Privacy Notice
Last updated September 2026
This notice explains how Fairytale Frith Events ("we", "us"), the operator of FFE Event Studio, handles personal data. Fairytale Frith Events is the data controller for the personal data described here. You can reach us at hello@fairytalefrith.com.
Personal data we collect
- Account data — name, email address, phone number, login credentials and role within your organisation or event.
- Event and planning data — event dates, venue details, guest counts, budgets, questionnaire answers, task responses, uploaded documents and images you add to your event.
- Communications — inquiry form submissions, emails, meeting bookings, comments and support messages.
- Usage and device data — pages viewed, actions taken in the platform, timestamps, IP address, browser and device identifiers, and log data used for security.
Payment card details are never collected or stored by us. Checkout and card processing are handled by Stripe, our payment processor.
Why we use it, and our legal basis
- Creating and administering accounts and the client portal — performance of our contract with you.
- Delivering planning, design and coordination services for your event — performance of our contract.
- Sending service emails, reminders, proposals, invoices and digests — performance of our contract.
- Security, fraud prevention and keeping records accurate — our legitimate interests and legal obligations.
- Improving the platform and understanding how it is used — our legitimate interests.
- Optional marketing emails about our services — your consent, withdrawable at any time.
Who we share it with
- Service providers / subprocessors — hosting, database, email delivery, calendar, storage and analytics providers acting on our instructions.
- Stripe, our payment processor, for checkout, card processing, payment records, refunds and fraud prevention.
- Event vendors and venues you engage, only where information is needed to deliver your event.
- Professional advisers such as legal and accounting advisers, and authorities where disclosure is required by law.
We do not sell personal data.
International transfers
Some of our providers process data outside your country. Where data leaves the UK or EEA, we rely on appropriate safeguards such as adequacy decisions or Standard Contractual Clauses.
Retention
We keep account and event records for as long as your account is active and afterwards only as long as needed for the purposes above — typically up to seven years for financial and contractual records, then deletion or anonymisation. Marketing preferences are kept until you withdraw consent.
Security
We use appropriate technical and organisational measures, including encryption in transit, access controls, role-based permissions, private file storage with signed links, and audit logging.
Your rights
Subject to local law, you may request access to your personal data, correction, erasure, restriction, portability, or object to processing, and you may withdraw consent at any time. Email hello@fairytalefrith.com and we will respond within one month. If you are in the UK or EEA you may also complain to your supervisory authority.
Cookies
We use strictly necessary cookies and similar storage to keep you signed in and to secure the platform, and limited analytics storage to understand usage. You can clear or block cookies in your browser, though sign-in and portal features may then not work.
Changes
We will update this notice when our practices change and will revise the date above. Material changes will be communicated by email or in the platform.