Privacy Policy
Last updated: 28 July 2026
1. General
1.1. The Runup LTD (hereinafter: "The Runup", the "Company", "we", "us", "our" or any other first-person reference) operates, via an application and a website whose address is therunup.ai (hereinafter: the "Website"), a platform for connecting and matching event organizers and vendors in the event management field, and a series of associated services for planning and managing events: event planning support via an artificial intelligence representative (Evie), an invitation and RSVP management service, a seating arrangement service, a digital gift-giving service via credit card, and an event photo gallery with face recognition. In addition, the Company enables messaging and video calls between event organizers and vendors (including with the participation of the AI representative), and provides event vendors with tools for managing potential customers and generating invoices (hereinafter all products and services of the Company collectively: the "Services").
1.2. This policy details how the Company collects, processes, shares, retains, and secures personal information during the use of the Services regarding event organizers, event vendors and/or contact persons on their behalf, invitees, and photographed guests (hereinafter collectively: "Users"), and the rights of Users regarding their personal information (hereinafter: the "Privacy Policy").
1.3. This policy may be updated from time to time. The updated version will appear in the application and on the Company's Website. Such changes will apply to you, and therefore we recommend checking them from time to time.
1.4. You are not legally required to provide us with personal information. However, if you do not provide certain information, we may not be able to provide some or all of the Services.
1.5. The Privacy Policy is drafted in the masculine singular but refers to all genders. Section headings are intended for ease of reading only and shall not be used for the interpretation of the policy.
2. What Information Do We Collect and How Do We Collect It?
As part of providing the Services, we collect and process personal information required to operate the Services, personalize the user experience, and improve the Services and the artificial intelligence system. For this purpose, we may collect the following types of information:
2.1. Information that the User chooses to provide:
2.1.1. Identification and contact details: full name, email address, mobile phone number, username, password, and other login details for identification and entry into the Services.
2.1.2. Information you provide in the framework of contacting our support or customer service: as part of the Services, you can contact us to request technical support or on any other matter. In such a case, we will retain the contact details and all information you provide to us.
2.1.3. Your conversations with our AI representative (Evie), or conversations in which our AI representative participates: including messages, responses, transcripts, summaries, interaction patterns, and any other information you choose to share in their framework. To the extent that voice calls are conducted with or with the participation of Evie, the voice information may be processed in real-time for the purpose of transcription, understanding the conversation, and providing the service, but raw voice recordings are not retained by us (hereinafter: "AI Representative Conversation Content").
2.1.4. Any content you upload in the framework of the Services as part of chats, conversations (including video calls), messages, and any interaction you have with other users of the Services, for example scheduled meetings and price quotes sent.
2.1.5. Additional information that event organizers choose to provide:
2.1.5.1. Information you provide to us as part of using the Services:
● Event details (event type, date, location, number of guests, budget, selected vendors, special requirements);
● Information you provide regarding your personal preferences, including event style, musical preferences, and design preferences.
● Content you upload to the Services, including photos, videos, and files (including metadata associated with the files, which may include location data, capture time, and device characteristics).
● Details regarding event vendor bookings in the framework of the Services, even if not completed (such as filling out a contact form with event vendors registered in the Services, and information on meetings and price quotes you received from event vendors in the framework of the Services).
● Reviews and feedback on event vendors registered on the Platform that will be published on it.
2.1.5.2. Information you choose to upload to the Services from external sources and tools as part of using the Services (all or part of them) subject to your authorizations, such as information about your contacts, information about events and availability from your digital calendar, playlists, and musical preferences from digital music services.
2.1.6. Additional information that event vendors choose to provide:
2.1.6.1. Information you provide as part of setting up your business profile, such as service category, service areas, offered services, pricing structure, service packages, availability, and portfolio.
2.1.6.2. Information you provide as part of your use of the Services (all or part of them): including bookings made through the Services, as well as messages, responses, inquiries, price quotes, and contracts with customers and potential customers.
2.1.6.3. Information you choose to upload to the Services from external sources and tools as part of using the Services (all or part of them) subject to your authorizations, such as messages, responses, inquiries, calls, contacts, information on events and schedules from your email accounts, digital calendars (such as a Google Calendar account), WhatsApp, and Facebook.
2.1.7. Additional information that invitees and guests at the event choose to provide:
2.1.7.1. Information you provide us in the framework of RSVP'ing, including information about dietary preferences/allergies, and information about additional guests accompanying you.
2.1.7.2. Biometric information in the framework of the event's photo gallery: including a photo you upload for self-identification in the photo gallery using face recognition, and all photos of you identified thereafter.
