Privacy Requests (DSR Portal)
Use this portal to exercise your rights under CCPA / CPRA, GDPR / UK GDPR, VCDPA, CPA, CTDPA, UCPA, and other US state privacy laws.
What you can request
- Access — receive a copy of personal information we hold about you.
- Delete — request deletion (subject to lawful exceptions, e.g., TCPA-required retention of consent records).
- Correct — fix inaccurate data.
- Portability — receive your data in a machine-readable format.
- Opt-out of "sale" or "sharing" — we do not sell, but we honor opt-out for any covered sharing.
- Opt-out of targeted advertising — we do not currently engage in targeted advertising; this opt-out is recorded for future-state assurance.
- Limit use of sensitive personal information — we do not collect sensitive PI beyond what's listed in the Privacy Policy.
How to submit
Phase 1 portal: email book@corporateevents.at with subject "Privacy Request". Include:
- Request type from the list above (Access / Delete / Correct / Portability / Opt-out / Limit).
- Email address associated with your data (the same one you used when submitting a lead form, review, or claim).
- One additional identifier for verification:
- Last 4 digits of the phone number on file, OR
- Most recent lead/inquiry ID (if known), OR
- The venue page URL where you submitted a review or claim, OR
- Government-issued ID (only requested for high-risk requests like deletion of large data sets — uploaded via separate secure link we'll send).
- State of residence (so we apply the right legal framework).
- Detailed description of the request (e.g., "delete my lead inquiry from 2026-03-15 for the Orlando venue").
We will reply with a verification email containing a magic link to confirm you control the email address on file. Once verified, we process your request.
Response timeline
- Acknowledgment — within 10 days of receipt (CCPA standard).
- Fulfillment — within 45 days (CCPA) or 30 days (GDPR), with a possible 45-day extension when reasonably necessary. We will notify you of any extension.
- Free of charge for the first request in any 12-month period. Repeated, excessive, or manifestly unfounded requests may be subject to a reasonable fee or may be refused with explanation.
Authorized agents
You may designate an authorized agent to act on your behalf. The agent must provide written permission from you and verify their own identity. For California residents, we follow CCPA Regs § 7060.
Right to non-discrimination
Exercising your rights will not result in denial of service, different pricing, or different service quality. CCPA and similar state laws require this.
Right to appeal (where applicable)
Some state laws (Colorado, Connecticut, Virginia, others) give you the right to appeal a denied request. Appeal by replying to our denial email with subject "Appeal". We will respond within 60 days. If we deny on appeal, we will inform you of the right to lodge a complaint with the relevant state attorney general.
Right to lodge a complaint
If you believe we are mishandling your data, you may complain to:
- Your state attorney general (US).
- Your data protection authority (EU/UK — see GDPR Notice).
- The California Privacy Protection Agency (cppa.ca.gov).
Audit trail
Every request is logged in our internal DSR system with status, history, and resolution. We retain DSR records for 24 months after fulfillment for compliance evidence.