Presso Network
Legal

GDPR and Data Protection | Presso Network Limited

A Self-Serve Platform. A Privacy-First Promise.

At Presso Network Ltd, we operate a self-serve event platform for professional B2B event organisers, and protect personal data with the same care we apply to the rest of the product.

This document outlines how we uphold General Data Protection Regulation (GDPR) compliance while operating Presso Events, our event platform.


1. What is GDPR?

The General Data Protection Regulation (GDPR) is a legal framework that sets guidelines for the collection and processing of personal data of individuals within the United Kingdom, European Union (EU), and European Economic Area (EEA). It ensures transparency, security, and control over personal information.


2. Our Commitment to GDPR

Presso is a self-serve SaaS platform operated by our own team. We use no freelancers or agencies, and the service itself is built and maintained by Presso staff. The only third parties that process personal data on our behalf are the named infrastructure sub-processors listed in section 7, each under a data-processing agreement.

We uphold the following GDPR principles:

  • Lawfulness, Fairness, and Transparency
  • Purpose Limitation
  • Data Minimisation
  • Accuracy
  • Storage Limitation
  • Integrity and Confidentiality
  • Accountability

You own your data. We process it, protect it, and serve it on your terms.


3. Data We Collect

Only what’s essential, and only when essential.

  • Account Holder Contact Info: For platform access, support, billing
  • Attendee Data: Names, emails, ticketing details (stored securely in Presso’s database, scoped to your account)
  • Usage Logs: Performance metrics and anonymous analytics
  • Cookies: Optional, opt-in, and non-invasive

We do not profile, track, or monetise any user or attendee data.


Presso processes data under:

  • Contractual Obligation: Required to deliver the platform service you are subscribed to
  • User Consent: Always explicit and revocable
  • Legal Obligation: When required by law
  • Legitimate Interest: Platform diagnostics, fraud prevention, and security, always proportionate and minimised

We honour both the letter and spirit of GDPR.


5. Your Rights Under GDPR

As a data subject, you retain:

  • Right to Access
  • Right to Rectification
  • Right to Erasure
  • Right to Restrict Processing
  • Right to Data Portability
  • Right to Object
  • Right to Withdraw Consent
  • Right to Lodge a Complaint (via the UK Information Commissioner’s Office)

Presso responds to every request promptly and without quibble.


Consent isn’t assumed. It’s earned.

  • Clear Notices: No pre-ticked boxes
  • Active Opt-In: You choose, we record
  • Easy Exit: One-click revocation via your preferences or support
  • Always Transparent: Every cookie and form spells out its purpose

Our platforms never ask for more than they need.


7. Data Protection by Design

Built securely from day one.

  • Encryption in transit and at rest
  • Granular Access: Only authorised Presso personnel can access sensitive data, on a need-to-know basis
  • Named sub-processors: we use a small set of trusted processors, each under a data-processing agreement: Stripe (payments), WorkOS (authentication), Cloudflare (hosting and security), Neon (database) and Resend (email delivery)
  • Audit Trails: Sensitive actions are logged and monitored
  • Breach Response: Breach notifications initiated within 72 hours, per GDPR requirements

8. Platform Ownership and Privacy

You own your account, your event content, and your attendee data.

  • No account or data sharing between organisers
  • No vendor lock-in: data export available at any time
  • Subprocessors are disclosed; we do not sell or share data with undisclosed third parties

Data portability and your right to leave with your data are built in.


9. Updates to This Policy

We review our GDPR policy annually, or whenever the law or our processing changes. You’ll be notified of material updates. The most recent version is always available on our website.


10. Data Protection Officer

For data questions, requests, or rights exercises, contact:

Kristian Papadakis

Founder & DPO

📧 kristian@pressonetwork.com


11. Analytics & Cookies

We use Cloudflare Web Analytics, a privacy-first tool that doesn’t use cookies, track individuals, or store personal data. We don’t use Google Analytics, Meta Pixel, or third-party retargeting trackers on our marketing surfaces.

  • No fingerprinting
  • No selling data
  • No retargeting
  • No behavioural profiling for advertising

Cookies are optional and strictly opt-in. All cookie settings can be managed via our Consent Management Platform (CMP).


Privacy is a product decision.

Presso is built so that running professional events doesn’t require surrendering your attendees’ data to a third-party platform. If you run high-calibre events, you should expect high-calibre privacy.

Sign up at pressonetwork.com, or speak to Kristian directly at kristian@pressonetwork.com.