Privacy Policy
We are committed to protecting your personal data. This Policy explains how Pinet Bilişim A.Ş. (Meet2Be) collects, uses, and safeguards your information.
Last updated
January 1, 2026
1 Introduction
Pinet Bilişim A.Ş. ("Company", "we", "us", or "our"), the operator of the Meet2Be platform, is committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, store, share, and protect your personal information when you access or use the Meet2Be platform and all related services (collectively, the "Service") available at meet2be.com.
This Policy is prepared in full compliance with Turkish Law No. 6698 on the Protection of Personal Data ("KVKK") and, where applicable, the General Data Protection Regulation (EU) 2016/679 ("GDPR"). It applies to all individuals who interact with our Service, including organizers, administrators, event participants, and website visitors. We encourage you to read this Policy carefully.
By using the Service, you acknowledge that you have read, understood, and agree to the data processing practices described in this Policy. If you do not agree, please discontinue use of the Service.
2 Data Controller
For the purposes of KVKK and GDPR, the data controller responsible for your personal data is:
Legal Entity
Pinet Bilişim A.Ş.
Brand
Meet2Be
Privacy Contact
privacy@meet2be.comPhone
+90 (312) 911 9113
Address
Bahçelievler Mah. 323/1 Cadde 10/50C No: 65, Gölbaşı / Ankara, Turkey — 06830
As data controller, we determine the purposes and means of processing your personal data. Where Meet2Be processes personal data on behalf of event organizers (e.g., participant submissions, Q&A responses), we act as a data processor under a separate Data Processing Agreement (DPA). Please contact privacy@meet2be.com to obtain a copy of our DPA.
3 Personal Data We Collect
We collect the following categories of personal data, depending on how you interact with the Service:
Account & Registration Data
Full name, email address, job title, organization name, billing address, phone number, and password (stored in hashed form). Collected when you register an account.
Usage & Log Data
IP address, browser type and version, operating system, pages visited, time and duration of visits, referring URLs, click-stream data, and error logs. Collected automatically when you use the Service.
Event & Participant Data
Data submitted through event features, including Q&A responses, survey answers, keypad votes, paper submissions, and attendance records. Organizers act as data controllers for participant data; Meet2Be processes it as data processor.
Payment & Billing Data
Billing address, company VAT number, and invoice history. Full payment card details are handled exclusively by our PCI-DSS-certified payment service providers and are not stored on our servers.
Support & Communications Data
Content of support requests, feedback, and any personal data you voluntarily share when contacting us via email or chat.
Device & Technical Data
Device type, screen resolution, connection type, and unique device identifiers, collected to ensure compatibility and optimize performance.
4 How We Use Your Data
We use the personal data we collect solely for the following purposes:
- Providing, operating, and maintaining the Meet2Be platform and all associated features.
- Creating and managing user accounts, authenticating identity, and handling subscription management.
- Processing payments, issuing invoices, and managing billing records.
- Responding to support requests, technical inquiries, and customer service communications.
- Analyzing usage patterns, diagnosing technical problems, and improving the quality and performance of the Service.
- Detecting, preventing, and investigating fraud, security incidents, abuse, and violations of our Terms of Service.
- Complying with applicable laws, court orders, regulatory requirements, and tax obligations.
- Sending transactional communications such as account confirmations, invoices, and security alerts.
- Sending promotional or marketing communications, only with your prior explicit consent, which you may withdraw at any time.
5 Legal Basis for Processing
We process your personal data on the following legal bases, as prescribed by KVKK Article 5 and GDPR Article 6:
Contract Performance
KVKK Art. 5/2-c · GDPR Art. 6/1-bProcessing necessary to perform our subscription agreement with you, including providing the Service, managing your account, and processing payments.
Legal Obligation
KVKK Art. 5/2-ç · GDPR Art. 6/1-cProcessing required to comply with applicable laws and regulations, including Turkish tax law, anti-money laundering requirements, and responses to lawful governmental or judicial requests.
Legitimate Interests
KVKK Art. 5/2-f · GDPR Art. 6/1-fProcessing necessary for our legitimate business interests — such as fraud prevention, network security, product improvement, and business analytics — provided these interests are not overridden by your fundamental rights and freedoms.
Explicit Consent
KVKK Art. 5/1 · GDPR Art. 6/1-aProcessing based on your freely given, specific, informed, and unambiguous consent, such as for marketing emails or non-essential cookies. You may withdraw your consent at any time without affecting the lawfulness of prior processing.
6 Data Sharing & Third Parties
We do not sell, rent, or trade your personal data to third parties for their own marketing purposes.
We share personal data only with carefully selected service providers who assist us in operating the Service. These providers are contractually bound to process your data exclusively on our instructions and in compliance with applicable data protection laws. Categories of service providers include: cloud infrastructure and hosting providers; payment processing companies; email delivery services; customer support platforms; security and monitoring tools; and analytics services.
We may also disclose personal data: (i) to comply with a legal obligation, court order, or binding request from a competent governmental or regulatory authority; (ii) to protect the rights, property, or safety of Meet2Be, our users, or the public; (iii) in connection with a corporate transaction such as a merger, acquisition, or asset sale, subject to equivalent data protection obligations; (iv) with your explicit prior consent.
7 International Data Transfers
Your personal data may be transferred to and processed in countries outside Turkey and the European Economic Area (EEA), including countries where data protection standards may differ from those applicable in your jurisdiction.
