A Self-Serve Platform. A Privacy-First Promise.
At Presso Network Ltd, we operate a self-serve event platform for professional B2B event organisers — and protect personal data with the same care we apply to the rest of the product.
This document outlines how we uphold General Data Protection Regulation (GDPR) compliance while operating the Presso platform (Presso Tickets, Presso Events, and Presso Pro).
1. What is GDPR?
The General Data Protection Regulation (GDPR) is a legal framework that sets guidelines for the collection and processing of personal data of individuals within the United Kingdom, European Union (EU), and European Economic Area (EEA). It ensures transparency, security, and control over personal information.
2. Our Commitment to GDPR
Presso is a self-serve SaaS platform operated entirely by our internal team — no freelancers, no subcontractors handling personal data. Every layer of our service is built and maintained by Presso staff.
We uphold the following GDPR principles:
- Lawfulness, Fairness, and Transparency
- Purpose Limitation
- Data Minimisation
- Accuracy
- Storage Limitation
- Integrity and Confidentiality
- Accountability
You own your data — we process it, protect it, and serve it on your terms.
3. Data We Collect
Only what's essential — and only when essential.
- Account Holder Contact Info: For platform access, support, billing
- Attendee Data: Names, emails, ticketing details (stored securely in Presso's database, scoped to your account)
- Usage Logs: Performance metrics and anonymous analytics
- Cookies: Optional, opt-in, and non-invasive
We do not profile, track, or monetise any user or attendee data.
4. Legal Basis for Processing
Presso processes data under:
- Contractual Obligation — Required to deliver the platform service you are subscribed to
- User Consent — Always explicit and revocable
- Legal Obligation — When required by law
- Legitimate Interest — Platform diagnostics, fraud prevention, and security, always proportionate and minimised
We honour both the letter and spirit of GDPR.
5. Your Rights Under GDPR
As a data subject, you retain:
- Right to Access
- Right to Rectification
- Right to Erasure
- Right to Restrict Processing
- Right to Data Portability
- Right to Object
- Right to Withdraw Consent
- Right to Lodge a Complaint (via the UK Information Commissioner's Office)
Presso responds to every request promptly and without quibble.
6. How We Collect Consent
Consent isn't assumed. It's earned.
- Clear Notices — No pre-ticked boxes
- Active Opt-In — You choose, we record
- Easy Exit — One-click revocation via your preferences or support
- Always Transparent — Every cookie and form spells out its purpose
Our platforms never ask for more than they need.
7. Data Protection by Design
Built securely from day one.
- Encryption in transit and at rest
- Granular Access — Only authorised Presso personnel can access sensitive data, on a need-to-know basis
- Reputable Hosting — Platform infrastructure runs on Render (UK/EU regions) and Stripe; subprocessor list available on request
- Audit Trails — Sensitive actions are logged and monitored
- Breach Response — Breach notifications initiated within 72 hours, per GDPR requirements
8. Platform Ownership and Privacy
You own your account, your event content, your attendee data, and your domain (where connected as a Custom Domain under Presso Pro).
- No account or data sharing between organisers
- No vendor lock-in: data export available at any time
- Subprocessors are disclosed; we do not sell or share data with undisclosed third parties
Data portability and your right to leave with your data are built in.
9. Updates to This Policy
We review our GDPR policy annually, or whenever the law or our processing changes. You'll be notified of material updates. The most recent version is always available on our website.
10. Data Protection Officer
For data questions, requests, or rights exercises, contact:
Kristian Papadakis
Founder & DPO
11. Analytics & Cookies
We use Fathom Analytics — a GDPR-compliant tool that doesn't track individuals or store personal data. We don't use Google Analytics, Meta Pixel, or third-party retargeting trackers on our marketing surfaces.
- No fingerprinting
- No selling data
- No retargeting
- No behavioural profiling for advertising
Cookies are optional and strictly opt-in. All cookie settings can be managed via our Consent Management Platform (CMP).
Privacy is a product decision.
Presso is built so that running professional events doesn't require surrendering your attendees' data to a third-party platform. If you run high-calibre events, you should expect high-calibre privacy.
Sign up at pressonetwork.com, or speak to Kristian directly at kristian@pressonetwork.com.