Privacy Policy
Last updated: 6 June 2026
BadgeFlow is a web-based tool for creating print-ready event name badge PDFs from attendee data.
This Privacy Policy explains how BadgeFlow collects, uses, stores, and protects personal data when you use our website and app.
For the purposes of this Privacy Policy, “BadgeFlow”, “we”, “us” and “our” refer to Denis Raslov, trading as BadgeFlow.
If you have any questions about this Privacy Policy or how we handle personal data, contact us at:
1. Who we are
BadgeFlow is operated from the United Kingdom.
Website:
https://badgeflow.app
Operator:
Denis Raslov
Trading as:
BadgeFlow
Contact:
support@badgeflow.app
2. What personal data we collect
We may collect and process the following types of personal data.
Account data
When you create an account or sign in, we may collect:
- email address;
- account ID;
- authentication and session information;
- login metadata;
- password authentication data, handled by our authentication provider.
We use Supabase to provide authentication, database, and backend infrastructure.
Badge and event data
When you use BadgeFlow, you may choose to upload, paste, enter, or import attendee data.
This may include:
- attendee names;
- company or organisation names;
- job titles;
- roles;
- ticket types;
- attendee categories;
- QR code values;
- barcode values;
- attendee photos, if uploaded;
- any other spreadsheet fields you choose to import.
You control what attendee data you upload to BadgeFlow.
Design and template data
We may store information related to badge designs and generated projects, such as:
- selected templates;
- badge layout settings;
- badge size and paper size settings;
- colours, fonts, sizes, and positioning;
- uploaded logos or images;
- QR code and barcode settings.
Support and live chat data
If you contact us through live chat or support channels, we may collect:
- your name, if provided;
- your email address, if provided;
- the content of your support messages;
- information about your issue or request;
- technical information needed to provide support.
We use Crisp to provide live chat and customer support.
Crisp may process technical information such as IP address, browser information, device information, chat session information, and message history where needed to provide the live chat service.
Technical data
When you use BadgeFlow, we may collect basic technical information needed to operate, secure, and debug the service, such as:
- IP address;
- browser type and version;
- device information;
- server logs;
- error logs;
- security and authentication events.
We do not currently use analytics cookies, marketing cookies, advertising cookies, retargeting pixels, or third-party tracking cookies.
3. How we use personal data
We use personal data to:
- create and manage user accounts;
- authenticate users and keep accounts secure;
- provide the BadgeFlow app;
- generate badge previews and badge PDFs;
- store badge projects and templates, where applicable;
- provide live chat and customer support;
- respond to support requests;
- prevent abuse, fraud, spam, and technical misuse;
- maintain, debug, and improve the reliability of the service;
- comply with legal obligations.
4. Legal bases for processing
Depending on the situation, we process personal data on the following legal bases.
Contract
We process account data, badge project data, and badge-generation data where this is necessary to provide BadgeFlow to you.
Legitimate interests
We may process technical, security, support, and service operation data where necessary for our legitimate interests, including:
- keeping the service secure;
- preventing abuse and spam;
- fixing bugs;
- providing support;
- improving service reliability.
Legal obligation
We may process data where required to comply with applicable law.
Consent
We will ask for consent where required, for example if we introduce optional marketing emails, analytics cookies, advertising cookies, or other non-essential cookies in the future.
5. Uploaded attendee data
If you upload attendee data on behalf of an organisation, event, company, school, charity, conference, or other group, you are responsible for ensuring that you have the right to upload and use that data in BadgeFlow.
For attendee data uploaded by customers, BadgeFlow generally acts as a processor and processes that data only to provide the badge-generation service.
We do not sell attendee data, use it for advertising, or contact attendees using the data you upload.
If you ask us for support with a badge project, we may access the relevant project data only as needed to investigate and respond to your request.
You should avoid uploading personal data that is not needed to create badges.
6. Live chat
We use Crisp to provide live chat support.
When you use live chat, Crisp may process your chat messages, technical data, session information, and any contact details you choose to provide.
Live chat is optional. You can also contact us by email at:
You should not send unnecessary sensitive personal data through live chat.
7. Cookies, local storage, and similar technologies
BadgeFlow uses cookies, local storage, session storage, and similar technologies to provide and secure the service.
We use these technologies for:
- authentication and login sessions;
- account security;
- remembering app state during badge creation;
- preventing abuse and spam;
- live chat functionality;
- maintaining a consistent support chat session.
We use Supabase for authentication and backend services. Supabase may use cookies, local storage, or similar technologies to keep you signed in and maintain secure sessions.
We use Crisp to provide live chat support. Crisp may use cookies or similar technologies to connect you to a chat session, restore chat history, and keep your conversation consistent across pages and visits.
Crisp cookies (or local storage items) may use names such as crisp-client/*.
We do not currently use:
- analytics cookies;
- advertising cookies;
- marketing cookies;
- retargeting pixels;
- third-party tracking cookies.
You can control cookies through your browser settings. Blocking some cookies or storage technologies may affect login, badge-generation functionality, and live chat.
If we introduce analytics, advertising, marketing, or other non-essential cookies in the future, we will update this Privacy Policy and ask for consent where required.
8. Service providers and subprocessors
We use trusted service providers to operate BadgeFlow.
Current providers may include:
- Supabase — authentication, database, and backend infrastructure;
- Crisp — live chat and customer support;
- Netlify — website and app hosting;
- SMTP2GO — transactional or support email.
These providers may process personal data only as needed to provide their services to us.
9. International users and transfers
BadgeFlow may be used by people and organisations in different countries.
We operate from the United Kingdom. If you access BadgeFlow from outside the UK, your personal data may be processed in the UK and in other countries where our service providers operate.
Where required, we use appropriate safeguards for international transfers of personal data, such as contractual protections with our service providers.
Depending on your location, you may have additional privacy rights under local law. You can contact us at support@badgeflow.app to exercise privacy rights that apply to you.
10. How long we keep data
We keep personal data only for as long as necessary for the purposes described in this Privacy Policy.
As a general guide:
- account data is kept while your account is active;
- uploaded badge and event data is kept while needed to provide the service or until you delete it, where deletion tools are available;
- support and live chat messages are kept for as long as needed to handle your request and maintain support records;
- technical logs are kept for a limited period for security, debugging, and reliability.
If you would like your account or data deleted, contact us at:
11. Security
We use reasonable technical and organisational measures to protect personal data, including authentication, access controls, and secure infrastructure providers.
However, no online service can guarantee complete security.
You are responsible for keeping your login details secure and for ensuring that the data you upload is appropriate for use in BadgeFlow.
12. Your rights
Depending on where you are located, you may have rights over your personal data, including the right to:
- access your personal data;
- correct inaccurate data;
- request deletion of your data;
- object to certain processing;
- restrict certain processing;
- request a copy of your data;
- withdraw consent, where processing is based on consent.
To exercise your rights, contact us at:
13. Children
BadgeFlow is not intended for children.
You should not use BadgeFlow if you are not old enough to enter into an agreement with us or use the service lawfully.
14. Changes to this Privacy Policy
We may update this Privacy Policy from time to time.
If we make material changes, we will notify users by email, in-app notice, website notice, or another appropriate method before the changes take effect where required.
The latest version will always be available on our website.