When transferring personal data outside Turkey, we comply with KVKK Article 9, which requires either: (i) the data subject's explicit consent; (ii) an adequacy decision by the KVKK Board confirming that the recipient country provides adequate protection; or (iii) a written undertaking by the recipient that adequate protection will be provided, subject to KVKK Board approval where required.
For transfers from the EU/EEA, we rely on Standard Contractual Clauses (SCCs) approved by the European Commission, or other applicable transfer mechanisms under GDPR Chapter V. For transfers to the United States, we apply additional contractual safeguards to ensure equivalent protection of your data.
8 Data Retention
We retain your personal data only for as long as necessary to fulfil the purposes described in this Policy, provide the Service, and comply with applicable legal and regulatory obligations.
Specific retention periods are as follows: Account and profile data is retained for the duration of your active subscription and for three (3) years following account deletion or termination. Financial records, invoices, and billing history are retained for ten (10) years as required by Turkish Tax Procedure Law. Event and participant data is retained for the duration of the organizer's active subscription and deleted within ninety (90) days of account termination, unless legally required otherwise. Support and communication records are retained for three (3) years from the date of last contact.
Upon expiry of applicable retention periods, personal data is securely deleted, destroyed, or irreversibly anonymized. You may also request earlier deletion by contacting privacy@meet2be.com, subject to any overriding legal retention obligation.
9 Your Rights
Under KVKK (Art. 11) and GDPR (Arts. 15–22), you have the following rights regarding your personal data. To exercise any right, submit a written request to privacy@meet2be.com. We will respond within thirty (30) days; in complex cases, this may be extended by up to two additional months with prior notice.
Right to Information
The right to learn whether your personal data is being processed by us.
Right of Access
The right to obtain a copy of your personal data we hold and information about how it is processed.
Right to Rectification
The right to request correction of inaccurate or incomplete personal data without undue delay.
Right to Erasure
The right to request deletion or destruction of your personal data where it is no longer necessary for its original purpose, where processing was unlawful, or where you have withdrawn consent.
Right to Restriction of Processing
The right to request that we limit processing of your data in certain circumstances, for example while the accuracy of data is disputed.
Right to Data Portability
The right to receive your personal data in a structured, commonly used, machine-readable format and to transmit it to another controller (GDPR users).
Right to Object
The right to object to processing based on legitimate interests or for direct marketing at any time. We will cease such processing unless we demonstrate compelling legitimate grounds that override your interests.
Right to Lodge a Complaint
The right to lodge a complaint with the Turkish Personal Data Protection Authority (KVKK Kurumu) at kvkk.gov.tr, or with the competent supervisory authority in your EU/EEA member state.
We will not charge a fee for processing rights requests unless they are manifestly unfounded or excessive. We may request proof of identity before fulfilling a request to prevent unauthorized disclosure.
11 Security
We implement appropriate technical and organizational security measures, commensurate with the risk, to protect your personal data against unauthorized access, accidental loss, destruction, alteration, or disclosure. Measures include: industry-standard TLS 1.2+/SSL encryption for all data in transit; AES-256 encryption for sensitive data at rest; role-based access controls and multi-factor authentication for administrative systems; regular security assessments, vulnerability scanning, and penetration testing; and mandatory data protection training for all staff with access to personal data.
In the event of a personal data breach likely to result in a risk to your rights and freedoms, we will notify the KVKK Kurumu and/or relevant EU supervisory authority within 72 hours of becoming aware of the breach, as required by law. Where the breach poses a high risk, we will also notify affected individuals directly without undue delay, including information on the nature of the breach and recommended protective measures.
12 Children's Privacy
Meet2Be is designed for, and directed to, individuals who are 18 years of age or older. We do not knowingly collect, store, or process personal data from persons under the age of 18 without verifiable parental or guardian consent. The Service is not intended for use by minors.
If we become aware that personal data has been collected from an individual under 18 without appropriate consent, we will take immediate steps to delete such data from our systems. If you are a parent or guardian and believe your child has provided personal data to Meet2Be without your consent, please contact us immediately at privacy@meet2be.com and we will promptly investigate and remediate.
13 Changes to This Policy
We reserve the right to modify this Privacy Policy at any time to reflect changes in our data processing practices, legal requirements, or the nature of the Service. When we make material changes, we will provide you with at least fourteen (14) days' advance written notice by email to your registered address and/or by posting a prominent notice on the Platform.
Your continued use of the Service after the effective date of the revised Policy constitutes your acceptance of the updated terms. If you do not agree with the changes, you must discontinue use of the Service before the new Policy takes effect. The "Last Updated" date at the top of this page reflects the date of the most recent revision.
14 Contact Us
For any questions, requests, or concerns regarding this Privacy Policy or the processing of your personal data, please contact our Privacy Team:
Legal Entity
Pinet Bilişim A.Ş.
Brand
Meet2Be
Website
meet2be.comPrivacy Email
privacy@meet2be.comLegal Email
legal@meet2be.comPhone
+90 (312) 911 9113Address
Bahçelievler Mah. 323/1 Cadde 10/50C No: 65, Gölbaşı / Ankara, Turkey — 06830
Regulatory & Registration Information
We aim to respond to all privacy inquiries within 5 business days, and to all data subject rights requests within 30 days.