1. Introduction
TixMinder ("we," "our," or "us") operates the TixMinder mobile application and website. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services.
2. Information We Collect
Information You Provide:
- Email address (for account creation)
- Payment information (processed by Stripe, we never store credit cards)
- Email account OAuth tokens (encrypted and stored securely)
- User preferences and settings
Information We Automatically Collect:
- Ticket information from monitored email accounts and SMS messages
- Device information (OS version, app version, device model)
- Usage data (features used, app crashes)
- Location data (only if you grant permission, used for venue mapping)
Information We Do NOT Collect:
- Content of non-ticket emails
- Full email or SMS message content
- Personal conversations or correspondence
- Browsing history outside the app
3. How We Use Your Information
We use collected information to:
- Provide, maintain, and improve the TixMinder service
- Detect and extract ticket information from your emails and texts
- Store and organize your event tickets
- Process payments and manage subscriptions
- Send service notifications (new tickets detected, upcoming events)
- Respond to customer support requests
- Comply with legal obligations
4. Data Processing and Privacy
Zero Retention Policy:
- Email and SMS content is processed in real-time to detect tickets
- Non-ticket content is immediately and permanently deleted
- We never store, log, or retain any email/SMS content that doesn't contain tickets
- Ticket detection happens on our secure servers with end-to-end encryption
Data Storage:
- Ticket information and assets stored in secure cloud infrastructure (Supabase)
- OAuth tokens encrypted at rest
- Local device storage for offline ticket access (you control this)
5. Data Sharing and Disclosure
We DO NOT sell, rent, or trade your personal information.
We may share information with:
- Service Providers: Supabase (database), Stripe (payments), Cloudflare (infrastructure)
- Legal Requirements: If required by law, court order, or government request
- Business Transfers: In the event of merger, acquisition, or sale of assets
6. Data Security
We implement industry-standard security measures:
- Encryption in transit (TLS 1.3)
- Encryption at rest
- Secure OAuth token storage
- Regular security audits
- Access controls and authentication
However, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.
7. Your Data Rights
Depending on your location, you may have the right to:
- Access your personal data
- Correct inaccurate data
- Delete your data (right to be forgotten)
- Export your data (data portability)
- Opt-out of certain data processing
- Withdraw consent
To exercise these rights, contact us at [email protected].
8. Contact Us
For privacy questions or concerns:
- Email: [email protected]
- In-app: Settings → Privacy → Contact Support
Questions About This Policy?
We're committed to transparency. If you have any questions about this Privacy Policy, please don't hesitate to reach out to us.