privacy policy.

Our Privacy Policy, Terms of Use, and Cookies Policy collectively constitute the complete policy framework governing your use of our website.

1. What This Policy Covers

This policy explains what personal data we collect through litme.events (the "Website") and through the correspondence and introductions that follow, why we use it, who we pass it to, how long we keep it, and the rights you hold. It applies to visitors to the Website, people who make an enquiry, people who apply to join the collective, members of the LIT.ME Club, and the business contacts we hold in our own records.

It does not cover how any member of our collective, any venue, or any other third party handles your data once they hold it. Section 5 explains why that distinction matters and what it means for you in practice.

We process personal data in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

2. Who We Are

LIT.ME Events is a trading name of Royist Ltd, a company registered in England and Wales under company number 11310686, with its registered office at 5th Floor, 167-169 Great Portland Street, London, W1W 5PF.

Royist Ltd is registered with the Information Commissioner's Office under registration reference CSN9733293.

Royist Ltd is the data controller for the personal data described in this policy. That means we decide why and how it is used, and we are responsible to you for it. In this policy, "we", "us" and "our" mean Royist Ltd trading as LIT.ME Events, and "you" and "your" mean the person the data is about.

You can reach us about anything in this policy through our enquiry form, or by post at the registered office above. Please mark postal correspondence for the attention of the Data Protection lead.

We are not required to appoint a Data Protection Officer. Responsibility for data protection sits with the directors, and the address above reaches them.

3. The Personal Data We Collect

Data you give us

  • Enquiries. Your first and last name, email address, phone number, country, and — on a commercial enquiry — your company or organisation. You also tell us about the occasion: the type of event, approximate guest numbers, an indicative budget range, your timeline, and whatever you write in the message field. You may tell us how and when you prefer to be contacted, including a messaging app and a callback window.
  • Applications to the collective. Your name and any stage or professional name, email address, phone number, country, website, Instagram handle, LinkedIn profile, a biography, notable work, languages spoken, years active, what you are available for, a link to your work, and how you heard about us.
  • Club and invitation list. Your name, email address, phone number, and optionally your Instagram handle, LinkedIn profile and an invitation code. If you are a member, you can also tell us your gender, your age band, the languages you speak, the city you live in and a second city, and which kinds of occasion interest you. All of these are optional, you can change or clear them at any time on your profile page, and we use them to choose what we show you inside the Club.
  • Page corrections. If you use the correction box on a page, we receive the correction you wrote, any text you had selected, the page it relates to, and a name if you choose to give one. Nothing verifies that name, and we do not treat it as identifying you.
  • Correspondence. Anything you send us by email or messaging app, including any detail about an occasion, guests, dietary requirements or accessibility needs that you choose to share.

We do not ask for special category data — health, religious belief, ethnicity, sexual orientation and the like. If you volunteer something of that kind in a message, for example a dietary or accessibility requirement, we use it only to make a suitable introduction and we pass it on only where it is relevant to that introduction.

Data we collect automatically

  • Usage data. The pages you visit, the time and date, how long you stay, and where you arrived from. Our analytics is self-hosted, does not use cookies, and does not follow you to other websites.
  • Device information submitted with a form. When you submit a form we record technical context alongside it: browser and operating system (from the user agent string), screen and viewport size, pixel ratio, whether the device is touch or mobile, connection type, browser language, how long you spent on the page, and how long the form took to fill. We use this to tell genuine enquiries from automated submissions and to see how the forms perform.
  • IP address. Your IP address is processed to apply rate limits and to detect abuse, and it appears in our server logs. Rate-limit counters are held in memory and are not written to our database. Server logs are retained by our hosting provider under section 9.
  • Referral and campaign information. If you arrive by a campaign or referral link, we store the campaign parameters in a cookie for 90 days and attach them to any form you then submit, so we can attribute the enquiry correctly. Our Cookies Policy explains this cookie and how to refuse it.
  • Cookies. Session, authentication and security cookies, plus the referral cookie above. See our Cookies Policy.

