Draft. This document is under legal review and is not yet in force.

Privacy

Updated September 2026

Who is responsible

Nesspass is the controller of your personal data. Company name, registered address and Chamber of Commerce number to be added before launch.

Privacy questions and requests go to [email protected].

What we collect

  • Account: your email address, the name on your pass, and the identifier Apple or Google gives us if you sign in with them.
  • Membership: which membership or pack you bought, when, and Stripe's references for each payment. We never see your card details.
  • Tokens and reservations: your balance, the nights you reserved and when your ticket was scanned.
  • Your first-run answers: the kinds of night, city and how often you go out, if you answer.
  • Device: a push notification token, if you allow notifications.
  • Usage: screens viewed and actions taken in the app, with device model and app version, under a pseudonymous id.

Why, and on what basis

  • To run your account, membership, tokens and reservations, and to email you your tickets. This is needed for our contract with you (GDPR Article 6(1)(b)).
  • To keep financial records we are required to keep (Article 6(1)(c)).
  • To keep the service secure, prevent abuse and understand how the app is used so we can improve it. This is our legitimate interest (Article 6(1)(f)). You can object to analytics at any time by switching it off in the app.
  • To send push notifications, which you allow in your device settings.

Who processes it

We use these services, each under a data processing agreement where it acts for us:

  • Apple: Sign in with Apple, Apple Pay and push notifications. Location: United States, under the EU-US Data Privacy Framework.
  • Stripe: Takes membership and token pack payments by card, Apple Pay or iDEAL, and handles your card details. Receives your email address, to send your payment receipts. Location: European Union and United States, under the EU-US Data Privacy Framework.
  • Google: Sign in with Google, if you choose it. Location: United States, under the EU-US Data Privacy Framework.
  • booking-platform: Our ticketing, payment and token ledger service. Holds your token balance, tickets and door scans against a pseudonymous customer reference, and passes your email address to Stripe for your payment receipts. Location: European Union.
  • PostHog: Product analytics: which screens are used and where people stop. Pseudonymous, no session recordings. You can switch it off in the app. Location: European Union.
  • Email delivery provider: Sends your account and ticket emails. Location: European Union.
  • Hosting and storage provider: Runs our servers, database and image storage. Location: European Union.

Venues

Venues see whether a ticket is valid when they scan it. They do not receive your name, email or account.

How long we keep it

  • Account, tokens and reservations: until you delete your account.
  • Purchase and financial records: 7 years, as Dutch tax law requires.
  • Usage analytics: 12 months.

Your rights

You can ask to see, correct, export or delete your data, to restrict how we use it, or object to our use of it. In the app you can change the name on your pass, switch off analytics and delete your account. For anything else, write to the address above and we answer within one month.

You can also complain to the Dutch Data Protection Authority (Autoriteit Persoonsgegevens) or the authority where you live.

Security

Data travels encrypted. Sign-in tokens are stored in your device's keychain. Access to member data inside Nesspass is limited to staff who need it and is logged.

Changes

If this policy changes in a way that matters to you, we tell you by email or in the app before it takes effect.