Legal & Compliance

Privacy Policy

Your information, handled with the same care as your event.

Effective Date: To be filled at website launchLast Updated: To be filled at website launch

Plain English Version

Here’s what this policy says, in plain English

Only what you give us

We collect only the information you share when you contact us or book an event.

We never sell your data. Ever.

Your personal information is never sold, rented, or traded to anyone. Full stop.

Shared only to deliver your event

Vendors receive only what they need for your event — nothing more, nothing less.

You’re in control

You can see, correct, or delete your data. A real person handles every request.

A personal response, always

Our Grievance Officer Mr. Abeer Sekh responds personally within seven working days.

If anything is unclear, write to us at hello@purplecrownevents.com. The full policy below covers everything in legal detail.

01 — Who We Are

Who We Are

This Privacy Policy is published by Purple Crown Events Pvt. Ltd. (referred to in this policy as “Purple Crown Events,” “we,” “us,” or “our”), a private limited company incorporated in India and based in Dankuni, Hooghly, West Bengal.

We are the Data Fiduciary for the personal information described in this policy, as defined under the Digital Personal Data Protection Act, 2023 (“DPDP Act”) and the Digital Personal Data Protection Rules, 2025 (“DPDP Rules”).

This policy applies to:

  • Visitors to purplecrownevents.com
  • People who contact us through our website, WhatsApp, email, or phone
  • Clients who book events with us
  • Vendors and partners we work with on events

By using our website or services, you agree to the practices described in this policy. If you do not agree, please do not use our website or services.

02 — What We Collect

What Information We Collect

We collect three types of information.

A. Information You Provide Directly

When you contact us, fill out our enquiry form, book an event, or correspond with us, we may collect:

  • Full name
  • Phone number (and WhatsApp number)
  • Email address
  • Event type, event date, expected guest count, venue preferences, budget range
  • Any other information you choose to share with us about your event
  • Documents, photos, or references you send to help us plan your event

B. Information Collected Automatically

When you browse purplecrownevents.com, our systems automatically collect:

  • IP address and approximate geographic location (city or region level)
  • Browser type, operating system, and device type
  • Pages you visit, time spent on each page, and the page you arrived from
  • Date and time of your visit
  • Cookies and similar tracking technologies (see Section 04)

C. Information from Third Parties

In limited cases, we may receive information about you from:

  • Vendors and venue partners who refer prospective clients to us
  • Past clients who refer you to us
  • Public sources such as a company website or LinkedIn page, when you contact us as a corporate representative

03 — How We Use It

How We Use Your Information

We use your personal information for the specific purposes listed below.

PurposeWhat We Use
Replying to your enquiryName, contact details, event details
Sending you a proposal or quotationName, contact details, event details
Planning and coordinating your eventAll event-related information you share
Coordinating with vendors on your behalfRelevant event details (shared on a need-to-know basis)
Sending booking confirmations, contracts, and invoicesName, contact details, payment details
Responding to questions, complaints, and grievancesContact details and the relevant context
Improving our website and our serviceAnonymous usage data (cookies, analytics)
Sending occasional updates about our workEmail and phone — only if you opt in
Meeting our legal, tax, and accounting obligationsContract and payment records

We do not use your information for any purpose not listed above, unless we ask for your consent first.

04 — Cookies & Tracking

Cookies and Tracking Technologies

Our website uses cookies and similar technologies to help the site work, understand how visitors use it, and improve it over time.

What Cookies Are

Cookies are small text files placed on your device when you visit a website. They allow the site to remember things like your preferences and how you got there.

Cookies and Tools We Use

  • Strictly Necessary Cookies — required for the website to function. These cannot be turned off.
  • Google Analytics 4 — measures how visitors find and use our website. Used to improve the site.
  • Microsoft Clarity — records anonymous session data and heatmaps to help us understand which parts of the website people engage with.
  • Google Tag Manager — the system that loads our analytics and tracking tools.
  • Meta Pixel — may be used in future for advertising on Facebook and Instagram.

We may add similar tools in future. When we do, we will update this policy and re-publish it.

