← Back to GOey

Privacy Policy

GOey is committed to protecting your personal data in accordance with the Philippine Data Privacy Act of 2012 (Republic Act No. 10173).

What we collect

When an organizer runs an event on GOey, we process the guest information the organizer provides (name, and optionally email or phone), your check-in activity, and any content you submit through enabled modules (questions, feedback, photos, poll votes, raffle entries).

For events using advanced verification, we additionally process an identity document image and a selfie that you choose to upload for organizer review.

Why we process it

To let organizers manage attendance and deliver the event experience: issuing invitations, confirming check-ins, answering questions, generating your event receipt, and — where enabled — verifying identity for access control.

Retention

Identity-verification images (ID and selfie) are stored encrypted, accessible only through short-lived signed links, and are automatically purged no later than 90 days after the event ends.

Other event data is retained while the organizer's workspace is active. Deleted records enter a 30-day restore window before permanent deletion.

Your rights

Under the Data Privacy Act you have the right to be informed, to access, to object, to rectify, to erase or block, and to data portability, as well as the right to file a complaint and to be indemnified for damages.

To exercise any of these rights, contact the event organizer who invited you, or reach the GOey team through the access request form.

How we protect it

Data is isolated per organizer workspace with row-level security, transmitted over TLS, and private files are served only via signed, expiring URLs. Access to identity documents is limited to the reviewing organizer and audit-logged.

This policy is a v1 baseline and may be updated. Material changes will be reflected here.