Known members. One-time tickets. Nothing for sale but the night out.
Scalpr is a membership, not a marketplace. Everyone at a partner's door is a verified, paying member with a ticket that works once. Here is exactly what we collect, what venues see, and what we never do.
Verified members
Every ticket is tied to a real account with a verified email and a payment method on file. No anonymous buyers.
One-time QR
Each ticket is a unique code that is checked in once. Non-transferable, cannot be resold, dead after the scan.
Minimal data to venues
Venues see a first name, last initial and ticket code for their own claims. Never emails, phone numbers or full names.
No ads, no tracking
No advertising pixels on the site or in the app. We do not sell data and we do not track members across other apps.
For members
We collect your name, email, what you claim and when you check in. Card details go straight to Stripe; we never see them.
You can delete your account from the app or the website. We remove your data within 30 days, keeping only payment records the law requires.
Ratings and notes you post are visible to other members under your profile name. You can report or block any member from the app, and reports are reviewed within 24 hours.
Your calendar is written to only when you tap "Add to Calendar". We never read it. Camera is used only by venue staff to scan tickets.
For venues and promoters
Your data is yours. Download every claim, check-in and event we hold about you as CSV from the venue portal, any time.
A door audit log in the portal shows every check-in for your events with the time and ticket code.
Only your account can see your listings, claims and payout rate. Other venues cannot see them, and we never share your rate.
We read your ticketing feed only with your written authorization and only to list the seats you choose to release.
Payouts run through Stripe. Your bank details are held by Stripe, not by us.
How we protect it
All traffic is encrypted (HTTPS with HSTS). Passwords are stored only as salted hashes.
Row-level security in our database means every account can read only its own rows. Member balances and credits can be changed only by server code, never from a browser or the app.
Admin access is limited to the two founders, with two-factor authentication on every system.
Secrets are rotated on a schedule and immediately if ever exposed. We keep a written information security program and a breach response plan under the New York SHIELD Act.
Our website and app source are not publicly served; the app is distributed only through the App Store.
If something goes wrong
If you believe a ticket was misused, an account was compromised, or you found a security issue, email hello@scalprclub.com with "Security" in the subject. A founder reads it. If a breach ever affects your personal information, we will tell you and the relevant authorities as the law requires.
Full details are in our Privacy Policy and Terms. This page describes how Scalpr operates as of September 2026 and is updated when anything changes.