top of page

Privacy Policy

1 November 2024

At HandyCon, we prioritise your privacy. This Privacy Policy explains how we collect, use, share, and protect your personal data when you engage with our board game convention services, website, and members section.


If you disagree with any part of this policy, please refrain from using our services or platform.

  • We collect personal data necessary for the smooth operation of our platform and services, including:

    1.1 Information Required to Use the HandyCon Platform & Services

    We collect the following personal data when you use our services:

    • Contact Information: Name, email address, and phone number to facilitate convention registration, communication, and purchases.

    • Payment Information: Payment details (e.g., PayPal or credit card information via Wix) to process transactions in our shop.

    • Members Information: If you register as a member, details like your display name and any information shared in the members section may be visible to other members.

    1.2 Information You Choose to Provide

    You may provide additional information voluntarily, such as:

    • Profile Information: Optional details like preferences and interests to personalise your experience in the members section.

    • Convention Participation Data: Information about conventions you create or attend, including comments, media uploads, or posts on the platform.

    1.3 Automatically Collected Information

    We also collect certain data automatically when you use our website:

    • Device Information: IP address, browser type, and operating system.

    • Cookies and Tracking Technologies: We use cookies to improve your experience, track interactions, and personalise content.

  • We process your personal data under the following legal bases in line with the UK GDPR:

    • Consent: For newsletter sign-ups or marketing communications.

    • Contract: To fulfil obligations related to convention bookings and purchases.

    • Legitimate Interests: To improve services, maintain platform security, and manage user interactions.

  • We use your personal data to provide, enhance, and manage our services:

    3.1 Convention and Members Services

    We use your data to:

    • Manage bookings, reservations, and purchases.

    • Enable interactions, allowing members to view and engage with information posted in the members section.

    3.2 Platform Improvement

    We use your information to:

    • Conduct research and analytics to improve our services.

    • Personalise your experience based on preferences and interactions.

    • Debug and troubleshoot platform issues.

    3.3 Safeguarding and Compliance

    We process your data to:

    • Verify your identity and protect against fraud.

    • Comply with legal obligations and respond to regulatory requests.

  • Payments in our shop are processed by third-party providers, such as PayPal and Wix Payments. HandyCon does not store payment details; these are securely handled by the providers, which comply with data security standards.

    • PayPal: Transactions are handled under PayPal's privacy policy.

    • Wix Payments: Payments are processed securely by Wix in line with high-security standards.

    • Other Payment Options: If you choose another payment method, your data will be managed by that provider according to their privacy policies.

  • We do not sell or rent your data, but we may share it in the following situations:

    5.1 With Your Consent

    We share your data when you authorise us, such as for promotional activities or third-party services.

    5.2 With Service Providers

    We share data with third-party service providers to support our platform operations, including:

    • Nagato Consultancy: For management, marketing, and operational services.

    • Wix: For website hosting and payment processing.

    • PayPal: For secure payment handling.

    • Mailchimp: For managing newsletters and communications.

    This list is not exhaustive, and other providers may be used as necessary.

    5.3 Legal Obligations

    We may share your data to comply with legal requests, such as court orders or regulatory authorities.

  • We implement measures to protect your personal data, including:

    • Encryption: SSL encryption to secure data during transmission.

    • Access Controls: Limiting data access to authorised personnel.

    Although we strive to protect your data, no transmission method is entirely secure.

  • We retain your personal data for as long as necessary to meet the purposes outlined in this policy, including legal and administrative requirements.

    • Convention and Members Data: Retained for enhancing user experience and future participation.

    • Purchase Data: Retained for up to 6 years for financial and legal purposes.

  • Under UK GDPR, you have the right to:

    • Access: Request a copy of your personal data.

    • Rectification: Correct any inaccuracies in your personal data.

    • Erasure: Request deletion of your personal data, unless required to retain it by law.

    • Restriction: Limit the processing of your data in certain situations.

    • Objection: Object to the processing of your data, particularly for marketing purposes.

  • Our website uses cookies to enhance your experience and track platform interactions. You can manage cookie settings in your browser, though disabling cookies may affect functionality.

  • We may update this Privacy Policy occasionally. Significant changes will be posted on this page, and where appropriate, we will notify you via email.

  • If you have any questions about this Privacy Policy or your personal data, please contact us at

bottom of page