GigStage legal
Privacy Policy
How GigStage collects, uses, shares, stores, and protects personal information.
GigStage respects your privacy. This Policy describes personal-information practices for the website, Artist accounts, Artist Pages, Live Gigs, audience interactions, payments, support, authentication, and related services.
1. About this Policy
In this Policy, GigStage, we, us, and our refer to GigStage. Artist means a person or organization operating an Artist account. Audience member means a person using an audience-facing GigStage feature.
2. Privacy contact
Questions, access requests, correction requests, deletion requests, and privacy complaints may be sent to support@gigstagelive.com.
3. Information Artists provide
GigStage does not need an Artist's precise home address for public profiles or broad geographic summaries.
Passwords are managed through the authentication provider and are not displayed or stored by GigStage in readable form.
- Email address and authentication information.
- Artist or group name, biography, images, logo, broad home base, social links, website links, and music links.
- Gig, calendar, song-library, setlist, original-music, artwork, and related metadata.
- Preferences, settings, Stripe connection status, and support communications.
- Legal-document acceptance and account-administration history.
4. Public Artist information
Artists decide what information to publish. Published information may include Artist name, biography, images, broad home base, public links, public gig information, original music, and audience-access links.
Artists should not publish information they do not want available publicly. Unpublishing may not immediately remove cached copies held by browsers, search engines, or third parties.
5. Audience information
Audience members generally do not need a permanent GigStage account.
Audience members should not submit sensitive personal information in a request or shoutout.
- Optional name or nickname.
- Song request, shoutout message, selected amount, Artist, Live Gig, and submission time.
- Transaction, refund, dispute, or payment-status references.
- Device, browser, network, rate-limit, fraud-prevention, and security signals.
6. Payment information
Stripe processes payments and connected Artist accounts. GigStage may receive limited payment information such as transaction identifiers, amount, currency, status, application fees, refunds, disputes, connected-account status, and fraud or risk information made available to the platform.
GigStage does not receive or store complete payment-card numbers, card security codes, bank-login credentials, or complete Artist bank-account details.
7. Technical and security information
GigStage may hash or pseudonymize identifiers used for rate limiting, abuse prevention, security logging, and advertising measurement.
- IP address, browser, device type, operating system, and referral information.
- Pages and features accessed, timestamps, session information, errors, and performance logs.
- Authentication events, suspicious signup activity, rate-limit activity, and connection status.
- Website visit and advertising-measurement information, such as referral information, browser identifiers, and whether an Artist registration was completed.
8. Support and administrative information
Support records may include a name, email address, message contents, attachments, related account or transaction information, internal support notes, and actions taken.
Owner-only administrative records may include suspension, restoration, complimentary access, legal acceptance, refund support, communication history, and audit records.
9. Legal acceptance records
When GigStage implements legal acceptance, records may include the user and Artist identifiers, email at acceptance, document name, version, effective date, acceptance timestamp, source, archived content or content hash, and limited technical evidence.
These records help establish which terms applied at a particular time.
10. How GigStage uses information
- Create, authenticate, verify, support, secure, suspend, restore, and close accounts.
- Publish Artist Pages and operate Live Gigs, requests, shoutouts, tipping, payments, refunds, disputes, and earnings displays.
- Provide transactional emails and customer support.
- Prevent fraud, spam, abuse, unauthorized access, and platform disruption.
- Maintain legal, financial, audit, and security records.
- Analyze reliability, troubleshoot, improve GigStage, comply with law, and protect rights and safety.
- Measure whether GigStage advertising leads to website visits and Artist registrations, and improve the performance of GigStage marketing.
11. When information is shared
GigStage may share personal information with service providers, Stripe, the relevant Artist where needed for an audience interaction, the individual who submitted it, parties involved in fraud or security investigations, legal authorities, or participants in a business transfer where permitted or required.
GigStage does not sell or rent personal information to advertisers or data brokers.
Private Artist and audience email addresses will not ordinarily be disclosed to each other.
12. Service providers
- Neon for authentication and PostgreSQL database services.
- Cloudflare R2 for media and object storage.
- Stripe for connected accounts, payments, refunds, disputes, fraud prevention, and payouts.
- Vercel for website and application hosting and server-side application functions.
- Resend for authentication and transactional email.
- Porkbun for domain services and incoming support-email forwarding.
- SMTP2GO for outgoing support email.
