Privacy Policy
Last updated: October 2, 2026
1. Who we are
Wildfire (wildfire.tickets, formerly EarlyAccess) is a service operated by Socialista, Casembrootstraat 60RD, 1972CC IJmuiden, the Netherlands (KvK 61396478). Wildfire lets event promoters collect pre-registrations and notify registrants via WhatsApp and email when ticket sales start, and lets customers order tickets through WhatsApp. Socialista is the data controller for the purposes of this policy. For questions about this policy or your data, contact us at [email protected].
2. Data we collect
Promoter accounts: name, company name, email address, and billing details (processed by Stripe). Registrants and customers: first and last name, phone number, email address, and any answers submitted in registration forms. WhatsApp ordering: the messages you exchange with a promoter's WhatsApp number during an order conversation, your ticket selection, and order status. Demo requests: the name, email address and phone number you enter in the Book a demo form on wildfire.tickets, used only to contact you about a demo. Technical data: IP address at registration (for abuse prevention).
3. How we use data
We use registrant data solely to deliver the service the promoter configured: sending ticket-sale notifications, processing ticket orders via WhatsApp, and delivering order confirmations. We do not sell personal data or use it for advertising.
4. WhatsApp and Meta platform data
When you message a promoter's WhatsApp Business number, messages are processed through the Meta WhatsApp Business Platform on the promoter's behalf. We process message content only to operate the ordering conversation, and we store conversation state and order details. Promoter access tokens for the WhatsApp Business Platform are stored encrypted.
5. Third parties
We share data only with the processors needed to run the service: Supabase (database and authentication, data encrypted at rest), Meta Platforms (WhatsApp message delivery), Weeztix (ticket issuing and payment processing for WhatsApp orders), Stripe (promoter billing), SendGrid (transactional email), Contabo (server hosting), and Cloudflare (network delivery and security). Each processor receives only the data required for its function.
6. Storage and security
Registrant and customer phone numbers and email addresses are encrypted at rest. Access tokens are stored in an encrypted vault. Data is retained for as long as the promoter's account or event requires it, after which it is deleted.
7. Your rights (GDPR)
You have the right to access, correct, export, or delete your personal data, and to object to or restrict processing. To exercise these rights, contact us at [email protected] or use the data deletion endpoint at earlyaccess.nl/api/account/delete. We respond within 30 days.
8. Data deletion
Promoters can delete their account and connected data at any time from their account settings. Registrants and customers can request deletion of their data via the contact email above; we will remove their personal data from our systems and instruct our processors to do the same.
9. Changes
We may update this policy as the service evolves. The latest version is always available at wildfire.tickets/privacy.