This Privacy Notice applies to the processing of personal information by Secret Golden Flower, LLC in connection with (a) its development, operation, and maintenance, on your behalf, of a white-labelled website through which third-party individuals may purchase tickets for events at your event space, (b) its operation of SGF Stage Manager, the call sheet and cue sheet application at stage.sgf.theater, (c) its operation of the SGF Ticketing staff mobile applications for Android and iOS, which authorized theater staff use to review schedules, scan or enter ticket codes, check guests in or undo a check-in, look up orders and resend confirmations, and review or send performance reports, and (d) its operation of the Ticketing Admin dashboard, including SGF Theater Social, which authorized theater administrators use to connect a theater-managed Facebook Page; create, schedule, and publish Page posts; and delete Page posts previously published through SGF (Secret Golden Flower, LLC, “Provider,” “we,” “us,” or “our”; and the foregoing services, the “Services”).
Disclosure Regarding Customer Data. This Privacy Notice does not apply to the personal information that we process on behalf of our customers pursuant to a written agreement we have entered into with such customers (“Customer Data”). Our customers’ respective privacy notices or policies govern their collection and use of Customer Data. Our processing of Customer Data is governed by the contracts that we have in place with our customers, not this Privacy Notice. Any questions or requests relating to Customer Data should be directed to our customer. For SGF Stage Manager, personal information contained in your productions, call sheets, and cue sheets is Customer Data processed under the SGF Stage Manager Terms of Service; this Privacy Notice covers the account, billing, and usage information we collect from Stage Manager account holders. In the SGF Ticketing staff mobile applications, show, guest, customer, ticket, order, and performance-report information displayed or acted upon by staff is the theater’s Customer Data. This Privacy Notice covers the staff account, authentication, device, and usage information that SGF processes in operating those applications. Notwithstanding this general Customer Data disclosure, the SGF Theater Social sections below govern SGF’s handling of information obtained from Meta through SGF Theater Social.
- 1. Updates to This Privacy Notice
- 2. Personal Information We Collect
- 3. How We Use Personal Information
- 4. How We Share Personal Information
- 5. Your Privacy Choices and Rights
- 6. Retention of Personal Information
- 7. Children’s Personal Information
- 8. Contact Us
1. Updates to This Privacy Notice
We may update this Privacy Notice from time to time in our sole discretion. If we do, we’ll let you know by posting the updated Privacy Notice on our website, and we may also send other communications.
2. Personal Information We Collect
We collect personal information that you provide to us, personal information we collect automatically when you use the Services, and personal information from third-party sources, as described below.
Personal Information You Provide to Us Directly
We may collect personal information that you provide to us.
- Account Information. We may collect personal information in connection with the creation or administration of your account. This personal information may include, but is not limited to, your name, email address, phone number, and other information you store with your account.
- Purchases or Transactions. We may collect personal information and details associated with your purchases or transactions on the Services, including payment information. Any payments made via our Services are processed by third-party payment processors. We do not directly collect or store any payment card information entered through our Services, but we may receive information associated with your payment card information (e.g., your billing details).
- Your Communications with Us. We, and our service providers, may collect the information you communicate to us, such as through email or our web chat tool. We may record your chat with us and store it with our service provider. By using chat, you agree to our Terms and acknowledge our Privacy Notice.
- Surveys. We may contact you to participate in surveys. If you decide to participate, we may collect personal information from you in connection with the surveys.
- Interactive Features. We and others who use our Services may collect personal information that you submit or make available through our interactive features (e.g., messaging features, commenting functionalities, forums, blogs, and social media pages). Any information you provide using the public sharing features of the Services will be considered “public.”
- Portfolio and Media Content. If you use our Services to promote your theater, we may collect photos, videos, pictures, promotional materials, testimonials, and other media content that you upload to showcase your theater, performances, and events.
- Event and Booking Information. If you use booking or scheduling features on our Services, we may collect information related to your events, including event dates, times, locations, and any special requests or event details you provide.
- Sweepstakes or Contests. We may collect personal information you provide for any sweepstakes or contests that we offer. In some jurisdictions, we are required to publicly share information of sweepstakes and contest winners.
- Conferences, Trade Shows, and Other Events. We may collect personal information from individuals when we attend or host conferences, trade shows, and other events.
- Business Development and Strategic Partnerships. We may collect personal information from individuals and third parties to assess and pursue potential business opportunities.
- Job Applications. If you apply for a job with us, we will collect any personal information you provide in connection with your application, such as your contact information and resume or CV.