Data we collect from other sources

  • Business contacts. We keep a record of venues, suppliers, agencies and other businesses in the events industry, and of the people who represent them in a professional capacity. It holds a business name and website, a contact name, a work email address and phone number, public social profiles, and our own notes. We build it from information the business itself publishes — its website, its social profiles and public directories.
  • Company information. For those business contacts we also retrieve filed accounts and company status from the Companies House public register. This is information about a company rather than about an individual, though it may name a company's officers.
  • Club membership status. Where LIT.ME Club membership follows from a subscription held on royist.com, we check your subscription status by email address with our payment processor so we can confirm your membership.

If we hold your details as a business contact and you did not give them to us directly, you have the same rights as everyone else in section 11, including the right to object. Write to us and we will act on it.

4. Why We Use Your Personal Data

We must have a lawful basis for every use of your personal data. These are ours.

Where we rely on a legitimate interest, we have considered whether it is outweighed by your rights and freedoms and concluded that it is not. You can ask us to explain that assessment, and you can object to the processing. Section 11 tells you how.

5. Introductions to Members and Venues

LIT.ME Events is an introducer. When you make an enquiry, we match you to suitable members of our collective and to suitable venues, and we pass your enquiry to them so that they can contact you and contract with you direct. Our role and the contractual position are set out in section 3 of our Terms of Use.

What we pass on is what you gave us in the enquiry: your name, your contact details, and the details of the occasion you described. We pass it only to the members and venues we introduce you to for that enquiry.

Each member or venue that receives your details is an independent controller of them. They are not our processors and they do not handle your data on our instructions. They handle it under their own privacy policy and on their own responsibility, and we are not responsible for how they do so. If you want to know who we have introduced you to, or how a particular member or venue handles your data, please ask us and we will tell you.

If you would rather we did not pass your enquiry on, tell us when you make it or at any time afterwards. We can only make an introduction by passing your details to the person you are being introduced to, so declining means we cannot make the introduction.

We do not sell your personal data and we do not pass it to anyone for their own marketing.

6. Marketing

We send marketing email only to people who asked for it. Every marketing email carries an unsubscribe link, and unsubscribing takes effect across all future marketing. You can also ask us to stop through our enquiry form.

Unsubscribing from marketing does not stop the messages we have to send you about something you asked for — a reply to your enquiry, a sign-in link, or a confirmation. Those are not marketing and they continue.

7. Who Else We Share Your Data With

Service providers acting on our instructions

We use a small number of providers to run the Website and our correspondence. Each acts as our processor: it handles your data only on our instructions, under a contract, and may not use it for its own purposes. By category, they are:

  • A database and authentication provider — the database and sign-in system behind the Website. Holds enquiries, applications, Club accounts and our business contact records.
  • A hosting provider — hosting for the Website and its server functions, and the server logs those functions produce.
  • A content delivery and domain network — domain routing, image storage and image delivery. Processes the technical detail of requests to the Website.
  • Email delivery and mailbox providers — sending and handling our email, including replies to enquiries, sign-in links and confirmations.
  • A maps provider — the maps on venue pages. Loading a map sends your IP address and the map area to that provider from your browser.

You can ask us at any time which company sits behind any of these categories, and we will tell you. Our Cookies Policy sets out which of them your browser contacts directly, and what that sends.

Our website analytics is self-hosted on infrastructure we operate. It sets no cookies, does not track you across other websites, and no analytics data goes to a third party.

Others we may pass data to

  • Members of the collective and venues we introduce you to. Each is an independent controller — see section 5.
  • Our payment and subscription provider, where we check the status of a royist.com subscription to confirm LIT.ME Club membership, and where a Club admission fee is payable. The fee is paid on that provider's own checkout, and the details you enter there — including payment details — are handled by it under its own terms. We never receive or store your card details. We receive confirmation that the fee was paid and a reference for the payment, and we record it against your membership.
  • A ticketing provider, where an occasion is ticketed. Tickets are bought on that provider's own checkout, and the details you enter there — including payment details — are handled by it and its payment providers under their own terms. We never receive or store your card details.
  • Our professional advisers — accountants, auditors, insurers and lawyers — where they need the information to advise us.
  • A buyer or successor, if the business or its assets are sold or reorganised. We would tell you if that changed who controls your data.

Disclosures required of us

We may also disclose personal data where we believe in good faith that it is necessary to:

  • Comply with a legal obligation, a court order or a regulator's request
  • Establish, exercise or defend a legal claim
  • Prevent or investigate suspected wrongdoing connected to the Website
  • Protect the safety of any person

8. Where Your Data Is Held

We are based in the United Kingdom, and we prefer providers who store data in the UK or the European Economic Area. Some of the providers in section 7 are based in, or run infrastructure in, the United States and elsewhere, so your personal data may be transferred outside the UK.

