Privacy policy

Last updated: 1 May 2026

Who we are

SKIP2Q ("we", "us") is a queue-management and access platform operated from Barcelona, Spain. This policy explains what personal data we collect, why, and your rights under the EU General Data Protection Regulation (GDPR).

Data we collect

We collect the minimum data needed to run the service:

  • Account data — name, email, phone, profile photo if you add one.
  • Transaction data — passes purchased, tier selected, venues visited, scan events.
  • Device & app data — device type, app version, crash diagnostics, approximate location (only when you allow it).
  • Marketing preferences — opt-in to newsletters, push notifications, partner updates.

Why we process it

To create your account, sell and validate passes, route you to the right lane, prevent fraud, and improve the product. We don't sell personal data, ever.

Sharing

We share data only with the partners you visit (venue staff need to scan your pass), payment processors (Stripe), infrastructure providers (AWS, hosted in the EU), and authorities when legally compelled. All processors are bound by data-processing agreements.

Your rights

You can access, correct, export, restrict, or delete your data at any time from the app, or by emailing privacy@skip2q.com. You also have the right to file a complaint with the Spanish Data Protection Agency (AEPD).

Retention

Account data is kept while your account is active and for 12 months after closure. Transactional records are kept for 6 years to comply with Spanish accounting law. Crash diagnostics are pruned after 90 days.

Contact

Data Protection Officer — privacy@skip2q.com.