PCI-Compliant Payments
Card data is processed by a PCI-DSS Level 1 payment provider. Full card numbers never touch or persist on EventSDG servers.
Encryption Everywhere
All traffic is encrypted in transit with TLS, and sensitive data is encrypted at rest.
Access Controls
Role-based permissions and team roles ensure people only see what they need. Organizer data is isolated per account.
Resilient Infrastructure
We run on hardened, monitored infrastructure with automated backups and continuous health checks.
Fraud Monitoring
Transactions and check-ins are monitored for suspicious activity to protect buyers and organizers alike.
Privacy by Default
We never sell your data. Attendee information belongs to organizers and is used only to run their events.
Secure Payments
Every card payment on EventSDG runs through a trusted, PCI-DSS compliant payment processor using an embedded, tokenized checkout. This means sensitive card details are handled directly by the processor and are never stored on our systems. Refunds are issued through the same secure channel.
Protecting Your Account
Passwords are stored using strong, one-way hashing — we can never see your actual password. Sessions are protected with signed tokens, and organizer teams use scoped roles so each member has only the access they need. We recommend using a unique, strong password for your EventSDG account.
Ticket Integrity
Every ticket carries a unique QR code that is validated at check-in. Our scanner flags duplicate or already used tickets in real time, helping organizers stop fraud at the gate and ensuring a smooth entry experience.
Data Protection
Data is encrypted in transit and at rest, access is restricted on a need-to-know basis, and our infrastructure is continuously monitored. We maintain regular backups and follow established practices for incident response.
Responsible Disclosure
We welcome reports from security researchers. If you believe you have found a vulnerability, please email us with the details and steps to reproduce it. We ask that you give us a reasonable opportunity to investigate and remediate before any public disclosure, and that you avoid accessing or modifying other users' data.
Report a Concern
To report a security issue, contact our team at security@ticketflow.com. We take every report seriously and will respond promptly.