Privacy Policy

Last updated: 2026-03-15

Privacy statement — INTERREG 2026

Last updated: 2026-03-15

This privacy statement explains how personal data is processed when you register for and participate in INTERREG 2026 (12–13 November 2026), including through the online registration and event platform.

Processing by the European Commission is carried out in accordance with Regulation (EU) 2018/1725 on the protection of natural persons with regard to the processing of personal data by the Union institutions, bodies, offices and agencies.


1. Who is responsible?

Controller (European Commission)

The European Commission, Directorate-General for Regional and Urban Policy (DG REGIO), is the controller for personal data processed for the organisation of INTERREG 2026 (registration, participation management, access, catering, communications related to the event, and related follow-up where you have consented).

  • Unit / service: DG REGIO (INTERREG 2026 organising team)
  • Contact for this event: [INSERT DG REGIO EVENT MAILBOX]
  • Data Protection Officer (European Commission): data-protection-officer@ec.europa.eu

Processor / platform provider (Stageflow)

Registration, account management and the attendee event platform are provided by Stageflow (Stageflow.eu), acting as a processor on behalf of the European Commission for data stored and processed on the platform for this event.

Stageflow processes personal data only on documented instructions from the controller, and under appropriate technical and organisational security measures. Stageflow’s own platform terms and privacy policy also apply to your use of the Stageflow service:


2. Why do we process your data?

Your personal data are processed for the following purposes:

  • Creating and managing your participant account and registration for INTERREG 2026
  • Organising attendance (days, sessions/breakouts, catering, special assistance)
  • Managing access to EU institutions’ buildings (badge verification or identification details where required)
  • Communicating practical information about the event
  • Live web-streaming, video recording and photography during the event, where you have agreed
  • Sharing a participants list (name and affiliation) with other participants for networking, where you have consented
  • Inviting you to future events organised by DG REGIO, where you have consented
  • Ensuring security, integrity and proper functioning of the registration and event platform
  • Complying with legal obligations applicable to the controller and the processor

3. What data do we process?

Depending on your answers in the registration form, we may process:

  • Identity and contact: title, name, email address, account credentials
  • Professional information: role, organisation, position, programme/country/entity, speaker biography and profile picture (if applicable)
  • Participation: attendance days, breakout preferences, lunch and evening reception choices, dietary requirements, special assistance needs
  • Building access: whether you hold a valid EU institutions badge; if not, document type, nationality, passport/ID number, expiry date and date of birth
  • Consents and preferences: streaming/photo consent, participants-list sharing, future-events invitations
  • Technical data: necessary logs and security data related to use of the Stageflow platform (e.g. IP address, device/browser information, session data)

Providing the data marked as mandatory is required to complete registration. Optional fields are clearly indicated.


4. Legal basis

Processing is based on Regulation (EU) 2018/1725, in particular:

  • Article 5(1)(a) — processing necessary for the performance of a task carried out in the public interest (organisation of the INTERREG 2026 event by the European Commission)
  • Article 5(1)(d) — your consent, where processing is based on optional consents (for example: participants list for networking; invitations to future DG REGIO events; and, where applicable, publication of name/affiliation and footage or images in the context of streaming, recording and photography)

You may withdraw consent at any time for processing based on consent, without affecting the lawfulness of processing before withdrawal. Withdrawal may limit related optional features (e.g. networking list or future invitations) but does not cancel registration already completed on other legal bases.


5. Who has access to your data?

Your data may be accessed by:

  • Authorised staff of DG REGIO and other Commission services involved in organising INTERREG 2026
  • Authorised staff of Stageflow, acting as processor, strictly as needed to operate the registration and event platform
  • Service providers used by Stageflow for hosting, email delivery, storage or security, bound by appropriate contractual (including data-protection) obligations
  • Other participants, only if you consent to sharing of the participants list (name and affiliation)
  • Security / venue access services, where identification data are required for building access
  • Bodies entitled by Union or Member State law (e.g. supervisory authorities, auditors), where legally required

Data are not sold. Transfers outside the EU/EEA, if any, are carried out with appropriate safeguards as required by Regulation (EU) 2018/1725.


6. How long do we keep your data?

  • Registration and participation data are kept for as long as needed to organise INTERREG 2026 and for a reasonable period afterwards for follow-up, reporting and accountability (typically up to 5 years after the event, unless a longer retention is required by applicable financial or archival rules of the European Commission).
  • Building-access identification details are kept only as long as necessary for security and access purposes related to the event, then deleted or anonymised.
  • Consent-based marketing / future-event invitations are kept until you withdraw consent or for a defined period communicated by DG REGIO.
  • Account and technical logs on the Stageflow platform are retained according to Stageflow’s retention practices and contractual instructions from the controller.

7. How do we protect your data?

Appropriate technical and organisational measures are applied by the controller and by Stageflow (as processor), including access controls, encryption in transit, secure hosting, and least-privilege staff access.


8. Your rights

Under Regulation (EU) 2018/1725, you have the right to:

  • Access your personal data
  • Rectify inaccurate or incomplete data
  • Erase your data in the cases provided for by the Regulation
  • Restrict processing in the cases provided for by the Regulation
  • Object to processing based on public interest, on grounds relating to your particular situation
  • Withdraw consent where processing is based on consent
  • Receive data you provided in a structured, commonly used and machine-readable format (data portability), where applicable
  • Lodge a complaint with the European Data Protection Supervisor (EDPS)

To exercise your rights regarding INTERREG 2026 registration data, contact the DG REGIO event mailbox above (and/or the Commission Data Protection Officer). For technical account issues on the platform, you may also contact Stageflow at contact@stageflow.eu; Stageflow will involve or redirect to the controller as appropriate.


9. More information

This statement may be updated. The version published on this page at the time of your registration applies.

Contact

European Commission — DG REGIO