Version 2026-07-20-v4
Privacy Notice
Reception Los Angeles ("Reception," "we," "us," or "our") is the controller responsible for the personal information described in this Notice. This Notice applies when you use our website, mobile application, waitlist, ticketing, guest-list, and related digital services (the "Services"). It does not cover Reception personnel or job applicants. Contact us at privacy@thereception.la.
Notice at collection
Depending on how you use the Services, we collect these categories:
- Identifiers and contact information: name, email, phone number, verified-contact status, social-media handles, and transaction, invitation, device-session, or account identifiers.
- Demographic information: age and sex when you submit a waitlist application.
- Application and communications content: biography, LinkedIn profile, referral information, concierge requests, invitation details, reports, notes, and messages you choose to provide.
- Commercial and event information: ticket type, quantity, event, amount, currency, payment status, refunds, guest-list status, and check-in time. Reception does not store full payment-card details.
- Internet and security information: IP address and basic request, device, browser, and log information processed by our hosting and security systems. Abuse-prevention identifiers used by Reception are keyed hashes rather than raw IP addresses.
- Privacy-request information: request type, verification status, correspondence, and resolution records.
- Member and event-network information: profile visibility, event attendance intent and arrival status, circles, connections, introduction requests, blocks, safety reports, and invited guests.
We use these categories to process applications and purchases, administer events, communicate with you, prevent fraud, secure and improve the Services, comply with law, and handle privacy requests. We retain each category only as described in "Retention" below. We do not sell personal information or share it for cross-context behavioral advertising.
Sources of information
We collect information directly from you; from payment, hosting, email, ticketing, or reservation providers involved in a transaction you request; automatically from basic service and security logs; and from a public social-media profile when you choose to identify or link that profile. If you provide information about another person, you represent that you are authorized to do so.
How and why we use information
- receive, review, and administer waitlist and guest-list requests;
- process tickets, refundable fees, confirmations, refunds, and check-in;
- send application, transaction, event, security, and support messages;
- authenticate members and administrators and manage verified account contacts;
- provide tickets, invitations, concierge tools, circles, and opt-in event networking;
- moderate reports, blocks, introductions, and other member-safety features;
- detect abuse, fraud, duplicate submissions, and technical failures;
- comply with accounting, tax, legal-process, and regulatory obligations;
- establish, exercise, or defend legal claims and enforce our terms; and
- respond to and document privacy requests.
We do not use waitlist information for unrelated advertising, and we do not send marketing communications unless you separately request or consent to them where required. Information marked required is necessary to process the relevant application or transaction; without it, we may be unable to provide that service.
EEA and UK legal bases
Where European data-protection law applies, we process information to take steps at your request and perform a contract; for our legitimate interests in operating, securing, and improving the Services and preventing fraud; to comply with legal obligations; and, where stated, with your consent. We balance legitimate interests against your rights. You may withdraw consent at any time without affecting prior lawful processing.
When we disclose information
We disclose only what is reasonably necessary to:
- Service providers: DigitalOcean for hosting and managed database services, Stripe for payment processing, Twilio for text-message verification, Resend for operational email, and providers supporting ticketing, reservations, security, maps, transportation links, and professional advice.
- Other members and invited guests: profile information you deliberately make visible for an event, an introduction you request or accept, and the limited invitation information needed to deliver and claim an invite. Profiles remain private unless the applicable visibility control is enabled.
- Legal and safety recipients: courts, regulators, law enforcement, insurers, or other parties when required by law or reasonably necessary to protect rights, safety, property, or the integrity of the Services.
- Business transactions: advisers and a successor in connection with a proposed or completed financing, merger, acquisition, reorganization, or sale, subject to appropriate confidentiality and legal requirements.
- At your direction: a recipient you ask us to contact or a service you choose to connect.
Providers are permitted to process information only for contracted services and legal obligations. We do not disclose text-message opt-in information to third parties for their marketing.
Cookies, analytics, and advertising
Reception currently uses no third-party advertising pixels and does not use the public waitlist for cross-site behavioral advertising. Strictly necessary cookies are used for authenticated web sessions, and the mobile application stores a revocable session token in the device's protected credential storage. Hosting and security providers may process standard request logs. Because we do not currently sell or share personal information for targeted advertising, an opt-out preference signal such as Global Privacy Control does not change our present practices. If those practices change, we will update this Notice, provide required choices, and honor legally recognized signals where required.
Retention
- Identifiable waitlist applications are kept for up to 12 months. Expired unpaid applications are deleted. For paid or refunded applications, profile and contact fields are anonymized and only necessary transaction evidence is retained.
