Privacy Policy
SCOPE This policy covers thatturkeysandwich.com, its public screening, contact, and event-interest forms, controlled guest and member areas, membership enrollment and dues functions, and controlled administrative areas used for the private-event and membership process. It does not replace the Event Participation Agreement and Waiver, Membership Agreement, or Member Rules & Code of Conduct.
1. Who We Are
That Turkey Sandwich ("TTS") operates this website and the related controlled-access services (collectively, "we," "us," or "our"). The site supports a private, invitation-controlled guest and membership process and is not a public ticketing or open-admission service. Membership enrollment and payment functions, when available, are restricted to people whom TTS has already approved for the applicable controlled process.
2. Information We Collect
- Identity and age-verification information: for an approved Continuing Guest, full legal name and full date of birth personally entered during Agreement acceptance; for an Event-Only Guest, full legal name and mobile phone number collected during event-specific acceptance; and, for a Member, the identity/contact information and government-issued photo-identification image required for Membership.
- Contact and screening information: the name you normally use, email address, phone number, referral or vouching information, screening responses, optional introduction material, and messages you send us.
- Optional public online-profile information: a social-media handle or public profile link you voluntarily provide, which may be manually reviewed for screening and invitation consideration. We do not request passwords or private-account access, connect or authorize accounts, import followers or contacts, or use automated social scoring or approval.
- Controlled-access and waiver information: guest status; shared-word and individual-passcode authentication and access status; successful and unsuccessful access attempts; lockout status; waiver version and acceptance record; required checkbox states; date/time of acceptance; identity-verification/check-in status; and related access history.
- Membership information: General Guest prerequisite/eligibility status, Member status, Membership Agreement and Rule versions acknowledged, membership start/end or status-change dates, current-month dues status, month-by-month payment records, transaction identifiers, Member-sponsored guest history, Members-Only eligibility, administrative notes, warnings, suspensions, bans, and related status history.
- Membership ID information: a Member may be required to upload or provide a copy of a current government-issued photo ID. The image may contain the Member’s photograph, name, date of birth, address, document number, expiration date, barcode, or other information printed or encoded on the document. We do not request a Social Security number as part of the membership ID process.
- Payment information: amount, calendar month, date/time, payment status, processor or payment method, transaction/reference identifier, refund/credit status if any, and administrative reconciliation records. When a third-party processor handles card or bank credentials, its privacy and security practices apply; TTS should not retain complete payment-card numbers or card security codes in its own membership records.
- Event-Only history and repeat-use information: the mobile phone number supplied during event-specific acceptance; completed Event-Only acceptance records matched to that number across events; the associated acceptance count; and any third-or-later-use review flag or related administrative decision.
- Security, technical, and activity information: IP address, browser or device information, user-agent information, request data, session or account identifiers, security and rate-limit events, server logs, and activity/audit records. Activity/audit records may include access attempts, pages or features used, uploads, payments, administrative actions, status changes, prior and new statuses, and timestamps needed to operate, secure, troubleshoot, and investigate use of the site.
- Event-related information you choose to provide, including event-interest submissions, events or event types you select, attendance confirmations, preferences, responses, and communications.
3. Why We Use Information
- screen requests, consider referral or vouching information, review event-interest submissions, manage the approved-guest pool, and consider invitations or Membership;
- verify identity and confirm that a participant is at least 21 years old; consider eligibility or fit for particular adult event age ranges; maintain accurate records; and personally acknowledge birthdays through greetings, notes, or occasional gifts;
- administer Membership eligibility, Member status, current-month dues, Members-Only privileges, General Event Member treatment, Member-sponsored guest review, rule acknowledgments, suspension/ban status, and related administrative records;
- authenticate controlled users, administer guest/member access, check-in, and lockouts; maintain waiver, membership, payment, acceptance, and activity/audit records; and document administrative status changes;
- use Event-Only Guest mobile numbers to administer the repeat-use rule and review later Event-Only requests;
- communicate about access, invitations, membership, dues status, rules, safety, or site requests;
- protect the site, records, guests, Members, premises, and private access system; prevent abuse or unauthorized access; enforce event and membership rules; and investigate incidents;
- comply with applicable legal obligations, respond to lawful requests, and establish, exercise, or defend legal claims.
4. Full Date of Birth and Government ID Verification
The initial public screening form does not request a full legal name or full date of birth. For a person approved to continue, full legal name and full date of birth must be personally entered during the Agreement-acceptance process, when identity is associated with the electronic signature and approved-guest record. We use date of birth to confirm 21+ eligibility, consider eligibility or fit for particular adult event age ranges, maintain accurate guest records, and personally acknowledge birthdays through greetings, notes, or occasional gifts. We do not use date of birth for third-party or targeted advertising and do not sell it.
An Event-Only Guest is not asked to provide a full date of birth through the event-specific acceptance process, and the Event-Only process does not require or retain an ID image.
