Studio privacy & analytics
The following describes the current Studio. The published company policy follows below; older invitations continue to use the original service.
Optional analytics
Analytics are off until you choose to allow them. We count page views and create-button clicks on marketing pages, pricing and Studio setup. A random browser identifier links consenting visits and their first marketing source to drafts and server-confirmed purchases for up to 90 days. This does not identify people across devices. Full URLs, guest tokens, names, email addresses and invitation content are not analytics fields. These first-party records are not sent to advertising platforms.
Your choice is saved in this browser. You can change it using the analytics control below. Do Not Track and Global Privacy Control preferences keep optional analytics off. If browser storage is unavailable, analytics stay off unless you explicitly allow them for the current page.
Optional advertising measurement
Advertising measurement is a separate choice and is off by default. If allowed, Meta Pixel receives marketing-page views, checkout starts and server-confirmed first plan purchases, including the plan identifier, currency, value and a random event identifier. A server confirmation can also send a SHA-256 hash of your account email and Meta matching cookies after an explicitly consented checkout. Its event identifier matches the browser event to prevent double counting. Meta can receive the page URL, browser/device and network information, and use its cookies to match an ad click or view. Automatic form collection and advanced matching are disabled. We do not send invitation text, guest names, replies, photos or recordings.
Measurement runs on marketing pages and the host checkout flow, not guest invitation or private preview pages. Free drafts, guest RSVPs, plan upgrades and extra guest-detail packs are not reported as acquisition purchases. Refusing measurement does not affect editing, payment or publishing. Use Privacy choices to withdraw permission. Browser privacy signals keep both optional purposes off. Meta processes events under its own privacy and cookie policies; withdrawing permission stops future events but does not erase events already received by Meta.
Reply confirmation emails
When enabled by a host, we send a confirmation to the email address recorded for the replying household and a notification to the host. Confirmations include only that household’s invited events and the hosts’ event timezone. Personal links remain private. Delivery jobs retry for up to 23 hours; accepted delivery payloads are removed after seven days. Signed provider notifications record delivery, bounces and complaints. We retain address hashes to prevent sending to permanently bouncing or complaining addresses. Provider acceptance does not guarantee inbox delivery.
Your guests and uploads
Our anonymous page-view analytics do not run on personal invitations, private previews or host dashboards. The separately chosen ad measurement can run in the host checkout flow. Guest names, replies, dietary notes, photos and recordings are not analytics fields. Studio needs invitation, account and response records to provide the service; authorised staff can inspect account profiles, saved invitations and their progress to provide support and improve the product. Staff access is restricted and does not grant another customer access to your invitation.
Personal draft uploads are private to their owner. In a business workspace, managers can access the uploads and guest records for its client events. Invited clients can see only their own invitation and the media used in its draft, and can leave feedback or approve a version. The business owner controls manager access; the team controls client access. Invitation links expire after seven days, can be used once, and can be revoked. Review records contain the reviewer’s account identity, name, response, version and timestamp. Media used by a published invitation can be read by people who can access that published media. Unpublishing removes that anonymous access. Event visibility and reply permissions continue to depend on each guest’s personal invitation.
Authorised staff can also review draft uploads for support.
Product diagnostics and editor progress
We retain limited operational diagnostics for saves, uploads, checkout and publishing: the account and invitation identifiers, operation result, a fixed error category and duration. These help staff investigate failed actions. They do not contain form text, guest details, raw error messages or uploaded files.
With your analytics permission, we also record which editor section you opened, previews, successful link copies, checkout closures and browser-side checkout or photo preparation failures. These observations are linked to your invitation and include a coarse phone, tablet or desktop category. They are not session recordings and are not sent to advertising platforms. Refusing analytics, Do Not Track or Global Privacy Control stops these optional observations. Missing activity is not treated as proof that you abandoned your invitation.
Diagnostic and editor-event records expire after 90 days and are removed when your account is erased. Changing consent stops future optional collection; invitation, payment and operational records remain available to provide the service.
Storage and retention
Daily totals and consented browser events are stored in the Studio database. Scheduled maintenance removes totals older than 90 calendar days. Your consent preference stays in this browser until you change it or clear browser storage. Essential sign-in cookies support your account session. Hosting and payment providers may maintain their own operational records.
Changing your analytics choice stops future optional events. Previously aggregated totals remain; individual browser records expire after 90 days. Unresolved delivery jobs expire after 30 days.
This Privacy Policy explains what information Invytes collects, how we use it, and the choices you have. Invytes is a brand operated by Anura Enterprises (GSTIN 30DSIPM2791H1ZO), located at Goa, India. By using Invytes you agree to this policy.
Information we collect
- Account information — your name and email address when you sign up.
- Invitation content — the details, images and media you add to your invitation.
- Guest & RSVP data — information your guests submit through your invitation (such as name, attendance, meal preference and messages), which you collect as the host.
- Payment information — processed securely by our payment provider, Razorpay. We do not store your full card details.
- Usage data — first-party analytics about how invitations are viewed, used to give hosts attendance and engagement insights.
How we use information
- To provide, maintain and improve the service
- To process payments and deliver your purchased invitation
- To send transactional emails (such as RSVP confirmations and host notifications)
- To provide hosts with analytics about their invitation
Cookies & analytics
We use essential cookies to keep you signed in and to run the service, plus privacy-friendly, first-party analytics. We do not sell your personal data.
Sharing
We share data only with the providers needed to run Invytes — our payment processor (Razorpay), our email provider, and our hosting infrastructure — and where required by law. We do not sell personal information.
Your rights
You can access, correct or delete your account data, and request a copy of your information. To exercise these rights, contact us at hello@invytes.me.
Data retention
We keep your data for as long as your account is active or as needed to provide the service and meet legal obligations. You can ask us to delete your account at any time.
Grievances & contact
Questions about this policy, or to exercise your data rights, contact Anura Enterprises at hello@invytes.me. Registered address: Goa, India. GSTIN: 30DSIPM2791H1ZO.