- Guest-list information is generally kept for no more than 12 months after the event unless needed for an active security issue, dispute, or legal obligation.
- Ticket, payment, refund, and accounting records are kept for the applicable chargeback, tax, accounting, fraud-prevention, and legal-claims periods, generally no longer than seven years.
- Privacy-request records are kept for up to three years so we can demonstrate how the request was handled.
- One-time-code challenges are removed after their short expiration and cleanup period. Revoked or expired member sessions are generally removed within 30 days.
- Member profiles, consents, event preferences, connections, circles, invitations, and concierge records are generally kept while the account is active. On account deletion, direct profile and contact identifiers are removed or de-identified, subject to transaction, safety, dispute, and legal-retention needs.
- Reception's pseudonymous abuse-prevention buckets are removed after seven days, unless relevant to an active security investigation.
We may retain a minimal record longer when required by law, necessary to complete a transaction, resolve a dispute, prevent fraud, or establish legal rights. We delete or de-identify information when the applicable period ends.
U.S. state privacy rights
Depending on your state, you may have rights to know or access information, correct inaccuracies, delete information, receive a portable copy, opt out of sale, sharing, targeted advertising or qualifying profiling, limit certain uses of sensitive information, withdraw consent, and appeal a denied request. You may also have the right not to receive discriminatory treatment for exercising a privacy right.
An authorized agent may submit a request where permitted by law. We may ask for proof of authority and may verify your identity directly. We verify requests using information already associated with your Reception interaction and will not ask for unnecessary government identification. If we deny a request, you may select "Appeal" below or reply to our response. We respond within the period required by applicable law.
California disclosures
The categories collected and their purposes are listed in "Notice at collection." The categories disclosed for business purposes may include identifiers, demographic information, commercial information, Internet or network activity, and application content, disclosed to the provider categories described above. During the preceding 12 months, Reception has not sold personal information, shared it for cross-context behavioral advertising, or disclosed it to third parties for their own direct marketing. Reception does not offer a financial incentive or price difference in exchange for personal information and does not knowingly sell or share information about anyone under 16.
California residents may request access to categories and specific pieces of information, sources, purposes, and recipient categories; correction; deletion; and information about disclosures. California's Shine the Light law may also permit a request concerning disclosures for third-party direct marketing; Reception makes no such disclosures. These rights remain subject to legal exceptions.
EEA and UK rights
Where applicable, you may request access, correction, deletion, restriction, portability, or object to processing, including direct marketing. You may withdraw consent and complain to your local data-protection authority. Reception does not use solely automated decision-making, including profiling, to make decisions that produce legal or similarly significant effects. Waitlist review is performed by people.
International transfers
Reception operates from the United States, and information may be processed in the United States or another country where a disclosed provider operates. Where EEA or UK information is transferred to a country without an applicable adequacy decision, we use approved contractual safeguards or another lawful transfer mechanism and apply supplementary safeguards where required.
Security
Reception uses administrative, technical, and organizational safeguards designed to protect personal information, including encrypted transport, encrypted managed storage, verified database certificates, access controls, rate limits, signed sessions, and audit records. No transmission or storage system is guaranteed to be completely secure. If you believe your interaction with Reception is no longer secure, contact us promptly.
Member visibility, safety, and invitations
Member profiles are private by default. If you enable event-scoped discovery, your display name, biography, city, selected social profile, attendance intent, and event may be shown to other eligible members for that event. You can disable visibility, decline an introduction, leave a circle, block another member, or submit a safety report. A member who invites a guest provides that guest's name and contact information so we can deliver and administer the private invitation. Invite links should not be forwarded.
Third-party services
Links to social-media, payment, ticketing, reservation, or other independent services are governed by those services' own privacy notices. Reception does not control their independent practices. Review their notices before providing information directly to them.
Age limit
The waitlist and Services are intended for adults at least 18 years old and are not directed to children under 13. We do not knowingly collect personal information from children under 13. Contact us to request deletion if you believe a child has provided information. Particular venues or alcohol-related events may be limited to guests age 21 or older.
Changes and contact
We may update this Notice when our practices, Services, or legal obligations change. The version date above identifies the current Notice. We will provide additional notice or request renewed acknowledgment when required. Questions may be sent to privacy@thereception.la. To request a postal contact address, use that email.
Submit a privacy request
Send a request below or email us. We will contact you at the submitted address to verify your identity before disclosing, correcting, or deleting information.