- Google or Gmail for receiving and managing support correspondence.
- Meta for limited advertising measurement and attribution through Meta Pixel and the Meta Conversions API.
- Other infrastructure, security, analytics, and professional-service providers added as GigStage develops.
13. Processing outside Canada
Some providers are located in, or use infrastructure and subprocessors located in, the United States and potentially other countries.
Information processed outside Canada may be subject to the laws of the country where it is processed and may be accessible to courts, law-enforcement agencies, or national-security authorities under those laws.
GigStage remains accountable for information transferred to service providers and will use reasonable contractual, technical, and organizational measures.
14. Consent and choices
GigStage obtains consent through methods appropriate to the context, including signup acceptance, privacy acknowledgements, just-in-time audience notices, payment acknowledgements, optional settings, and separate optional marketing consent.
Withdrawal of optional consent may make an optional feature unavailable. Information necessary for accounts, payments, fraud prevention, law, or contracts may continue to be used where legally permitted.
15. Cookies and similar technologies
GigStage uses essential cookies and similar technologies for secure sessions, sign-in, required settings, abuse prevention, and core functionality.
GigStage uses limited measurement tools, including Meta Pixel on public marketing and signup pages, to understand website visits and whether GigStage advertising leads to Artist registrations.
When an Artist account is successfully created, GigStage may send Meta a registration event through the Meta Conversions API. This may include limited browser identifiers and hashed versions of the Artist's email address and GigStage account identifier so the registration can be attributed to advertising.
GigStage does not send passwords, payment-card details, date of birth, song requests, shoutout content, or Live Gig dashboard activity to Meta for this measurement.
Where consent or a choice is required for non-essential cookies or similar technologies, GigStage will provide an appropriate notice and option.
16. Transactional and marketing emails
GigStage may send transactional messages concerning account confirmation, password resets, security, account changes, payments, refunds, disputes, support, suspension, legal updates, and service operation.
Promotional messages will use a separate consent process where required and will include an unsubscribe method.
17. Information security
No internet service can guarantee absolute security. Users are responsible for protecting passwords and promptly reporting suspected unauthorized access.
- Authentication and email verification.
- Access restrictions and row-level database controls.
- Encrypted provider connections and protected credentials.
- Server validation, rate limiting, suspicious-activity monitoring, and hashed security identifiers.
- Limited administrative access, audit records, backups, and recovery measures.
18. Retention and deletion
GigStage retains personal information only as long as reasonably necessary for the purposes described in this Policy.
Retention depends on account status, the nature of the information, legal and accounting obligations, payment requirements, refunds, disputes, fraud concerns, support history, backups, limitation periods, and enforcement needs.
When information is no longer reasonably required, GigStage will delete, securely destroy, or anonymize it, subject to backup cycles and legal requirements.
19. Access and correction
Individuals may request access to personal information held by GigStage and correction of inaccurate information by contacting support@gigstagelive.com.
GigStage may verify identity and may limit access where disclosure would reveal another person's information, compromise security, violate privilege, interfere with an investigation, or be restricted by law.
Some Stripe information must be accessed or corrected directly through Stripe.
20. Account closure
After Artist account closure, public access may be disabled, content may be deleted or scheduled for deletion, and Live Gig features will stop.
GigStage may retain limited legal, payment, fraud, security, audit, acceptance, and dispute records where reasonably required.
21. Children and younger users
An Artist under 18 must have permission from a parent or legal guardian to use GigStage.
Audience tools may be used at live events without a permanent audience profile. A child who cannot provide meaningful privacy consent must not submit personal information without a parent or legal guardian's involvement.
Younger audience members should use a nickname, avoid private details, and involve a parent or guardian when making a payment.
22. Privacy incidents
GigStage will investigate suspected loss, unauthorized access, or disclosure. Where required, GigStage will notify affected individuals and the appropriate regulator.
GigStage may secure systems, reset credentials, restrict access, preserve evidence, contact providers, and improve safeguards.
23. Changes to this Policy
Each version will show a version number, effective date, and last-updated date.
Material changes may be announced through email, dashboard notices, service notices, or renewed acknowledgement or consent where required.
24. Contact and complaints
Privacy questions or complaints may be sent to GigStage at support@gigstagelive.com. Individuals may also have the right to contact the appropriate provincial or federal privacy regulator.
Contact