Privacy policy
Effective 31 July 2026
1. General
This policy describes how personal data is processed when you use Gostelio. The service is owned by 3 Krolika LLP, BIN 251240001464, Republic of Kazakhstan, 010000, Astana, 4/1 Taras Shevchenko Street, premises 17. For users in Russia, the data operator is Individual Entrepreneur Ivan Vyacheslavovich Vaskov, TIN 661103103710.
2. Data we receive
Account and payment data; event details; guest names, contacts, responses, preferences and messages; uploaded photographs; and technical visit data. The organiser decides which guest data to add and must have a lawful basis for doing so.
3. Why we use it
To create and publish websites, manage guests and seating, collect RSVPs and greetings, process payments, provide support, maintain security and improve the service.
4. Sharing and retention
We share data only with infrastructure, storage, analytics and payment providers as needed to operate the service, or when required by law. Information deleted by a user is first placed in Trash for 21 days so that accidental deletion can be reversed and security or moderation incidents can be investigated. It is then permanently purged. A minimal content-free audit record may be retained for security, legal compliance and abuse prevention; mandatory accounting records are retained for the period required by law.
5. Your rights
You may request information, correction, deletion or withdrawal of consent by writing to support@gostelio.com. Some data may be retained where the law requires it.
6. Analytics choice
Analytics is disabled until you allow it. You can withdraw your choice on this device at any time; the service and your invitation websites will continue to work.
7. Security and updates
We apply organisational and technical safeguards. This policy may be updated; the current version is always published on this page.