1. Purpose and Policy Scope
This Data Retention Policy outlines the principles, schedules, and security standards established byEventbit for the retention, archival, and secure deletion of user account records, financial transactions, event gallery assets, and biometric data. We are committed to data minimization and secure handling, ensuring compliance with the Digital Personal Data Protection (DPDP) Act of India, the General Data Protection Regulation (GDPR) of the European Union, and other international privacy frameworks.
We aim to retain personal data only for as long as necessary to fulfill the primary purposes of service delivery, billing administration, customer support, and legal compliance.
Retention Schedule
| Data | Retention |
|---|---|
| User Account | Until user deletes account |
| Photographer Account | While active |
| Event Galleries | While subscription is active |
| Expired Galleries | Deleted approximately 15 days after unpaid subscription following prior notices |
| Uploaded Photos | Deleted with gallery deletion |
| Face Embeddings | Up to 6 months |
| Cropped Face Images | Up to 6 months |
| Billing Records | Retained as required by law |
| Analytics Data | According to provider settings |
| Support Requests | As reasonably necessary |
3. Secure Deletion and Sanitization Standards
Upon expiration of the retention periods specified above, or immediately upon user request, Eventbit initiates automated sanitization protocols. Active databases mark records as deleted, and media assets stored in cloud object vaults are purged permanently within 7 business days.
Backup copies and database snapshots, which are maintained for disaster recovery and system integrity, may retain remnants of deleted data for a maximum of 30 days. Backup files are encrypted, restricted, and securely overwritten in the normal course of business.
Biometric matching data is treated with extreme safety. Guest selfies uploaded during search operations are processed in-memory and discarded immediately; we do not store guest biometric templates permanently.
4. Policy Updates & Compliance Officer Contacts
If you have questions regarding this schedule, wish to request immediate erasure of your records, or require clarification on how your data is archived, please contact our Data Governance desk:
Data Governance Officer: Deven Rathod
Email: data-protection@eventbit.io