This Privacy Policy explains how Northbridge Event Marketing Ltd (“we”, “us”, “our”) collects, uses, stores, shares, and protects personal data when you interact with us, including through our websites, landing pages, forms, email communications, telephone communications, event registrations, marketing campaigns, and other services related to our event-marketing business.
1. Introduction and company information
Northbridge Event Marketing Ltd is the data controller responsible for the personal data described in this Privacy Policy.
Company name: Northbridge Event Marketing Ltd
Address: Northbridge Events, 24 Victoria Road, Manchester M12 5GH, United Kingdom
Email: [email protected]
Phone: +44 161 924 7583
This Privacy Policy applies to personal data processed in connection with our event-marketing activities, including the promotion, organisation, management, measurement, and follow-up of events, campaigns, lead-generation activities, sponsorship outreach, attendee communications, and related services.
2. Data collection and processing
We may collect and process the following categories of personal data:
- Identity data: name, title, employer, job role, and professional identifiers.
- Contact data: email address, telephone number, postal address, and business contact details.
- Event and registration data: event preferences, attendance records, ticketing details, dietary requirements, accessibility needs, and check-in information.
- Marketing and communication data: subscription preferences, responses to campaigns, engagement with emails, click-through activity, and communication history.
- Technical data: IP address, device information, browser type, operating system, log data, and cookies or similar technologies.
- Transaction and payment data: billing details, payment status, and records of purchases or services, where applicable.
- Profile and segmentation data: interests, engagement profiles, and inferred preferences used to tailor marketing communications.
- Special category data: only where necessary and lawful, such as accessibility or dietary information provided for event participation.
We collect personal data directly from you, from your employer or organisation, from event platforms and registration systems, from business partners, from publicly available sources, and from service providers that support our operations.
3. Purpose of data processing
We process personal data for the following purposes:
- to register and manage event attendance;
- to communicate with attendees, prospects, clients, sponsors, speakers, and partners;
- to deliver marketing campaigns and promotional materials;
- to personalise event experiences and communication;
- to organise logistics, accessibility arrangements, and operational support;
- to analyse campaign performance, audience engagement, and event outcomes;
- to administer billing, record-keeping, and contractual relationships;
- to comply with legal and regulatory obligations;
- to prevent fraud, misuse, and unauthorised access; and
- to establish, exercise, or defend legal claims.
4. Legal basis for processing
We process personal data only where we have a valid legal basis. Depending on the context, this may include:
- Consent: where you have given clear consent, for example for certain marketing communications or optional event preferences.
- Contract: where processing is necessary to perform a contract or to take steps at your request before entering into a contract.
- Legal obligation: where processing is required to comply with applicable law, regulation, or lawful requests.
- Legitimate interests: where processing is necessary for our legitimate business interests, such as event marketing, audience analysis, service improvement, fraud prevention, and business administration, provided those interests are not overridden by your rights and freedoms.
- Vital interests: where processing is necessary to protect someone’s life or physical safety in exceptional circumstances.
Where we process special category data, we will do so only where permitted by applicable law and subject to additional safeguards and lawful conditions.
5. Data sharing and third parties
We may share personal data with trusted third parties where necessary for the purposes described in this Privacy Policy. These may include:
- event registration and ticketing platforms;
- email marketing and customer relationship management providers;
- payment processors and invoicing providers;
- IT hosting, cloud storage, analytics, and security providers;
- venue operators, logistics partners, caterers, and event production suppliers;
- professional advisers such as lawyers, accountants, auditors, and insurers;
- public authorities, regulators, courts, and law enforcement where required; and
- other business partners, sponsors, or co-hosts where this is necessary for event delivery or where you have been informed or consented where required.
We require third parties to process personal data securely and only for specified purposes, subject to appropriate confidentiality and data protection obligations.
6. Data transfer to third countries
Where personal data is transferred outside the United Kingdom and/or the European Economic Area, we will take appropriate steps to ensure that your data receives an adequate level of protection. These steps may include:
- transferring data to countries recognized as providing adequate protection;
- using standard contractual clauses or equivalent safeguards;
- applying additional technical and organisational measures where necessary; and
- conducting assessments of transfer risks where required by applicable law.
By using our services or interacting with our event-marketing activities, you acknowledge that some service providers may process data in jurisdictions outside your home country, subject to appropriate safeguards.
7. Storage duration
We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including legal, accounting, reporting, and compliance requirements.
- Marketing and engagement data: retained until you opt out, unsubscribe, or the data is no longer needed for our legitimate purposes.
- Contractual and billing records: retained for the period required under applicable commercial and tax laws.
- Event records: retained for a reasonable period after the event to manage follow-up, feedback, compliance, and dispute resolution.
- Consent records: retained as evidence of your consent and preferences.
When personal data is no longer needed, we will delete, anonymise, or securely archive it in accordance with our retention practices.
8. User rights
Subject to applicable law, you may have the following rights in relation to your personal data:
- Access: to request confirmation of whether we process your personal data and to obtain a copy of it.
- Rectification: to request correction of inaccurate or incomplete personal data.
- Erasure: to request deletion of your personal data in certain circumstances.
- Restriction: to request limitation of processing in certain circumstances.
- Data portability: to receive your personal data in a structured, commonly used, machine-readable format and to request transfer to another controller where technically feasible.
- Objection: to object to processing based on legitimate interests and to object at any time to direct marketing.
To exercise your rights, please contact us using the details provided below. We may need to verify your identity before responding. We will respond within any timeframe required by applicable law.
9. Withdrawal of consent
Where we rely on your consent to process personal data, you have the right to withdraw that consent at any time. Withdrawal of consent will not affect the lawfulness of processing carried out before withdrawal.
You can withdraw consent by using the unsubscribe link in communications, adjusting your preferences where available, or contacting us directly at [email protected]. If you withdraw consent, we may still be able to process your personal data where we have another lawful basis.
10. Right to complain
If you have concerns about how we handle your personal data, we encourage you to contact us first so that we can try to resolve the issue.
You may also have the right to lodge a complaint with a supervisory authority in your country or region. In the United Kingdom, the relevant authority is the Information Commissioner's Office (ICO). Details of how to complain can be found on the ICO website.
11. Data security
We use appropriate technical and organisational measures to protect personal data against unauthorised access, accidental loss, destruction, alteration, or disclosure. These measures may include:
- access controls and role-based permissions;
- encryption and secure transmission methods where appropriate;
- secure hosting and backup procedures;
- staff confidentiality obligations and training;
- vendor due diligence and contractual safeguards; and
- incident response and security monitoring practices.
No method of transmission or storage is completely secure, and we cannot guarantee absolute security. However, we continuously review and improve our safeguards to reduce risk.
12. Contact information
If you have any questions, requests, or concerns regarding this Privacy Policy or our processing of personal data, please contact:
Northbridge Event Marketing Ltd
Northbridge Events, 24 Victoria Road, Manchester M12 5GH, United Kingdom
Email: [email protected]
Phone: +44 161 924 7583
13. Changes to privacy policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or business operations. Any updated version will be posted on our website or otherwise made available to you, and the revised policy will apply from the date of publication unless stated otherwise.
We encourage you to review this Privacy Policy periodically to stay informed about how Northbridge Event Marketing Ltd processes personal data.