Last updated: 7 September 2026  |  Version: 1.0

This policy explains how personal data is processed through the Offshore Wind Türkiye website and in connection with Offshore Wind Türkiye 2026. Personal data is processed in accordance with Turkish Personal Data Protection Law No. 6698 (“KVKK”) and applicable legislation, fairly and lawfully, for specified and legitimate purposes, and in a manner that is relevant, limited and proportionate.

1. Data controller

The data controller under the KVKK is the Turkish Offshore Wind Energy Association (DÜRED/TOWEA). For event-registration questions, contact registration@offshorewindturkiye.com. For data-protection requests, contact info@dured.org. Current corporate contact details are available on the DÜRED contact page.

2. Personal data we process

  • Identity and contact data: full name, email address and telephone number.
  • Professional data: organisation/company, job title and participant profile.
  • Event data: city/country, ticket and registration number, QR code, attendance and check-in records.
  • Preference and transaction records: record that the privacy notice was displayed, any optional communication consent, consent/refusal preference, policy version and transaction time.
  • Technical data: connection, error and transaction logs required for security and service continuity, and strictly necessary cookies.

We do not request special-category personal data for event registration. Please do not enter health information, identity documents, political opinions or other sensitive data in any free-text field.

3. Purposes of processing

  • Creating an event registration and issuing and delivering the ticket and QR code.
  • Verifying participants and managing venue admission and check-in.
  • Sending essential operational notices concerning programme, venue, time, safety or organisational changes.
  • Managing capacity, event planning, statistics and reporting.
  • Maintaining information security and preventing errors and misuse.
  • Complying with legal obligations and establishing, exercising or protecting legal rights.
  • Sending event announcements and promotional communications only where separate, freely given consent exists.

4. Collection methods and legal grounds

Data is collected electronically or physically through the website, the Eventin registration form, email, the event entry system and user transactions. Depending on the processing activity, registration and event-operation data is processed under Article 5(2)(c) of the KVKK where necessary for establishing or performing a contract, Article 5(2)(ç) for compliance with legal obligations, and Article 5(2)(f) for legitimate interests provided that fundamental rights and freedoms are not harmed. Promotional electronic communications rely on separate, optional and revocable consent.

The registration privacy acknowledgement is not marketing consent. Registration is not conditional on accepting promotional communications. Refusing marketing consent does not prevent delivery of tickets, QR codes, programme changes or other essential event messages.

5. Sharing of personal data

Personal data may be shared only to the extent required for the purposes above with suppliers providing hosting, email, security, registration, ticketing and QR/check-in services; authorised event and admission-control personnel; and legally authorised public authorities. Supplier access is restricted by purpose, duration, confidentiality and security requirements. Participant lists and contact details are not published publicly.

6. International transfers

Some hosting, email, security or third-party technology services may use infrastructure outside Türkiye. Where an international transfer is required, the appropriate safeguards and transfer mechanisms under Article 9 of the KVKK are applied. Where necessary, individuals are separately informed and valid consent is obtained. Non-essential third-party and tracking technologies are not activated before permission is given.

7. Retention and deletion

  • Registration, ticket, QR and check-in data is retained for three years after the event ends and is then deleted, destroyed or anonymised.
  • Technical security logs are retained for no longer than one year, unless an incident or legal obligation requires longer retention.
  • Optional marketing data is processed until consent is withdrawn. A record proving that consent was given or withdrawn may be retained separately for the applicable legal limitation period.
  • Where legislation, an official request or an ongoing dispute requires longer retention, only the necessary records are preserved for the relevant period.

8. Cookies and preference management

Cookies necessary for site functionality, security and language/session preferences may be used without consent. Analytics, optional third-party functionality and marketing cookies are disabled by default and activated only according to the visitor’s choice. “Accept” and “Reject” are presented with equal ease. You may change your decision at any time through the Cookie Preferences link at the bottom of the website.

9. Data security

Appropriate technical and organisational measures are applied to prevent unauthorised access, unlawful processing, loss and disclosure. These measures include access controls, updated software, encrypted communications, backups, log monitoring and restricted supplier access. Event personnel may access only the data required for their duties.

10. Your rights

Under Article 11 of the KVKK, you may ask whether your data is processed; request information about processing; learn the purpose and whether data is used accordingly; learn the recipients in Türkiye or abroad; request correction of incomplete or inaccurate data; request deletion or destruction where the legal conditions are met; request notification of correction or deletion to recipients; object to an adverse result produced exclusively by automated analysis; and claim compensation for damage caused by unlawful processing.

Your request should include your name, the subject of your request and information enabling secure communication with you. Send requests to info@dured.org or use the current channels on the DÜRED contact page. Additional information may be requested only to the extent necessary to verify identity.

11. Changes to this policy

This policy may be updated when legislation or processing activities change. The current version and date are displayed at the top of this page. The registration notice also identifies the policy version presented to the participant.