2.2. Information collected automatically regarding users' activity: information regarding your use of the application and the Website (such as the history of pages you visited, your views of other users' profiles, meetings and price quotes scheduled in the framework of your use of the Services), and technical information about the device you used (such as the device's IP address, mobile phone model, operating system version – if you authorized their collection during application installation). This data is collected using dedicated tools such as cookies, including tools of third parties. Further details on these tools can be found in the section "Cookies and Automatic Information Collection on Websites and Applications" below.
2.3. Information generated about you by the artificial intelligence system, including summaries of your conversations with the participation of the AI representative, planning preferences that arose from them, and analysis of the event organizer's level of interest in potential event vendors.
2.4. Information about others: as part of your use of the Services, you may provide us with personal information also about third parties such as:
2.4.1. Information about additional guests and invitees you upload in the framework of event management and RSVPs;
2.4.2. Contacts you choose to import from your device and your digital accounts;
2.4.3. Photos and videos including the likeness or voice of all participants in the event;
2.4.4. Information about potential customers who contacted you and correspondences with them, if you are an event vendor who connected our system to your business accounts on other platforms.
2.4.5. Information about customers who purchased services from you through the Platform for the purpose of issuing invoices, such as identification details required for the accounting system.
To the extent that photos, videos, or biometric information of a minor are uploaded to the Services, we will rely on the representations of the Organizer or the uploading party that all consents, authorizations, and notices required by law have been obtained, including from a parent or legal guardian, as applicable.
If you provide us with information about other people or on their behalf, you must obtain their consent to do so and to this policy.
3. Purposes of Using the Information
The information about you is used by us primarily to provide you with the Services. In addition, we may use the information for the following purposes:
3.1. Establishing contact with you and others, and in particular to send users updates, notifications, and additional information regarding the Services.
3.2. For purposes of identity verification, providing customer service, and handling failures, inquiries, and complaints regarding the Services.
3.3. To enable us to offer the event organizer tailored proposals for event planning, among other things based on the data shared with us.
3.4. For the purpose of personalizing Evie, the AI representative, to your needs and preferences.
3.5. To evaluate the level of interest of an event booker in contracting with event vendors using artificial intelligence.
3.6. To enable registered event vendors to contact event organizers and offer them proposals on their behalf.
3.7. To analyze industry trends and create comparison data in the events field (such as price ranges, seasonal demand, and vendor performance metrics) from users of the Services and potential customers of event vendors.
3.8. To enable invitees and guests at events to identify and receive access to their photos from the event using face recognition technologies.
3.9. Operating and improving our Services and products, including conducting market research and surveys, statistical analyses, and deciphering the uses users make of the Services.
3.10. For accounting purposes and issuing accounting documents (including on behalf of event vendors).
3.11. For the purpose of detecting, preventing, and enforcing against illegal activities or activities that may violate our Terms of Use (including fraud attempts), as well as to maintain data security and user safety.
3.12. For the purpose of complying with the provisions of applicable law and regulation, including handling data subjects' requests for inspection or correction.
3.13. For the purpose of protecting our legitimate interests and legal rights and those of others (including defending against claims).
4. Transfer of Information to Third Parties
For the purposes detailed in this policy, we may transfer the information to third parties, in Israel or abroad (including in countries such as the US, where applicable privacy protection laws may provide a lower level of protection than that provided by Israeli law), among others:
4.1. To subcontractors and vendors with whom we cooperate in the framework of our ongoing activities when required for the purpose of providing the Services. In this framework, we may transfer the information (in whole or in part) to vendors who operate face recognition services based on biometric information, to AI model providers, and to cloud providers abroad who provide us with services in connection with the Website, the application, the AI representative, or any other part of the Services.
4.2. To other users of our Services. In this framework, we may transfer information about event planners to registered event vendors in the Services, including name, contact details, and event details, as well as analysis using AI tools regarding the event planner's level of interest in the service. Similarly, other users of the Services may receive access to information in the vendor profile, including contact details, service description, prices, and availability. In addition, we may give other users of the Services access to photos from the event that include your voice or likeness.
4.3. To clearing companies, credit card companies, and other third parties who grant services to the Company in connection with its activities, or use its services in another manner.
4.4. To vendors providing us with face recognition services in order to identify event participants whose photos were uploaded to the Platform.
4.5. The content of your conversations with the AI representative may be transferred to third parties who provide us with storage services, AI-based analysis, and AI-based transcriptions or summaries. To the extent that voice calls are conducted, the voice information may be processed for the purpose of transcription and operating the service, but raw voice recordings are not retained by us.
4.6. To vendors providing us with monitoring, research, analytics, and measurement services of information that enable us to develop our products.
4.7. In the framework of selling the Company's business (in whole or in part) or a merger, provided that such third party complies with the provisions of applicable law regarding privacy protection and data security.
