirements: When required by law or to protect our rights
We do not sell your personal data to third parties.
8. Data Retention
We retain your personal data for as long as necessary to provide our services and fulfill the purposes described in this policy. Specifically:
- Account data is retained while your account is active and for a reasonable period thereafter
- Transaction records are retained as required for legal and accounting purposes
- You can request deletion of your data at any time, subject to legal retention requirements
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data, including:
- Encryption of data in transit and at rest
- Secure payment processing through PCI-DSS compliant systems
- Access controls and authentication requirements
- Regular security assessments
10. Your Rights
Under GDPR and applicable data protection laws, you have the right to:
- Access: Request a copy of your personal data
- Rectification: Request correction of inaccurate data
- Erasure: Request deletion of your data ("right to be forgotten")
- Restriction: Request restriction of processing
- Portability: Request transfer of your data to another service
- Object: Object to processing based on legitimate interests
- Withdraw Consent: Withdraw consent at any time where processing is based on consent
To exercise these rights, contact us at here@coulisse.io.
11. International Transfers
Your data may be transferred to and processed in countries outside the European Economic Area (EEA). When we transfer data outside the EEA, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses or adequacy decisions.
12. Cookies
We use essential cookies necessary for the operation of our services. These cookies do not require consent as they are strictly necessary for providing the service you requested.
13. Changes to This Policy
We may update this privacy policy from time to time. If we make material changes, we will notify you by updating the date at the top of this policy and, where appropriate, provide additional notice.
14. Contact and Complaints
For questions about this privacy policy or to exercise your rights, contact us at:
Coulisse Ventures
Email: here@coulisse.io
If you are not satisfied with our response, you have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) or your local supervisory authority.