Privacy Policy
Effective date: April 27, 2026
This Privacy Policy describes how Companion App LLC (“Companion,” “we,” “us,” or “our”) collects, uses, and shares information across our Services. We are based in Florida, United States.
1. Scope
This Policy covers the marketing site at yourcompanion.io (including the waitlist and contact forms) and the companion. dashboard application at dashboard.yourcompanion.io (the coordination platform for live event production), together “the Services.”
2. Information we collect
Account information. When an account is created — by an administrator, by invitation, or through self-registration — we collect your name, email, and authentication credentials, plus any optional details you choose to provide such as a phone number or profile photo.
Content you create through the Services. Information you and other members of your Organization create, share, or store within the dashboard for event coordination — such as messages, files, event details, and talent profiles. We refer to this collectively as “Content.” You retain ownership of your Content; the license you grant us to host and process it is described in our Terms of Service.
Waitlist submissions. When you submit our waitlist form, we collect your first and last name, email address, organization, role, and industry.
Contact form submissions. When you submit our contact form, we collect your first and last name, email address, and message text.
Usage and device data. Our hosting provider processes standard server logs when you visit the Services, including IP address, user agent, timestamp, and pages visited. When you sign in to the dashboard, we set an authentication session cookie that keeps you signed in. If you enable browser push notifications, we receive a unique subscription identifier from your browser so we can deliver notifications to your device.
Operational metadata. We maintain audit logs of administrative actions taken within the dashboard (for example, role changes, deletions, exports). When the application encounters an error, we collect error metadata such as stack traces and request metadata, but not the content of your messages, files, or talent profiles.
Aggregate usage analytics.When you visit the marketing site, we collect anonymized usage data such as page views, referrer, browser type, and approximate location at the country level so we can understand how visitors find us and which content resonates. This data is held in your browser's local storage rather than cookies, is not used to build behavioral profiles or run advertising, and is not shared with third parties for marketing purposes. We do not currently use analytics or behavioral tracking on the dashboard application.
3. How we use your information
We use the information we collect to:
- Provide, operate, secure, and improve the Services
- Send transactional email, browser push notifications, and calendar feed updates that you have enabled or that are necessary to operate the Services
- Authenticate users and enforce role-based access within an Organization
- Maintain security, monitor for abuse, and prevent fraud
- Notify you when access opens (waitlist) or respond to your inquiries (contact form)
- Comply with applicable law and respond to lawful requests
We do not sell your information. We do not share it with third parties for their own advertising or marketing purposes.
4. Lawful basis for processing
Where applicable law (such as the GDPR or UK GDPR) requires a lawful basis for processing personal data, we rely on:
- Contract performance — to provide the Services to you and to your Organization
- Legitimate interest — to keep the Services secure, available, and reliable (server logs, error monitoring, audit logs, rate limiting)
- Consent — for processing that depends on your active consent, such as enabling push notifications. You may withdraw consent at any time.
- Legal obligation — where we are required by law to process or retain certain information
5. Cookies and similar technologies
The Services use the following:
- Authentication session cookie — set when you sign in to the dashboard; required for the Services to function. The cookie is HTTP-only and Secure.
The marketing site stores a small amount of analytics data in your browser's local storage (described in Section 2) to deduplicate and group page views from the same visit. This is not a cookie and is not used for advertising. We do not set advertising or cross-site tracking technologies on the Services.
6. Service providers
We rely on third-party service providers to operate the Services, including for hosting, data storage, transactional email, aggregate usage analytics, error monitoring, and other operational functions. These providers process information only to provide their services to us, subject to their own privacy practices and contractual obligations. Our error monitoring tools receive application error metadata only — not the content of your messages, files, or talent profiles — and session-replay features are not enabled.
A current list of our specific subprocessors is available on request by emailing contact@yourcompanion.io.
7. Sharing with other parties
We share information with the service providers listed in Section 6 to operate the Services. Beyond that, your Content within an Organization may be visible to other authorized members of that Organization in line with the role-based access controls you have configured.
We may disclose information when we believe in good faith that disclosure is required to comply with applicable law, respond to lawful requests, enforce our Terms, or protect the safety of our users or the public.
We do not sell your information.
8. International transfers
We operate from the United States. Some of our service providers may process information in regions outside your country of residence. Where international transfers occur, we rely on standard contractual clauses or equivalent safeguards as required by applicable law.
9. Data retention
We retain account information and Content while your account is active. When your account is deleted, we remove or anonymize associated personal data subject to legal and operational retention obligations. Content you have shared within an Organization may remain accessible to other authorized members of that Organization until they remove it.
10. Security
We use industry-standard administrative, technical, and organizational safeguards designed to protect the personal information we process, including encryption in transit and at rest, password hashing, security headers, and rate limiting on authentication endpoints. To report a security concern, email contact@yourcompanion.io.
11. Your rights
You may at any time:
- Request a copy of the personal data we hold about you
- Ask us to correct inaccurate data
- Ask us to delete your data, subject to the retention exceptions in Section 9
- Object to or restrict our processing on grounds permitted by applicable law
- Withdraw consent for processing based on your consent (such as push notifications)
- Receive your personal data in a portable format where applicable law requires
To exercise any of these rights, email contact@yourcompanion.io. We will respond within 30 days.
If you are in the European Economic Area, the United Kingdom, California, or another jurisdiction with applicable data protection laws (such as GDPR or CCPA), the rights above are available to you under those laws. You may also have the right to lodge a complaint with your local supervisory authority.
12. Push notifications and calendar feeds
If you enable browser push notifications, your browser shares a unique subscription identifier with us so we can deliver operational messages to your device. You can disable push notifications at any time through your browser settings.
When you subscribe to an event or group calendar, your calendar application periodically fetches an iCal feed from our servers. The feed URL contains a unique token; anyone with that URL can view the calendar contents, so we recommend keeping it private.
13. Future location features
Some features under development may use your device's location with your explicit opt-in consent (for example, to coordinate driver routes or task arrival). We will provide additional disclosures and consent prompts before any location-based feature becomes available, and you will be able to withdraw consent at any time.
14. Children's privacy
The Services are intended for use by professionals coordinating live events. They are not directed at children under 16, and we do not knowingly collect personal data from children under 16. If you believe a child under 16 has provided us with personal data, please email contact@yourcompanion.io so we can remove it.
15. Changes to this Policy
We may update this Privacy Policy from time to time. The “Effective date” above will reflect the most recent change. If we make material changes, we will take reasonable steps to notify you, including via in-app notice or email to the address associated with your account.
16. Contact
Companion App LLC
Florida, United States
contact@yourcompanion.io