Privacy Policy
Last updated 16 August 2026
Draft. The company details in this document are not yet confirmed, so it does not bind anyone. If you are considering buying Ponte and need the final terms first, write to hello@ponte.events.
The short version
A Ponte event holds real details about real people: who is coming, how to reach them, when they land and where they are staying. We store that to run the event and for nothing else. We do not sell it, we do not advertise against it, and we do not use it to train AI models.
Who is responsible for what
The host decides who is invited and what is collected about them — in data-protection terms they are the controller of their guest list. Ponte stores and processes it on the host’s behalf, as their processor. For the host’s own account details, Ponte is the controller.
What we hold about a guest
- Identity and contact — name, and email or phone where the host added one, so an invitation can reach them.
- Travel — flights or trains a guest chooses to share: carrier, number, airport or station, and times. This is what fills the arrivals board.
- Where they are staying — the hotel or address a guest pins, so the map and the “who is nearby” view work.
- What they contribute — photos, guestbook entries, plans they create or join, messages to other guests, and RSVP answers.
- Technical — a session cookie so they stay signed in, and delivery records for notifications they asked for.
Guests choose what to share. Travel and lodging are optional; an event works without them.
What we hold about a host
Name, email, the event details entered, and billing records: the amount charged, when, and the last four digits and expiry of the card. We never see or store full card numbers — payments run through Stripe, and the card lives with them.
Who else sees it
Only the services needed to run an event:
- Supabase — the database and file storage where an event lives.
- Vercel — hosting for the site itself.
- Stripe — payments. They receive the host’s billing details, never guest data.
- Resend — invitation and notification email.
- Anthropic — the AI concierge. A guest’s question and the event context needed to answer it are sent at the moment they ask. This is not used to train models.
- Mapbox — maps and place search. Searching for a venue sends the typed text.
Guests of one event can never see another event. That boundary is enforced in the database itself, not only in the app.
How long we keep it
An event’s data is kept while the event exists. A host can delete their event at any time from the admin, which removes the guest list, travel, lodging, photos and messages. Billing records are kept for as long as tax law requires.
Your rights
If you are in the UK or EU you can ask for a copy of your data, ask us to correct it, or ask us to delete it. Hosts can export a full copy of their event and delete it from the admin. Guests should ask their host first, since it is the host’s guest list — and can write to us at hello@ponte.events if that does not resolve it.
Cookies
Ponte sets a session cookie so you stay signed in, and remembers your language. That is all — there is no advertising or analytics tracking on an event site.
Children
Ponte is for adults organising events. Children may appear in a guest list a host maintains; we do not knowingly collect data directly from them.
Getting in touch
Privacy questions and requests go to hello@ponte.events.
Ponte LLC · a Minnesota limited liability company · 8167 9th St N, Oakdale, MN 55128, USA · hello@ponte.events