Privacy policy
Last updated September 14, 2026.
This page explains what Connect Prime collects when you apply for a seat, why we collect it, how long we keep it and what you can ask for at any time. It covers the form at /aplicar and this site.
Who is responsible
The data controller is the Connect Prime organisation, represented by Jéssica Maciel. Any request about your data goes to eventosjrmdigital@gmail.com.
What we collect
Only what the application form asks for:
- Full name, email and phone number.
- Whether you are an affiliate or an offer owner.
- Your annual revenue range for the previous year, chosen by you from a list.
- Company or brand and Instagram, when you fill them in. Both are optional.
- Your chosen language, the page that brought you here and any campaign parameters (utm) in the link.
We use no tracking cookies, there is no third-party pixel, and we collect nothing beyond the above. Revenue is a range, never an exact figure.
What we use it for
To review your application and reply to you. The revenue range and profile keep the mix and the level of the group, which is what decides who fills the 70 seats. We do not use your data for advertising, we do not send a newsletter, and we do not sell or pass your information to anyone.
Legal basis
Your consent, given when you tick the box on the form (article 7, I of the Brazilian LGPD). You can withdraw it whenever you want, and we will delete your application.
How long we keep it
Twenty-four months from the date you apply. After that the data is deleted. If you are approved and attend the event, data needed to run it and to meet legal obligations may be kept for as long as the law requires.
Who else has access
Nobody outside the Connect Prime organisation reads your answers. Three services process the data on our behalf, each only as far as it needs to:
- Supabase: the database where the application is stored, on a server in Brazil.
- Resend: sending the notification and confirmation emails.
- Cloudflare: hosting the site.
International transfer
The database sits on a server in Brazil (São Paulo region). Email delivery and site hosting are run by companies headquartered in the United States, which counts as an international transfer under article 33 of the LGPD.
How we protect it
Three concrete measures, on top of standard security practice:
- The applications table has row level security enabled and no public read policy: it cannot be reached through the site’s public key.
- Writing happens only on the server, with a key that never reaches anybody’s browser.
- Data travels over HTTPS and is encrypted at rest.
What you can ask for
The LGPD (article 18) lets you ask, at any time and free of charge, by email:
- Confirmation that we process your data, and access to it.
- Correction of anything incomplete or out of date.
- Anonymisation or deletion of the data.
- Portability, information on who we share it with, and withdrawal of consent.
We reply within 15 days. To request any of these, write to eventosjrmdigital@gmail.com from the same address you used to apply.
Changes to this page
If anything changes we update the date at the top. Changes that affect how your data is used are emailed to everyone who has already applied.