Membership is a separate higher-trust status. A Member is required to provide a government-issued photo-ID image or copy through the controlled Membership process or another TTS-approved secure method. We retain the current ID image while Membership remains active and ordinarily for three (3) years after Membership ends. We may retain the image longer when a documented legal, safety, incident, dispute, chargeback, investigation, preservation, or similar hold reasonably requires continued retention. When the hold no longer requires the image and the ordinary retention period has expired, the image should be securely deleted. Because the ID image may contain a driver-license, state-ID, passport, or other document number and related encoded data, access to the original image must be restricted to authorized administrators with a legitimate need.
Full dates of birth and retained government-ID images are not displayed in ordinary guest lists, Member event lists, security reminder views, or ordinary exports. A personalized waiver copy may display the signer’s own full legal name and full date of birth. Member ID images must remain in restricted administrative storage and must not be placed in public URLs, public page source, analytics, ordinary browser storage, or general guest/member profile views.
5. How Information Is Stored and Protected
Sensitive event, waiver, guest, membership, identification, payment-status, access, and activity/audit information is stored through controlled server-side or service-provider systems and is not intentionally placed in public page source, public URLs, or ordinary browser storage. We use reasonable administrative, technical, and organizational safeguards designed to limit access, authenticate administrators, protect information in transit, restrict administrative functions, separate highly sensitive identification records from ordinary operational views, and monitor for misuse. No method of electronic storage or transmission is completely secure, and we cannot promise absolute security.
6. When We Share Information
We do not sell personal information. We do not share full legal name, date of birth, government-ID images, or membership records for targeted advertising. We may disclose information only as reasonably necessary to:
- operate the website and its hosting, storage, security, payment, or communications services under appropriate access controls;
- process a Member-initiated payment through the selected payment provider;
- verify access, administer Membership, enforce event or membership rules, or address an emergency or safety issue;
- comply with law, a lawful subpoena, court order, government request, or applicable security-breach notification requirement; or
- protect the rights, safety, property, or security of guests, Members, the private premises, the website, or others.
7. Retention and Deletion
We retain personal information only for as long as reasonably necessary for the purposes described in this policy, including maintaining waiver, membership, identity-verification, payment, access, and activity/audit records; managing approved-guest, event-interest, sponsorship, and membership processes; resolving disputes; enforcing agreements; protecting private access; and meeting legal or safety obligations. We will review and securely delete or de-identify information when it is no longer needed, subject to legitimate recordkeeping, legal, safety, fraud-prevention, security, and dispute-resolution needs. A deletion request may not require us to erase a waiver acceptance, Membership Agreement, payment record, incident record, or other record we reasonably need to retain.
Event-Only acceptance history currently has no automatic expiration. A Member government-ID image is ordinarily retained while Membership remains active and for three (3) years after Membership ends, unless a documented legal, safety, incident, dispute, chargeback, investigation, preservation, or similar hold reasonably requires longer retention. After the applicable retention period and any hold expire, the image should be securely deleted. A lower-risk verification record - such as the fact that identification was verified, document type, verification date, verifying administrator, and age/eligibility result - may be retained longer when reasonably necessary for agreement, safety, security, audit, dispute-resolution, or legal purposes.
8. Your Choices and Requests
You may contact us to request access to, correction of, or deletion of personal information we hold about you, or to ask questions about this policy. We may need to verify your identity before acting on a request. We will evaluate requests under applicable law and may retain information during an active Membership, the stated government-ID retention period, or a documented legal/safety hold when reasonably necessary for safety, security, legal compliance, agreement recordkeeping, payment records, fraud prevention, dispute resolution, or protection of rights.
9. Cookies, Analytics, and Technical Storage
The site is designed not to use persistent browser storage for controlled-access session tokens. It may use strictly necessary technical mechanisms, first-party activity/audit logs, payment-provider mechanisms, and limited service-provider logs to operate, secure, and troubleshoot the site. We do not knowingly sell personal information or use it for cross-context behavioral advertising. If this changes, this policy will be updated before the change takes effect.
10. Children
This site and the private guest and membership process are intended only for people age 21 or older. We do not knowingly solicit Membership information from anyone under 21. If you believe a person under 21 has submitted information, contact us so we can review and address the record.
11. Links, Payment Providers, and Other Services
This site may link to or use third-party hosting, communications, storage, or payment services. Their privacy practices are governed by their own policies. A Member-initiated membership payment is distinct from a voluntary event contribution. Neither a payment processor nor a completed payment can bypass TTS eligibility, conduct, suspension, or access rules.
12. Changes to This Policy
We may update this policy as the site, event process, or membership process changes. The version and effective date at the top identify the current policy. Material changes to how we collect, use, retain, or share sensitive information will be posted before they apply, and additional notice or consent will be provided when required.
13. Contact Us
For privacy questions or requests, use the Contact page at https://thatturkeysandwich.com/contact.html and identify the request as privacy-related. We may need to verify your identity before disclosing, correcting, or deleting information.