Your Choices

You can control cookies through your browser settings. Most browsers let you block all cookies, block third-party cookies, delete existing cookies, or receive a warning before a cookie is stored. If you block all cookies, parts of our website may not work as intended.

05 — How We Share

How We Share Your Information

We share personal information only in the following situations.

With Vendors for Your Event

To deliver your event, we share relevant details with caterers, decorators, photographers, videographers, florists, lighting and sound vendors, transport providers, venue and hotel partners, and religious officiants where applicable. We share only what each vendor needs to know to do their job. For example, a caterer is told the headcount and menu, not your full guest list.

With Service Providers Who Help Us Run Our Business

  • Hosting and email infrastructure — to operate our website and email
  • Analytics platforms — Google Analytics 4, Microsoft Clarity (data is anonymous)
  • Payment processors — to receive payments and refunds
  • Accounting and tax professionals — to comply with our legal obligations

These service providers are bound by their own privacy policies and our contracts with them, and may use your information only to provide the service we have engaged them for.

For Legal and Regulatory Reasons

We may disclose your information when required by law, including to comply with a court order, legal process, or government request; to protect our legal rights or those of our clients, vendors, or staff; or to detect, prevent, or address fraud, security, or technical issues.

What We Will Never Do

  • We do not sell your personal data to anyone
  • We do not rent or trade your personal data
  • We do not share your personal data with third-party advertisers, except through anonymous analytics described above
  • We do not use your event details for marketing without your separate written consent (see Section 06)

06 — Event Photography

Event Photography and Marketing Use

Photographs and videos taken during events you commission with Purple Crown Events may be used in our portfolio, on our website, on our social media accounts, and in our marketing materials. The specific terms of such use, including any restrictions you may want to apply, are agreed separately in your service contract before any event begins.

Nothing in this Privacy Policy overrides what is agreed in your service contract.

If you wish to revoke previously granted permission for the use of event photography or video, please write to us at hello@purplecrownevents.com. We will remove the relevant content from our active marketing channels within thirty days.

Please note that material already published in printed form, or shared on third-party platforms, may not be fully retrievable.

07 — Data Security

Data Security and Storage

We take the security of your personal information seriously and use reasonable safeguards to protect it.

Where Your Data Is Stored

Your data is stored on secure servers operated by reputable cloud and hosting providers. Most data is stored within India. Some service providers (such as Google, Microsoft, and Meta) may store data on servers outside India. See Section 09 for details.

How We Protect Your Data

  • Access to your data is restricted to authorised personnel who need it to do their work
  • We use encryption for data transmitted between your device and our website (HTTPS)
  • We require all third-party service providers to follow comparable security standards
  • We review our security practices regularly

No system on the internet is completely secure, and we cannot guarantee absolute security. If you suspect your data has been compromised through our systems, please write to our Grievance Officer immediately.

08 — Data Retention

Data Retention

We keep your personal information only as long as we need it for the purposes described in this policy, or as required by law.

Type of InformationHow Long We Keep It
Enquiries that did not lead to a bookingUp to 12 months from your last contact
Active client records (during event planning)For the duration of the engagement
Past client records (after event completion)Up to 7 years (for tax, contract, and warranty purposes)
Vendor recordsFor the duration of the working relationship + 3 years
Website analytics dataUp to 26 months (Google Analytics default)
CookiesPer the lifespan of each cookie (session or persistent)

After the retention period ends, we delete or anonymise the data, unless we are required by law to keep it longer.

09 — International Transfers

International Data Transfers

Some of the service providers we use (such as Google, Microsoft, and Meta) may store and process data on servers located outside India. When this happens, we ensure that the transfer is permitted under the DPDP Act and applicable Indian law, that the receiving country has adequate data protection standards, and that your data continues to be protected to the standard described in this policy.

If you are accessing our website from outside India — including from the European Union, the United Kingdom, or other regions — please note that your information will be transferred to and processed in India, where data protection laws may differ from those in your home country. By using our website, you consent to this transfer.

