Privacy Policy
Last updated September 28, 2026
VenueCOI (“we”) helps event venues collect and check vendor certificates of insurance (COIs). This policy explains what we collect, why, and how long we keep it.
What we collect
- Account data: your name, email, and venue details.
- Event & vendor data: events you create and the vendors, emails and phone numbers you add.
- Certificates: the COI files vendors upload (or that you submit to the free checker) and the data we extract from them (insurer, limits, dates, named insured, etc.).
- Usage data: basic logs needed to operate and secure the service.
How we use it
To collect, read and check certificates against your requirements, notify and remind vendors, show you status, process payments, and provide support. We do not sell your data.
Data retention
- Free COI checks: uploaded files are used only for that check and deleted within 30 days.
- Account certificates: retained while your account is active so you have an audit record, and deleted on request or within 90 days of account closure.
Sub-processors
We share data only with vendors that help us run the service:
- Supabase — database, authentication and encrypted file storage
- Anthropic — AI extraction of certificate data
- Resend — transactional email
- Polar — payments and subscription billing (merchant of record)
- Vercel — application hosting
Security
Files are stored in a private, access-controlled bucket and served only via short-lived signed links. Access is limited to your team and our operators for support and review.
Your rights
You can request access to, correction of, or deletion of your data at any time by emailing hello@venuecoi.com.
Insurance disclaimer
A certificate of insurance is informational only and does not amend or extend coverage. VenueCOI compares certificate data against your requirements; it does not verify policies with carriers and is not an insurance provider or insurance advice.