PREMIERE SCENE LE COURANT FIRST LINEUP DROP : END OF SEPTEMBER PARIS PLENITUDE ARENA 15-16.01.2027

Privacy Policy

How D-Awards collects, uses and protects your personal data.

Last updated: 9 September 2026

This Privacy Policy explains how we handle personal data collected through this website, which promotes D-Awards — Paris 2027, taking place at Plenitude Arena, Paris La Défense, on 15 and 16 January 2027.

Our retention periods are being finalised. Wherever this policy shows a value in square brackets, that detail will be completed before the site goes live.

1. Who we are

The data controller responsible for the personal data described in this policy is:

  • Story Peak Global Inc.

  • Registered address: Suite 472, 29 Poeun-ro 8-gil, Mapo-gu, Seoul, Republic of Korea

  • Company registration number: 769-87-03825

  • Privacy contact: [email protected]

D-Awards is produced in collaboration with several event partners. Where a partner processes your data for its own purposes — a ticketing platform, for example — that partner acts as its own controller and its own privacy policy applies. Section 7 sets out who we share data with.

2. What personal data we collect

We deliberately collect very little. There is no user account on this site, and we do not sell tickets here.

Mailing list sign-up

The only form on this site is the announcement sign-up, which appears in the newsletter band and in the FAQ panel. It collects:

  • Email address — the only identifier we ask for. We do not ask for your name, phone number or postal address.

  • Your consent — a record that you ticked the consent box, together with the date and time.

Anti-spam and security

  • A hidden field and a Cloudflare Turnstile challenge protect the form from automated abuse. When the challenge runs, your IP address is sent to Cloudflare so it can assess whether the request is human. Cloudflare acts as our processor for this check.

  • Our servers keep standard access logs, which include IP addresses, request URLs, timestamps and browser user-agent strings.

Referral and campaign measurement

If you arrive here from a link shared by an influencer, a partner or an advertising campaign, our software records how you arrived so we can measure which channels work. This may include:

  • The full landing URL you opened and the referring page you came from

  • Campaign parameters in the link (for example `utm_source`, `utm_medium`, `utm_campaign`) and any click identifier the platform appended

  • A randomly generated visitor identifier, stored in a first-party cookie

  • A hashed version of your IP address

We treat that hashed IP address as personal data. It is a one-way hash rather than a plain IP, which reduces its exposure, but it is not fully anonymous — so it stays in scope of this policy and of your rights under section 10.

Cookie preferences

When the consent banner is active, your category choices are stored in your browser so we do not have to ask again on every page. Section 5 and our Cookie Policy describe this in detail.

Creator and influencer applications

We plan to open applications for creators and influencers. When that form goes live it will collect the name, email address, social media handles, audience figures and any portfolio links you choose to submit. Until then, no such data is collected on this site.

3. Why we use your data, and our legal basis

Purpose

Data used

Legal basis

Sending you event announcements, line-up reveals and ticket news

Email address, consent record

Consent (Art. 6(1)(a) GDPR)

Protecting the form from spam and abuse

IP address, challenge token, hidden field

Legitimate interests (Art. 6(1)(f)) — keeping the service usable

Keeping the site secure and diagnosing faults

Server logs

Legitimate interests (Art. 6(1)(f))

Measuring which channels and partners bring visitors

Referral and campaign data, hashed IP, visitor identifier

Legitimate interests (Art. 6(1)(f)) — understanding how the event is discovered

Analytics and advertising measurement, once enabled

Cookie and device data

Consent (Art. 6(1)(a))

Remembering your cookie choices

Consent record

Legal obligation (Art. 6(1)(c)) — we must be able to show consent was given

Handling creator applications, once live

Application details

Consent, or steps taken prior to entering a contract (Art. 6(1)(a)/(b))

You can object to processing based on legitimate interests at any time — see section 10.

4. What we do not do

  • We do not sell your personal data.

  • We do not sell tickets on this website. Ticket purchases will be handled by an appointed ticketing partner on its own platform, under its own terms and privacy policy.

  • We do not take card or payment details on this site.

  • We do not embed third-party video players, social feeds or share widgets. All video and imagery on this site is served from our own servers.

  • We do not profile you in a way that produces legal effects or similarly significant consequences, and we do not use automated decision-making in that sense.

5. Cookies and similar technologies

We use a small number of first-party cookies. Non-essential cookies are set only after you agree to them through the consent banner, which groups them into strictly necessary, analytics, marketing and influencer-referral categories.