Personal Information Collected Automatically
We may collect personal information automatically when you use the Services.
- Device Information. We may collect personal information about your device, such as your Internet protocol (IP) address, user settings, cookie identifiers, other unique identifiers, browser or device information, Internet service provider, and location information (including, as applicable, an approximate location derived from the IP address and precise geo-location information).
- Usage Information. We may collect personal information about your use of the Services, such as the pages that you visit, items that you search for, the types of content you interact with, information about the links you click, the frequency and duration of your activities, and other information about how you use the Services.
- Cookie Notice (and Other Technologies). We, as well as third parties, may use cookies, pixel tags, and other technologies (“Technologies”) to automatically collect personal information through your use of the Services.
- Cookies. Cookies are small text files stored in device browsers.
- Pixel Tags/Web Beacons. A pixel tag (also known as a web beacon) is a piece of code embedded in the Services that collects personal information about use of or engagement with the Services. The use of a pixel tag allows us to record, for example, that a user has visited a particular web page or clicked on a particular advertisement. We may also include web beacons in emails to understand whether messages have been opened, acted on, or forwarded.
See “Your Privacy Choices and Rights” below to understand your choices regarding these Technologies.
Personal Information Collected from Third Parties
We may collect personal information about you from third parties. For example, if you access the Services using a third-party website, application, service, products, or technology (each a “Third-Party Service”), we may collect personal information about you from that Third-Party Service that you have made available via your privacy settings. In addition, users of the Services may upload or otherwise provide personal information about others.
SGF Theater Social Facebook Page Connection
When an authorized theater administrator selects Connect Facebook, Meta authenticates that person directly. SGF does not receive or store the person’s Facebook password. Through the permissions approved in Meta, SGF receives limited permission-status diagnostics and information for Facebook Pages the administrator is permitted to manage, including Page identifiers, Page names, assigned Page tasks or publishing capabilities, and Page access tokens. SGF uses pages_show_list to enumerate eligible Pages and their assigned publishing tasks; business_management only as Meta’s required dependency for pages_show_list so that `GET /me/accounts` can return eligible Pages linked to a Meta Business Account when the administrator has a role in that business; pages_read_engagement as a Meta-required dependency for this publishing flow and only to support selected-Page identifier and name verification; and pages_manage_posts only to create posts requested or scheduled by authorized theater staff and to delete posts previously published through SGF. SGF does not use business_management to create, claim, or modify Meta Business Portfolios, people, roles, ad accounts, ads, billing, or unrelated business assets. SGF does not use these permissions to read Page posts, comments, messages, followers, insights, advertising data, or engagement data. SGF uses a Facebook user access token only during the connection exchange and does not persist it. Permission status is not stored as part of the selected Page’s connection record. Candidate Page details and tokens are encrypted during the short-lived Page-selection session. After a Page is selected, SGF stores the selected Page identifier and name, an encrypted Page access token, publishing capabilities, connection status, and connection and verification timestamps. Information SGF receives from Meta through this connection is referred to below as “Facebook Platform Data.”
We use this information to display eligible Pages, connect and verify the Page selected for the theater, perform Page-post actions requested or scheduled by authorized theater staff, and operate, secure, troubleshoot, and support the feature. Social-post records may include the post text, link or image, scheduled and delivery status, destination Page identifier, Facebook post identifier, timestamps, retry or error information, and the administrator who created the post.
Facebook Platform Data is used only to provide, secure, troubleshoot, and support SGF Theater Social. SGF does not sell Facebook Platform Data, share it with advertising partners, use it to build advertising profiles, combine it across theaters, or use it to train or fine-tune artificial intelligence or machine-learning models.
SGF Ticketing Staff Mobile Applications
The SGF Ticketing staff applications process the following information to provide authorized venue operations:
- Staff Account and Authentication Information. We process a staff member’s name, email address, role, theater association, password submission, optional one-time multi-factor authentication code, session token, and an app-generated installation identifier. Passwords and one-time codes are used for authentication and are not persisted by the mobile applications. The app-generated installation identifier is stored in the device’s protected credential storage and sent on live sign-in. If a staff member chooses to keep a session signed in, the session token is also stored there. Staff-application network traffic is transmitted over HTTPS/TLS, and live access is authenticated and scoped to the authorized theater.