4.8. If a judicial order is received by us instructing us to do so, or if there is a legal requirement to do so, including any transfer of information required from us (by law).
4.9. In order to enable us to defend ourselves against legal claims.
The transfer of information as aforesaid will be executed subject to the third party's undertaking to maintain privacy and data security at the level required in accordance with the type of transferred information, to the extent possible under applicable law.
5. Data Security
5.1. The Runup employs reasonable and customary data security measures in accordance with the type of information in its possession and in accordance with the provisions of applicable law. Despite the foregoing, there is a risk of intrusion into the Company's databases and information. As long as the Company employs reasonable security measures, it will not be responsible for any damage caused following such unauthorized intrusion and leak of information to a third party due to such intrusion.
5.2. Please note, you are also responsible for employing appropriate data security measures, such as providing correct contact details, protecting your passwords, using anti-virus tools, etc., updating software, and avoiding the use of public Wi-Fi networks without encryption.
6. Data Retention
The Runup will retain your personal information for the minimum period required for the purposes detailed above in this Privacy Policy. The duration of our retention of your personal information depends on the purposes for which it was collected, the manner of its use, and compliance requirements with applicable law.
Without derogating from the foregoing, face recognition templates or biometric data generated for the purpose of the photo-finding service will be retained only for the duration required to operate the service, and will be deleted automatically within 14 days of indexing or template creation, and no later than 30 days.
7. Your Rights in Connection with Your Personal Information
Subject to the provisions of the Privacy Protection Law, 5741-1981 (the "Law") as applicable, you possess the right to request to inspect the personal information about you that we process in accordance with the provisions of Section 13 of the Law, as well as to demand the correction of the information if it becomes clear to you that the information held by the Company is not current or accurate, and in certain cases to request its deletion in accordance with the provisions of Section 14 of the Law. In such a request, we may ask you to specify identification details required to enable us to identify you properly and allow you to exercise the aforementioned rights.
8. Cookies
We make use of cookies and similar technologies (such as tags and web beacons), including third-party tools, which monitor your activity in the application and on the Website.
The use of cookies is intended to operate the Service, improve the user experience (such as Firebase Authentication and Sentry), and secure data. A cookie is a small text file transferred to your device by a web server. This file does not constitute computer software, and it cannot read the information on your device or perform any other action. The purpose of using cookies, among other things, is to enable us to identify you quickly and efficiently when you return and use one of the Services or visit the application again, thereby enabling a better and more tailored service experience. For example, the use of cookies helps identify you upon re-entering the Website or the application and monitor your activity on them. Cookies automatically collect information such as IP address, duration of visit to the Website and application, and operating system versions. You can stop the collection of information via cookies by changing the settings in the application or on the Website. If you block cookies, some of the Services may not be available to you, or you may be required to re-enter details. Changing these settings is your responsibility.
9. How We Handle Google User Data
When you connect your Google account (for example, with Google Sign-In or to sync your Google Calendar), The Runup's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
Data we access: basic Google profile information through Google Sign-In — your name, email address, and profile picture (scopes openid, profile, email); and Google Calendar data — your free/busy availability and your calendar events — through the Google Calendar scopes calendar.readonly, calendar.events, and (in our web app) calendar.
How we use it: solely to provide the scheduling and booking features. We read free/busy availability to display a vendor's availability and prevent double-booking, and we create, update, and delete calendar events only to keep the appointments you book through The Runup in sync with your Google Calendar (two-way sync). Profile information is used to create and authenticate your account. We do not use Google user data for advertising or for any purpose beyond providing these features.
How it is shared: we do not sell Google user data, and we do not share it with third parties for their own purposes. It is processed only by infrastructure that operates on our behalf to run the service (Google Firebase / Google Cloud Platform — our authentication, database, and hosting provider). We do not transfer it to any other third party except as necessary to provide these features to you.
How it is stored and protected: Google user data, including the OAuth refresh token used to maintain calendar sync, is stored within Google Firebase / Google Cloud Platform. It is encrypted in transit (TLS/HTTPS) and at rest, and access is restricted by server-side authentication and security rules.
How long we keep it, and how to delete it: we retain your Google connection — including the stored refresh token and any synced calendar data — only for as long as you keep the integration connected. You can disconnect Google Calendar at any time within the app, which revokes our access and deletes the stored token. You can also request deletion of your account and all associated data at therunup.ai/data-deletion. On disconnection or account deletion, the associated Google user data is removed.
10. Contact Us
For any question or problem regarding your privacy and in connection with this Privacy Policy, you can contact us:
The Runup LTD (דהראנאפ בע"מ), Company No. 517340683
20 HaRakevet Street, Jerusalem 9314610, Israel
Email: info@therunup.ai | Phone: 053-451-3365