Privacy policy
Last updated: 27.08.2026
This policy explains what personal data RegPoint collects through regpoint.events, why we process it, and what rights you have. We process data under the Ukrainian Law on Personal Data Protection and the EU General Data Protection Regulation (GDPR).
Who is responsible for your data
The data controller is Individual Entrepreneur Korchuk Oleksandr (ФОП Корчук Олександр Володимирович), Ukrainian tax ID (ІПН) 2912911355. For any question about data processing, write to hello@regpoint.events.
What data we collect
- Contact form. Your name, email, organization (optional), and the text of your message — everything you type into the form on this site.
- Technical data. IP address, browser type, and request time are recorded in our hosting provider's server logs. We do not use them for profiling.
- Event attendee data. When an event organizer uses RegPoint, we process attendee data (name, email, registration form answers, check-in records) on that organizer's instructions. In that case the organizer is the controller and RegPoint acts as a processor; a separate agreement with the organizer governs that processing.
Why we process data, and on what legal basis
- Answering your enquiry — to handle your partnership request and reply to you. Basis: your consent, given by ticking the confirmation box in the form, and our legitimate interest in business correspondence.
- Running and securing the site — to keep the site available and protected from abuse. Basis: legitimate interest.
- Delivering the service to organizers — attendee registration, pass issuance, and check-in. Basis: our contract with the organizer.
We do not use your data for advertising and we do not sell it to third parties.
Who we share data with
We use service providers that process data only on our instructions:
- Cloudflare — site hosting, DNS, protection against attacks, web analytics, and the bot check on the contact form (see "Cookies, analytics and bot protection" below).
- Resend — delivery of the emails sent through the contact form.
- Google Wallet and Apple Wallet — when an attendee adds a pass to a digital wallet, the pass data (event name, attendee name, date, scan identifier) is transferred to Google or Apple. Their own privacy policies govern what happens next.
- Google Fonts — the site's fonts load from Google's servers, so Google receives your IP address when a page opens.
We may also disclose data where the law requires it or in response to a lawful request from a public authority.
Transfers outside Ukraine and the EU
The providers listed above may store and process data on servers outside Ukraine and the EU. Such transfers rely on standard contractual clauses or another transfer mechanism permitted by the GDPR.
How long we keep data
- Contact form enquiries — up to 24 months after our last exchange, then deleted or anonymised.
- Event attendee data — as instructed by the organizer, normally no longer than the event and its follow-up reporting require.
- Server logs — for the retention period set by our hosting provider.
Cookies, analytics and bot protection
This site sets no cookies and uses no advertising trackers.
We use Cloudflare Web Analytics, which is cookieless: it stores nothing in your browser, does not fingerprint your device, and does not follow you across other sites. It records, without identifying you: the page address, where you arrived from, the time of the request, your browser, operating system and device type, your country, and page-loading performance figures. We see this only as aggregated reports and cannot tie it to an individual.
The contact form is protected by Cloudflare Turnstile, a bot check that runs in your browser while the form is on screen and, for most people, needs no interaction. To tell a person from a script it processes your IP address, characteristics of your browser and connection (such as the User-Agent header and TLS fingerprint), and the address of the page. It does not read what you type into the form and sets no cookies on this site. Cloudflare processes this on our behalf and, as an independent controller, may also use it to improve Turnstile itself — see Cloudflare's Turnstile Privacy Addendum.
The legal basis for both is our legitimate interest: in understanding how the site is used and improving it, and in keeping the contact form free of automated abuse.
Your rights
You have the right to access your data; to have inaccurate data corrected; to request erasure; to restrict or object to processing; to receive a copy of your data in a machine-readable format; and to withdraw consent at any time (this does not affect processing carried out before the withdrawal).
To exercise any of these rights, write to hello@regpoint.events. We reply within 30 days. If you believe we have infringed your rights, you may lodge a complaint with the Ukrainian Parliament Commissioner for Human Rights or with the data protection authority in your country.
If your data reached RegPoint through an event organizer, send your request to that organizer directly — we will pass the request on and help them fulfil it.
Security
Data travels over an encrypted connection (HTTPS). Access to data is limited to the people who need it to run the service.
Changes to this policy
If we change this policy, the updated version will appear on this page with a new date. We will notify the people we correspond with by email about substantial changes.
Contact
For any question about this policy, write to hello@regpoint.events.