- Venue and Ticketing Workflows. The applications process showtime, ticket, order, and customer identifiers; scanned or manually entered ticket codes; buyer name, email, or order-search terms; check-in and undo actions; report recipients and attachment choices; and confirmation-resend actions. They retrieve the guest, customer, order, ticket, seating, sales-total, and performance-report Customer Data needed to show the result of the staff member’s request.
- Operational and Security Information. Our server records limited operational data such as request route templates, response status, timing, request identifiers, Internet Protocol address, staff and theater identifiers, and security or audit events. We use these records to operate, secure, troubleshoot, and support the service.
- Camera Processing. Camera access is used only to read ticket QR codes. Camera frames are decoded on the device and are not stored or transmitted. Only the decoded ticket code is sent to the ticketing service for validation or check-in.
- Google ML Kit Diagnostics (Android). The Android application uses Google ML Kit’s bundled barcode-scanning library. Google states that ML Kit does not send barcode images, image input, or decoded output to Google. The library may automatically send Google the device manufacturer, model, operating-system and build information, available machine-learning hardware, package and application versions, per-installation identifiers, performance and latency measurements, API configuration such as image format and resolution, input and output sizes, feature event types and versions, and error codes. Google uses this information for diagnostics and usage analytics, transmits it over HTTPS, and states that it does not transfer it onward to third parties. The application does not enable ML Kit’s auto-zoom feature. For more information, see Google’s ML Kit data-disclosure documentation.
The SGF Ticketing staff applications do not contain advertising or advertising SDKs, Google Analytics, the Meta Pixel, or a payment flow. The limited Android ML Kit telemetry is described above. The applications do not request or derive location, access contacts, or collect photos, video, or audio. The built-in rehearsal account uses synthetic data stored locally on the device and makes no production-service requests.
3. How We Use Personal Information
We use personal information for a variety of business purposes, including to provide the Services, for administrative purposes, and to provide you with marketing materials, as described below.
Provide the Services
We use personal information to provide the Services, such as:
- Providing access to certain areas, functionalities, and features of the Services;
- Communicating with you;
- Answering requests;
- Sharing personal information with third parties as needed to provide the Services; and
- Processing your financial information and other payment methods.
For the SGF Ticketing staff applications, these purposes include authenticating and assigning a staff member to the correct theater; providing check-in, order-lookup, confirmation-resend, and performance-report workflows; maintaining security and audit history; sending a report or confirmation that the staff member requests; and diagnosing reliability or support issues.
Improve the Services and Develop New Products and Services
Except for Facebook Platform Data, we may use personal information to improve the Services and to develop new products and services, such as:
- Developing, training, and fine-tuning models, algorithms, and artificial intelligence technologies; and
- Improving, upgrading, or enhancing the Services.
Operate Our Business
We use personal information to operate our business, such as:
- Pursuing our legitimate interests such as direct marketing, research and development (including marketing research), network and information security, and fraud prevention;
- Carrying out analytics;
- Creating de-identified and/or aggregated information. If we create or receive de-identified information, we will not attempt to reidentify such information unless doing so is permitted by, or we are required to do so to comply with, applicable laws;
- Processing applications if you apply for a job we post on our Services;
- Allowing you to register for events;
- Enforcing our agreements and policies; and
- Carrying out activities that are required to comply with our legal obligations.
Marketing
Except for Facebook Platform Data, we may use personal information in connection with our marketing activities including to tailor and provide you with marketing communications, promotions, and offers that may interest you.
With Your Consent or Direction
We may use personal information: (i) for other purposes that are clearly disclosed to you at the time you provide the personal information, (ii) with your consent, or (iii) as otherwise directed by you.
4. How We Share Personal Information
We share personal information with third parties for a variety of business purposes, including to provide the Services, to protect us or others, or in connection with a major business transaction such as a merger, sale, or asset transfer, as described below.
Disclosures to Provide the Services
We may share any of the personal information we collect with the categories of third parties described below.
- Service Providers. We may share personal information with service providers that assist us with the provision of the Services. This may include, but is not limited to, service providers that provide us with hosting services, customer service, AI or machine learning services, analytics, marketing services, IT support, and related services. In addition, personal information and chat communications may be shared with service providers that help provide our chat features. Some of the service providers we may use include:
- Google Analytics. For more information about how Google uses your personal information, please visit Google Analytics’ Privacy Policy. To learn more about how to opt out of Google Analytics’ use of your personal information, please click here.
- Other Users You Share or Interact With. The Services may allow Provider users to share personal information or interact with other users of the Services.