10 — Children's Privacy

Children's Privacy

Our website and services are not directed at children under the age of 18. We do not knowingly collect personal data from children under 18. If you are under 18, please do not submit any personal information through our website.

For events that involve the celebration of children — such as birthday parties, naming ceremonies, or family functions — we work only with the parent or guardian of the child as the contracting party. Any information about the child is provided by, and processed with the consent of, the parent or guardian.

If we discover that we have collected personal data from a child under 18 without verifiable parental consent, we will delete it. If you believe a child has provided us with personal information, please write to our Grievance Officer.

11 — Your Rights

Your Rights as a Data Principal

Under the DPDP Act, you have the following rights with respect to your personal data.

Right to Access

You can ask us what personal data we hold about you, and how we are using it.

Right to Correction

If your personal data is inaccurate or incomplete, you can ask us to correct or update it.

Right to Erasure

You can ask us to delete your personal data, unless we are required by law to keep it.

Right to Withdraw Consent

Where we are processing your data based on your consent, you can withdraw that consent at any time. Withdrawing consent does not affect the lawfulness of processing carried out before withdrawal.

Right to Nominate

You can nominate another person to exercise these rights on your behalf in case of your death or incapacity.

Right to Grievance Redressal

If you are not satisfied with how we have handled your data, you can raise a complaint with our Grievance Officer (see Section 13). If your concern is not resolved, you have the right to escalate it to the Data Protection Board of India.

12 — Exercising Your Rights

How to Exercise Your Rights

To exercise any of the rights described above, write to us at:

Email: hello@purplecrownevents.com
Subject line: Data Privacy Request

Please include:

  • Your full name and contact details
  • The specific right you want to exercise (access / correction / erasure / withdraw consent / etc.)
  • Enough detail to help us locate the relevant information

We will respond within seven (7) working days, in line with the DPDP Rules. In some cases — such as a complex erasure request involving multiple vendors — we may need additional time, in which case we will tell you why and how long it will take.

We do not charge a fee for processing your request, unless the request is manifestly unreasonable or repetitive.

13 — Grievance Officer

Grievance Officer

In line with the Information Technology Act, 2000 and the Digital Personal Data Protection Act, 2023, we have appointed a Grievance Officer to handle privacy-related concerns.

Mr. Abeer Sekh

Founder & Grievance Officer

Purple Crown Events Pvt. Ltd.
Dankuni, Hooghly, West Bengal

You can write to the Grievance Officer for any concern about how your data has been handled, a complaint about a breach of this policy, a request that has not been resolved through our usual contact email, or any escalation related to your privacy rights.

The Grievance Officer will acknowledge your message within 48 hours and respond substantively within seven (7) working days.

14 — Data Breach

Data Breach Notification

In the unlikely event of a data breach involving your personal information, we will:

  • Notify the Data Protection Board of India and you (where required) within 72 hours of becoming aware of the breach, in line with the DPDP Rules
  • Tell you what happened, what data was affected, and what we are doing about it
  • Recommend any steps you should take to protect yourself

15 — Policy Changes

Changes to This Policy

We may update this Privacy Policy from time to time. When we do:

  • We will update the “Last Updated” date at the top of the page
  • For significant changes, we will give clear notice on our website (and where appropriate, by email to active clients) before the change takes effect
  • We will keep an archive of previous versions on request

By continuing to use our website or services after a change, you accept the updated policy.

16 — Governing Law

Governing Law and Jurisdiction

This Privacy Policy is governed by the laws of India, including:

  • The Digital Personal Data Protection Act, 2023, and the DPDP Rules, 2025
  • The Information Technology Act, 2000, and the IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011
  • Other applicable Indian laws and regulations

Any dispute arising out of or related to this policy will be subject to the exclusive jurisdiction of the courts in Kolkata, West Bengal.

For visitors based in the European Union or the United Kingdom, we acknowledge the General Data Protection Regulation (GDPR) and the UK GDPR. While we are not established in the EU or UK, we make best efforts to handle your data in line with the principles of those regulations.

Contact Us

Questions? We’re here.

For any question about this policy, your data, or your privacy rights, reach us directly.