Legal

Privacy and POPIA notice

Last updated 10 August 2026. This notice explains how Pulse, operated by Thirteen Degrees, processes personal information when you register for events, receive tickets and check in at the door.

Who is responsible for your information

Thirteen Degrees (the "responsible party" under the Protection of Personal Information Act, 4 of 2013) operates Pulse. Where an event organiser uses Pulse to run their own event, that organiser is the responsible party for their attendee data and Thirteen Degrees acts as an operator on their behalf.

Privacy and data queries: privacy@13-degrees.com

What we collect

  • Account details: name, email address, profile photo and password credentials.
  • Ticket details: ticket number, access type, use counts and check-in timestamps.
  • Event-specific details you choose to give an organiser, such as dietary requirements, allergies and accessibility needs (this is special personal information and is only shared with catering and event operations for that event).
  • Communication records: emails we send you about your ticket or the event.
  • Technical data: device, browser and log information used to keep the platform secure.

Why we process it (lawful basis)

  • Performance of a contract: issuing your ticket and admitting you to the event.
  • Legitimate interests: venue safety, access control, fraud and duplicate-ticket prevention, and attendance reporting for the organiser.
  • Consent: dietary and allergy information, and any optional marketing messages.
  • Legal obligation: tax, accounting and health-and-safety record keeping.

Who we share it with

The organiser of the event you registered for, and their appointed gate, security and catering teams; our processors for hosting, database, email delivery and payment processing; and authorities where the law requires it. We do not sell personal information, and we do not share attendee lists with unrelated third parties.

Some processors host data outside South Africa. Where that happens, transfers are made under section 72 of POPIA with contractual safeguards in place.

How long we keep it

Ticket and check-in records are kept for the duration of the event plus 3 years for reconciliation, dispute resolution and statutory record keeping. Dietary and allergy information is deleted within 30 days after the event. Account data is kept until you delete your account.

Your rights

You may request access to, correction of, or deletion of your personal information, object to processing, and withdraw consent for optional processing at any time. Manage most of this yourself under Profile, or email us. You may also lodge a complaint with the Information Regulator (South Africa) at complaints.IR@justice.gov.za.

Security

Access to attendee data is restricted by role, tickets are validated server side, and traffic is encrypted in transit. If a security compromise affects your personal information, we notify you and the Information Regulator as required by section 22 of POPIA.

Children

Pulse is not intended for children under 18. Where a minor attends an event, the ticket must be registered and managed by a parent or legal guardian who provides the required consent.