Our Cookie Policy lists each cookie by name, states how long it lasts and explains what it does. It also explains how to change or withdraw your choices.

6. Analytics and advertising

One analytics tag runs on this site: Microsoft Clarity (usage insight, session replays, heatmaps). It loads through a Google Tag Manager container and only after you accept the analytics category in the consent banner. No Google Analytics, Google Ads, Microsoft Advertising or Meta Pixel tag is configured.

Measurement works as follows:

  • All tags load through a single tag-management container, and none of them fire before you give consent.

  • Analytics tags are released only by the analytics consent category; advertising and remarketing tags only by the marketing category.

  • We apply Google Consent Mode, so a default state of "denied" is in force until you choose otherwise.

  • This policy and the Cookie Policy will be updated to name each tag before it goes live, and the stored policy version will be raised so you are asked again rather than carried over on an old choice.

7. Who we share data with

We share personal data only where we need to, and only with parties bound to protect it:

  • Email delivery — the provider that sends your confirmation and announcement emails.

  • Hosting and infrastructure — the provider that runs the servers this site is served from.

  • Cloudflare — anti-bot verification of the sign-up form.

  • Mailing list platform — once we appoint one to manage announcement emails. No mailing list platform is connected today; sign-ups are stored on our own infrastructure.

  • Ticketing partner — once appointed. If you follow a link from this site to buy a ticket, we may pass a referral code so the sale can be attributed to the channel that referred you. Your purchase details are collected by that partner, not by us.

  • Event partners — including the organisations named in our site footer, where sharing is necessary to deliver the event.

  • Professional advisers, auditors and authorities — where we are legally required to disclose, or need to establish or defend a legal claim.

8. International transfers

Some of our providers operate outside the European Economic Area, including in the United States. Where personal data is transferred outside the EEA, we rely on an adequacy decision by the European Commission where one applies, or otherwise on the European Commission's Standard Contractual Clauses together with any additional safeguards the transfer requires. You may request a copy of the relevant safeguards using the contact details in section 14.

9. How long we keep data

Data

Retention

Mailing list email address and consent record

Until you unsubscribe or ask us to erase it, and for [N] months afterwards as proof that consent existed

Sign-up form submissions stored on our infrastructure

[N] months

Referral and campaign records

[N] months from the visit

Cookie consent record

182 days, after which you are asked again

Server access logs

[N] days

Creator applications, once live

[N] months after the selection round closes, unless you ask us to erase them sooner

Where a retention period is still shown in brackets, it is being set as part of finalising the organiser's records policy.

10. Your rights

Under the GDPR you have the right to:

  • Access the personal data we hold about you, and receive a copy

  • Rectify data that is inaccurate or incomplete

  • Erase your data where there is no overriding reason for us to keep it

  • Restrict how we process your data while a dispute is resolved

  • Object to processing based on our legitimate interests, including our referral measurement

  • Portability — receive data you gave us in a structured, machine-readable format

  • Withdraw consent at any time, which does not affect processing that already took place. Every announcement email carries an unsubscribe link, and cookie choices can be changed from the "Cookie settings" link in the site footer whenever the banner is active.

To exercise any of these, write to [email protected]. We answer within one month, and will tell you if we need longer because a request is complex.

If you are not satisfied with our response, you may complain to the data protection authority in the EU or EEA country where you live, work, or where you believe the problem occurred. You may also seek a remedy through the courts.

11. Children

This site is intended for adults. We do not knowingly collect personal data from children. Admission rules for the event itself, including any age restriction and any requirement to be accompanied by an adult, will be published with the ticket terms. If you believe a child has given us personal data, contact us and we will delete it.

12. Security

We protect personal data with transport encryption (HTTPS), encrypted and HTTP-only cookies where the cookie is not required by client-side code, restricted administrative access, and providers selected for their own security posture. No system is perfectly secure, but we take reasonable and proportionate measures and will notify you and the relevant authority where a breach requires it.

13. Changes to this policy

We will update this policy when what we do with personal data changes. The "last updated" date above always reflects the current version. Where a change materially affects cookies or tracking, we will raise the stored policy version so that the consent banner asks you again rather than relying on an earlier choice.

14. Contact us

For any question about this policy or about your personal data:

  • Story Peak Global Inc.

  • Suite 472, 29 Poeun-ro 8-gil, Mapo-gu, Seoul, Republic of Korea

  • [email protected]

Legal notice

This policy describes our data practices in good faith and in plain language. It is not legal advice, and retention periods are still being finalised.