Cordivent Legal
Privacy Policy
Last updated March 12, 2026.
Summary
Cordivent is a mobile-first event site for in-person conferences, expos, summits, and vendor fairs.
We do not sell personal data, and we aim to collect only what is needed to operate the product and the event experiences it supports.
Data we collect
- Account details such as name, email address, hashed password, privacy-policy acknowledgement timestamp, and account security state.
- Event and organizer data such as event settings, saved notes, uploaded assets, attendee-management data, bookmarks, and preferences.
- Technical and security data such as IP address, browser metadata, rate-limit events, and operational logs.
Why we use it
- To authenticate you, store your content, and sync your account state.
- To provide event-site, organizer, note-taking, resource, and backup features.
- To secure the service, rate-limit abuse, send transactional email, and answer support requests.
How and where data is processed
Cordivent is hosted on Bunny.net infrastructure, including Bunny Magic Containers for app runtime, Bunny Database for account and product data, and Bunny Storage for uploaded assets where those features are enabled.
Transactional email is delivered through Postal on infrastructure we operate on Google Cloud Platform.
Some event setup flows may store draft information locally in the browser before a live publish path is used. If you access Cordivent from outside the United States, your data may be processed in the United States and through Bunny.net edge infrastructure in additional countries.
Third parties and analytics
We use service providers only where needed to run the product. Depending on the feature, that can include Bunny.net for hosting and storage, Postal on GCP for transactional email, and privacy-respecting analytics providers for aggregate usage reporting.
We do not intentionally send account passwords, attendee notes, or uploaded organizer materials to analytics systems.
Retention and deletion
- Account data and saved content remain until you delete them or delete your account.
- Operational logs are generally retained for about 30 days unless needed longer for security review.
- You can request deletion through the product or by email.
Your rights
Depending on where you live, you may have rights to access, correct, export, restrict, object to, or delete your personal data.
California users may also use a browser-based Global Privacy Control signal where applicable as an opt-out signal for future covered processing.
Children and age requirement
Cordivent is not directed to children, and account registration is intended only for people who are at least 16 years old.
We do not ask for birth date during signup. Instead, registration requires an explicit confirmation that the person creating the account is at least 16 and agrees to the privacy policy.
If you believe a child provided personal data to Cordivent inappropriately, contact us and we will review and delete it where required.