- Third-Party Services You Share or Interact With. The Services may link to or allow you to interface with, interact with, share information with, direct us to share information with, access, and/or use a Third-Party Service. Any personal information shared with a Third-Party Service will be subject to the Third-Party Service’s privacy policy. We are not responsible for the processing of personal information by Third-Party Services.
- Business Partners. We may share your personal information with business partners we work with to provide you with a product or service you have requested. We may also share your personal information with business partners with whom we jointly offer products or services. Once your personal information is shared with our business partner, it will also be subject to our business partner’s privacy policy. We are not responsible for the processing of personal information by our business partners.
- Provider Customers (Authorized Users Only). In cases where you use our Services as an employee, contractor, or other authorized user of a Provider customer, we may share any information associated with your use of the Services with the Provider customer, including, but not limited to, account information, usage information, files, and the contents of the communications associated with your account. Your personal information may also be subject to the Provider customer’s privacy policy. We are not responsible for the Provider customer’s processing of your personal information.
- Affiliates. We may share your personal information with our corporate affiliates.
- Advertising Partners. We may share your personal information with third-party advertising partners. These third-party advertising partners may set Technologies on our Services to collect personal information regarding your activities and your device (e.g., IP address, cookie identifiers, page(s) visited, location, time of day). These advertising partners may use this personal information (and similar information collected from other services) to tailor and deliver personalized ads to you when you visit digital properties within their networks. This practice is commonly referred to as “interest-based advertising,” “personalized advertising,” or “targeted advertising.” We use advertising Technologies, including the Meta Pixel. For more information about how Meta uses your personal information, please visit Meta’s Privacy Policy.
The Advertising Partners paragraph does not apply to Facebook Platform Data, which SGF does not share with advertising partners or use to build advertising profiles.
For the SGF Ticketing staff applications specifically, information may be made available to the theater that employs or authorizes the staff member and to its authorized administrators. We use Railway for application hosting, Neon for database hosting, Resend for authentication and staff-requested email delivery, and Twilio when a theater has enabled SMS delivery of a sign-in code. Google receives the limited Android ML Kit diagnostic and usage information described above to provide, maintain, and improve its barcode-scanning library. A requested report or confirmation is delivered to the recipient the staff member selects or enters. These providers process information under their applicable service arrangements. The Google Analytics, advertising-partner, Meta Pixel, cookie, and web-beacon passages in this Privacy Notice apply only to relevant websites; they do not describe the SGF Ticketing staff mobile applications.
Disclosures to Protect Us or Others
We may share your personal information and related information with external parties if we, in good faith, believe doing so is required or appropriate to comply with law enforcement requests, national security requests, or other government requests; comply with legal process, such as a court order or subpoena; protect your, our, or others’ rights, property, or safety; enforce our policies or contracts; collect amounts owed to us; or assist with an investigation or prosecution of suspected or actual unauthorized or illegal activity.
Disclosure in the Event of Merger, Sale, or Other Asset Transfers
If we are involved in a merger, acquisition, financing, reorganization, bankruptcy, receivership, purchase or sale of assets, transition of service to another provider, or other similar corporate transaction, your personal information may be shared, sold, or transferred as part of such a transaction.
Text-Message (SMS) Opt-In Data
We use your phone number and text-message opt-in status only to deliver the messages described in our SMS Terms. No mobile information will be shared with third parties or affiliates for marketing or promotional purposes; all text-messaging originator opt-in data and consent remain with us. The sole exception is our messaging-connectivity provider, which carries our texts to your phone network and receives them for delivery purposes only.
5. Your Privacy Choices and Rights
Your Privacy Choices. The privacy choices you may have about your personal information are described below.
- Email Communications. If you receive an unwanted email from us, you can use the unsubscribe functionality found at the bottom of the email to opt out of receiving future emails. Note that you will not be able to opt out of certain communications (e.g., communications regarding the Services or updates to this Privacy Notice).
- “Do Not Track.” Do Not Track (“DNT”) is a privacy preference that users can set in certain web browsers. Please note that we do not respond to or honor DNT signals or similar mechanisms transmitted by web browsers.
- Cookies. You may stop or restrict the placement of Technologies on your device or remove them by adjusting your preferences as your browser or device permits. However, if you adjust your preferences, the Services may not work properly. Please note that cookie-based opt-outs are not effective on mobile applications. However, you may opt out of certain tracking on some mobile applications by following the instructions for Android, iOS, and other mobile operating systems. The online advertising industry also provides mechanisms that may allow you to opt out of receiving targeted ads from organizations that participate in self-regulatory programs. To learn more, visit the Network Advertising Initiative and the Digital Advertising Alliance. Please note you must separately opt out in each browser and on each device.