Where it is, we rely on one of the safeguards UK data protection law allows: a country the UK Government has found to provide adequate protection, or the International Data Transfer Agreement, or the UK Addendum to the European Commission's Standard Contractual Clauses, together with any additional measures the transfer requires.

You can ask us for a copy of the safeguard that applies to a particular transfer. Ask through our enquiry form.

9. How Long We Keep Your Data

We keep personal data only for as long as we need it for the purpose we collected it for, and then delete it or anonymise it. In practice:

We may keep data longer where the law requires it, or where it is needed for a legal claim that is live or reasonably in prospect.

10. How We Protect Your Data

We take appropriate technical and organisational measures to protect personal data. These include encryption in transit across the Website and our correspondence, encryption at rest with our database provider, access controls that limit our internal systems to named accounts on an allowlist, rate limiting and bot protection on every form, and regular dependency and security review.

No method of transmission over the internet and no method of electronic storage is completely secure, so we cannot guarantee absolute security. If a breach of personal data occurs and it is likely to result in a risk to your rights and freedoms, we will report it to the Information Commissioner's Office within 72 hours of becoming aware of it, and we will tell you directly where the risk to you is high.

11. Your Rights

Under UK data protection law you have the following rights. They are not absolute, and some apply only in particular circumstances.

  • The right to be informed — to know what we do with your personal data. That is what this policy is for.
  • The right of access — to receive a copy of the personal data we hold about you, and to be told how we use it.
  • The right to rectification — to have inaccurate data corrected and incomplete data completed.
  • The right to erasure — to have your data deleted where we no longer need it, where you withdraw the consent it rested on, or where you successfully object to it.
  • The right to restrict processing — to have us pause our use of your data, for example while we check a challenge to its accuracy.
  • The right to object — to object to processing we base on a legitimate interest, including any profiling. You may object to direct marketing at any time and we will stop.
  • The right to data portability — to receive the data you gave us in a structured, commonly used, machine-readable format, and to have it sent to another controller where that is technically feasible.
  • The right to withdraw consent — where we rely on your consent, to withdraw it at any time. Withdrawing it does not affect anything we did before you withdrew it.
  • Rights relating to automated decision-making — see section 13.

To exercise any of these, use our enquiry form. There is no fee. We respond within one month, and we will tell you if we need to extend that by up to two further months because the request is complex. We may ask you to confirm your identity before we act, so that we do not disclose your data to someone else.

12. Cookies and Similar Technologies

We use a small number of cookies, and we set your browser's local storage for a few of your own preferences. Our analytics does not use cookies and does not follow you to other websites.

Our Cookies Policy lists every cookie we set, says which are strictly necessary and which are not, and explains how to refuse or remove them.

13. Automated Decision-Making and Profiling

We do not make decisions that produce a legal effect on you, or similarly significantly affect you, by automated means alone. Deciding which members and venues to introduce you to is a judgement our people make.

We do use automated checks to protect the Website — rate limiting, bot detection and spam filtering on forms. If one of those checks stops a submission of yours in error, contact us and a person will look at it.

14. Children

The Website and our services are intended for adults. We do not knowingly collect personal data from anyone under 18. If you believe a child has given us their personal data, tell us through our enquiry form and we will delete it.

15. Links to Other Websites

The Website links to websites we do not control, including the websites and social profiles of members of our collective and of the venues we list. Following one of those links takes you somewhere this policy does not reach. We are not responsible for the content or the privacy practices of any other website, and we suggest you read the privacy policy of each one you visit.

16. Changes to This Policy

We may update this policy. When we do, we post the new version on this page and change the date at the foot of it. Where a change materially affects how we use your personal data, we will give you notice by email or by a prominent notice on the Website before it takes effect.

We suggest you review this page from time to time. Changes take effect when they are posted, unless we say otherwise.

17. How to Contact Us

For anything in this policy, including any request under section 11, contact us through our enquiry form, or write to Royist Ltd, 5th Floor, 167-169 Great Portland Street, London, W1W 5PF.

This Privacy Policy was last updated on 31st August 2026.