End user licence agreement
This End User Licence Agreement (“Agreement”) serves as the foundational legal contract between you (the “User”) and Eventogy Ltd, a company registered in London with its primary place of business at 301 The Record Hall, 16 Baldwin’s Gardens, London, EC1N 7RJ. This Agreement governs the scope of the “Attendee Service”, establishing the binding terms for access across all registration websites, attendee web applications, and mobile applications (iOS and Android). By accessing the service, you acknowledge that access is strictly contingent upon your acceptance of this contract and the specific licence grants contained herein.
1. About this Agreement & service scope
This Agreement establishes the legal framework for utilising Eventogy’s cloud-based marketing and events software. The jurisdictional reach of this service is global; consequently, these terms apply to all events hosted on the Eventogy platform, regardless of the physical location of the Event Organiser or the individual User. This centralised governance model ensures that all participants operate under a consistent legal and security framework, maintaining the stability of the international event portfolios managed within our ecosystem.
2. Licence grant & permitted use
Eventogy Ltd grants you a limited, non-exclusive, non-transferable, and revocable licence to access the Attendee Service. This grant is strategically designed to facilitate user participation while rigorously protecting Eventogy’s Intellectual Property (IP) in accordance with ISO 27001:2022 A5.32. Within this Agreement, Eventogy’s IP is defined to include all proprietary code, code contributions, and applications.
To preserve our competitive advantage and the integrity of the cloud-based platform, the following Strict Prohibitions (grounded in ISO 27001:2022 A5.10 and A5.32) are enforced:
- Reverse Engineering: You shall not decompile, reverse engineer, or attempt to derive the source code of any Eventogy application.
- Data Harvesting: Automated scraping or unauthorised redistribution of any portion of the service is strictly forbidden.
- Security Interference: Any attempt to circumvent security measures or perform unauthorised vulnerability scanning is a material breach.
- Redistribution: Sublicensing or leasing the service to third parties is prohibited.
3. User eligibility & account security
In alignment with ISO 27001:2022 A5.16, identity management is a critical preventive control utilised to mitigate unauthorised access. Users must be at least 16 years of age. Under our Shared Responsibility Model, while Eventogy secures the underlying infrastructure, you are held legally liable for all activity occurring under your unique User ID.
To meet the Eventogy Attendee Security Standard (exceeding the internal baseline of ISO 27001:2022 A5.17), your account must be secured by a password that meets the following criteria:
- Minimum of 12 characters
- Inclusion of alpha, numeric, and symbolic characters
- Strict prohibition of credential sharing
Failure to maintain these standards shifts the burden of liability for resulting security incidents directly to the User.
4. Acceptable use & zero-tolerance policy
This service is governed by Eventogy’s Acceptable Use Framework (ISO 27001:2022 A5.10), which mandates a safe and professional environment. We operate a Zero-Tolerance Policy regarding:
- Harassment: Abusive behaviour, bullying, or intimidation
- Objectionable Content: Transmission of defamatory, obscene, or infringing material
- System Integrity: Unauthorised scanning, penetration testing, or the transmission of unsolicited bulk email (spam)
These restrictions are essential to prevent the service from being brought into disrepute and to ensure continuous compliance with UK and EU statutory requirements.
5. User-generated content & sublicensing
While attendees retain ownership of their content, Eventogy requires a worldwide, royalty-free, non-exclusive licence to host, store, process, and display such content. This sub-licence is an operational necessity (ISO 27001:2022 A5.12) that enables Eventogy to fulfil its role as a “Data Processor” in facilitating event registration and attendee engagement on behalf of the Event Organiser.
6. Moderation, content reporting & user blocking
To satisfy OWASP standards and App Store safety requirements, Eventogy maintains active “detective” controls, including in-app features to block or report users. In accordance with ISO 27001:2022 A5.25 (Assessment and decision on information security events), we adhere to a tiered Service Level Agreement (SLA) for reviewing reported content:
| Severity | Review |
|---|---|
| High Severity (e.g. security threats, severe harassment) | 4-hour review |
| Medium Severity | 8-hour review |
| Low Severity | 24-hour review |
7. Account suspension & content removal
To protect the service ecosystem and comply with ISO 27001:2022 A6.4, Eventogy reserves the right to remove content or terminate access. This includes temporary suspensions for the duration of an investigation or permanent termination for “Zero-Tolerance” breaches. Actions may be triggered by policy violations, requests from the Event Organiser (the Data Controller), or legal mandates.
8. Maintenance, support & App Store distribution
Eventogy remains responsible for the maintenance and support of the distributed software (ISO 27001:2022 A5.37). For users accessing the service via third-party platforms, you acknowledge that Eventogy, not Apple Inc. or Google LLC, is solely responsible for the application and its content. This ensures our primary obligations to the user are not conflicted by third-party distribution terms.
9. Data privacy & processing roles
In accordance with UK/EU GDPR and ISO 27001:2022 A5.34, Eventogy utilises a “Privacy by Design” architecture.
- Roles: The Event Organiser is the Data Controller. Eventogy Ltd is the Data Processor.
- Classification: Personally Identifiable Information (PII) is classified as Highly Confidential. It is encrypted in transit and at rest and is never retained longer than necessary for the event’s specific purpose. Users retain the “right to be forgotten” and other statutory rights, which are detailed in the full Eventogy Privacy Policy.
10. Disclaimers & limitation of liability
The service is provided on an “as is” and “as available” basis. To manage organisational risk, Eventogy explicitly excludes liability for indirect, incidental, or consequential losses (ISO 27001:2022 A5.31). This commercial limitation does not seek to waive statutory consumer rights that are preserved and non-excludable under English law.
11. Governing law & jurisdiction
This Agreement is governed by the laws of England and Wales. The courts of England and Wales shall have exclusive jurisdiction over any disputes. This choice of law ensures global consistency and stability across our international event portfolio, maintaining a unified legal standard for all users.
12. Contact information
Maintaining a secure community is a shared responsibility. Security incidents, abuse, or breaches of these terms must be reported via the following channels:
- Security & Abuse Reporting: security@eventogy.com
- Formal Legal Notices: Eventogy Ltd, 301 The Record Hall, 16 Baldwin’s Gardens, London, EC1N 7RJ, United Kingdom
By accessing the Attendee Service, you signify your final acceptance of these terms and conditions.