Your Privacy Rights. Subject to applicable law, and depending on your jurisdiction, you may have the right to:
- Request Access to or Portability of Your Personal Information;
- Request Correction of Your Personal Information;
- Request Deletion of Your Personal Information;
- Withdraw Your Consent to Our Processing of Your Personal Information. Please note that your withdrawal will take effect only for future processing and will not affect the lawfulness of processing before the withdrawal.
If you would like to exercise any of these rights, please contact us as set forth in “Contact Us” below. We will process such requests in accordance with applicable laws.
Facebook Connection, Disconnection, and Data Deletion
To remove a live Facebook post through SGF, an authorized theater administrator should delete it under Marketing > Social Posts in Ticketing Admin before selecting Disconnect. A Page administrator can also delete a post directly on Facebook at any time.
Selecting Disconnect clears the current connection’s stored Page identifier, Page name, encrypted Page access token, publishing capabilities, warning and verification information; resets its status to disconnected; and deletes temporary Facebook connection sessions. Disconnecting stops SGF from using the stored connection for future Page actions, but it does not revoke permissions granted in Meta, delete posts already published on Facebook, or erase social-post and security or audit history retained as described in Section 6.
To revoke SGF Theater Social’s permissions in Meta, go to Facebook Settings & privacy > Settings > Business Integrations, select SGF Theater Social, and choose Remove. Removing the Business Integration stops new access but may not delete data previously shared with SGF. To request deletion of Facebook-derived data held by SGF, email office@sgf.theater with the subject “Facebook data deletion” and identify the theater and connected Facebook Page. We may verify the requester’s authority before acting. After verification, SGF will delete the active Page connection credentials and temporary Facebook connection sessions, and will delete or de-identify other applicable Facebook-derived data. SGF may retain only records necessary for legal obligations, security, or audit.
Staff accounts for the SGF Ticketing applications are provisioned and managed by the applicable theater; the applications do not offer public account creation. Staff members may ask their theater administrator or office@sgf.theater to access, correct, disable, or request deletion of applicable account information. Some Customer Data and audit, check-in, order, delivery, security, contractual, or legal records may need to be retained by SGF or the theater after account access is disabled.
6. Retention of Personal Information
We store the personal information we collect as described in this Privacy Notice for as long as you use the Services, or as long as necessary to fulfill the purpose(s) for which it was collected, or as long as necessary to pursue our business purposes. To determine the appropriate retention period for personal information, we may consider applicable legal requirements; the amount, nature, and sensitivity of the personal information; certain risk factors; the purposes for which we process your personal information; and whether we can achieve those purposes through other means.
For SGF Theater Social, candidate Page details and tokens are encrypted in a Page-selection session that is usable for up to 10 minutes. Candidate credentials are removed when a Page is selected, the connection attempt fails, the theater disconnects, or a background worker sweeps the expired session. After candidate credentials are removed, a failed OAuth session row containing only hashed browser state and sanitized internal failure metadata may be retained for up to 24 hours. Separate bounded, credential-free operational diagnostics are retained as security or audit records under this policy. Selected Page connection information is retained while the Page remains connected or as otherwise needed for the purposes described above. Social-post and security or audit records are retained as needed for theater operations, security, customer contracts, legal obligations, and dispute resolution.
For the SGF Ticketing staff applications, a saved session token remains in protected device credential storage until sign-out or until the application detects expiration or revocation and clears it. The app-generated installation identifier remains in protected credential storage across sign-outs so the service can apply its device and session policy, until that credential item is removed or reset. Server-side audit, check-in, order, report-delivery, and support records are retained as needed for theater operations, security, customer contracts, legal obligations, and dispute resolution.
7. Children’s Personal Information
The Services are not directed to children under 17 (or other age as required by local law outside the United States), and we do not knowingly collect personal information from children. If you are a parent or guardian and believe that your child has uploaded personal information to the Services in violation of applicable law, you may contact us as described in “Contact Us” below.
The SGF Ticketing staff applications are intended only for authorized theater personnel who are at least 18 years old and are not directed to children.
8. Contact Us
Provider is the controller of the personal information we process under this Privacy Notice. If you have any questions about our privacy practices or this Privacy Notice, or to exercise your rights as detailed in this Privacy Notice, please contact us at: office@sgf.theater