Memilove Privacy Policy
Last updated: September 20, 2026
We value your trust and are committed to safeguarding the personal data and privacy of you and your event guests. This Privacy Policy explains what data we collect on the Memilove platform, how we process it, and how we keep it secure.
1. General Provisions
This Privacy Policy is prepared in compliance with Regulation (EU) 2016/679 of the European Parliament and of the Council (GDPR), the Law on Legal Protection of Personal Data of the Republic of Lithuania, and other applicable laws.
This policy applies to all individuals who visit memilove.com, place an order, manage an event portal, or leave greetings via QR code link.
2. Personal Data Processed & Legal Grounds
We process only the personal data necessary to provide services, execute contracts, and fulfill statutory obligations:
• Organizer and order data: email address, organizer name, celebrants' names or event title, event date and duration, company details (if an invoice is requested). Legal basis: performance of contract (GDPR Art. 6(1)(b)).
• Payment and accounting data: order number, transaction status, billing details. Payments are handled securely by licensed payment institution Paysera LT, UAB. We do not store or process payment card numbers or banking passwords. Legal basis: legal obligation under accounting regulations (GDPR Art. 6(1)(c)).
• Guest audio greetings and photos: voice audio recordings (up to 60s), uploaded photos, guest-entered names, creation timestamps. Access is granted solely to the event organizer via a secure authentication token. Legal basis: performance of contract and user consent (GDPR Art. 6(1)(a) & (b)).
• Technical and browsing data: IP address, access timestamp, browser type, consent logs. Necessary for security and contract proof. Legal basis: legitimate interest and legal compliance (GDPR Art. 6(1)(c) & (f)).
3. Data Retention Periods
We retain personal data only for as long as necessary for the specified purposes:
• Accounting and financial records: retained for 10 years pursuant to statutory archiving and accounting regulations.
• Event voice recordings and photos: stored in secure storage for 60 calendar days after the event concludes, allowing the organizer to download the full archive. After 60 days, all media files are permanently and irreversibly deleted.
• Order agreements and consent logs: retained for 3 years for legal compliance and claims limitation purposes.
4. Data Transfers to Third Parties
We do not sell or share personal data for third-party commercial or marketing purposes. Data is shared only with trusted technical processors:
• Paysera LT, UAB for secure payment processing;
• Cloud hosting and transactional email providers operating servers within the European Union (EU/EEA);
• Public authorities only where strictly mandated by applicable laws.
5. Your Rights as a Data Subject
Under GDPR, you have the following rights:
• Right of access to your personal data;
• Right to rectification of inaccurate or incomplete data;
• Right to erasure ('right to be forgotten');
• Right to restriction of processing and right to data portability;
• Right to object to processing and right to withdraw consent at any time.
To exercise your rights, email us at hi@memilove.com. We respond within 30 days. You also have the right to lodge a complaint with the State Data Protection Inspectorate (L. Sapiegos g. 17, Vilnius, email: ada@ada.lt, vdai.lrv.lt).
6. Cookies
We use only strictly necessary technical cookies that enable core site operation, secure login sessions, checkout storage, and language preferences.
No third-party advertising cookies are used without your consent.
7. Policy Updates & Contacts
We reserve the right to update this Privacy Policy. The latest version is always available on this page with the update date.
For any questions regarding personal data or this policy, contact Panevio, MB, Islandijos pl. 69-60, Kaunas, email: hi@memilove.com.