1. Controller
Amuveo GmbH
[complete registered address]
Email: info@guestlst.com
This policy applies to the Guestlst website, application and related services. In some cases, a Guestlst customer decides why guest data is processed. In those cases, that customer is the controller and Amuveo processes the data on the customer's instructions.
2. Data we collect
- Account data: name, work email, organization, login details and billing information.
- Customer Content: guest names, contact details, registrations, ticket and reservation information uploaded by our customers.
- Usage and device data: IP address, browser, device, log data, pages viewed and general interaction data.
- Communications: messages and support requests you send to us.
3. How we use data
We use personal data to provide and secure Guestlst, manage accounts and subscriptions, process payments, support customers, send service communications, improve the product, prevent abuse and comply with legal obligations. We do not sell personal data.
4. Legal bases
Depending on the context, we process data because it is necessary to perform a contract, comply with a legal obligation, pursue legitimate interests such as security and product improvement, or because you have given consent. You may withdraw consent at any time where processing is based on consent.
5. Marketing, email and SMS
We send marketing communications only where permitted and provide an unsubscribe option. If a customer uses Guestlst to send newsletters or SMS, that customer is responsible for recipient permissions, notices and opt-outs. Transactional messages needed to deliver an event or service may still be sent.
6. Service providers and transfers
We use carefully selected providers for hosting, infrastructure, analytics, customer support, email, SMS and payment processing. They may process data only to provide their services to us and under appropriate contractual safeguards. The current provider list and international transfer safeguards should be maintained by Amuveo as vendors change.
7. Retention and security
We retain data for as long as needed to provide the Service, meet contractual and legal requirements, resolve disputes and enforce agreements. We use reasonable technical and organizational measures to protect data, but no online service can guarantee absolute security.
8. Your rights
Subject to applicable law, you may request access, correction, deletion, restriction or portability of your personal data, or object to particular processing. You may also complain to the competent data protection authority. To exercise a right, contact info@guestlst.com. We may need to verify your identity.
9. Cookies and analytics
Guestlst may use essential cookies or similar technologies to operate the site, remember preferences and protect accounts. Optional analytics or marketing technologies should be enabled only with the consent required in your jurisdiction. The site currently includes Google Analytics code; configure its consent mode, retention settings and vendor disclosures before production launch.
10. Children and third-party sites
Guestlst is a business service and is not directed to children. The Service may link to third-party websites or products. Their privacy practices are governed by their own notices, not this policy.
11. Changes and contact
We may update this policy when our services, providers or legal obligations change. We will publish the updated version here and provide additional notice where required.
Last updated: 24 September 2026