Privacy Policy
Last updated: 10 August 2026
1. Who we are
Tikkat.in is a white-label event registration and ticketing platform operated by Instyart Pvt Ltd, Kochi, Kerala, India. This policy explains what personal information we handle, why, and what rights you have.
2. Information we collect
We collect two distinct categories of data:
- Organizer data — the name, business name, email address, phone number and billing details of organizers who enquire about or subscribe to the platform.
- Attendee data — the name, email, phone number and ticket details of people who register for an organizer's event. This data belongs to the organizer. We process it on their behalf and do not sell it, share it with other organizers, or use it to market our own services.
3. How we use it
Organizer data is used to respond to enquiries, provide and support the platform, and issue invoices. Attendee data is used only to deliver the service the organizer has configured: issuing tickets and QR codes, sending event communication, processing check-in, and generating the organizer's reports.
4. Payments
Ticket payments are processed by the organizer's own payment gateway (Razorpay or Cashfree) and settle directly to the organizer's bank account. We never receive, store, or have access to card numbers, UPI credentials, or bank credentials. Those are handled entirely by the gateway under its own privacy policy and PCI-DSS obligations.
5. Sharing and disclosure
We do not sell personal information. We share it only with the infrastructure and communication providers needed to run the service — cloud hosting, the payment gateway, and the email and WhatsApp delivery providers — and only to the extent required. We may also disclose information where the law requires it.
6. Retention
Attendee data is retained for as long as the organizer's platform is active, so that attendance history and ticket records remain available. Organizers can export or request deletion of their attendee database at any time. On termination of the Platform Care Plan, data is retained for 90 days to allow export, then deleted.
7. Security
Data is transmitted over TLS and stored on access-controlled infrastructure. Ticket QR codes are signed so they cannot be forged. We apply security patches as part of the Platform Care Plan. No system is perfectly secure, and we cannot guarantee absolute security.
8. Your rights
You may request access to, correction of, or deletion of your personal information. If you are an attendee, direct the request to the organizer whose event you registered for — they control that data. If they cannot resolve it, contact us and we will assist.
9. Cookies
This marketing website does not set advertising or tracking cookies. Organizer platforms use a session cookie strictly to keep users signed in.
10. Changes
We may update this policy. Material changes will be reflected in the "last updated" date above.
11. Contact
Questions about this policy: support@partapp.in.