{"id":13612,"date":"2026-09-07T16:29:57","date_gmt":"2026-09-07T10:59:57","guid":{"rendered":"https:\/\/www.dreamcast.in\/blog\/?p=13612"},"modified":"2026-09-07T16:35:17","modified_gmt":"2026-09-07T11:05:17","slug":"dpdp-for-events","status":"publish","type":"post","link":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/","title":{"rendered":"DPDP Act 2023 and DPDP Rules 2025 for Events: What Event Organisers Need to Know About Data Protection"},"content":{"rendered":"<div id=\"bsf_rt_marker\"><\/div>\n<div style=\"border-left:4px solid #e7d7d3; background:#fef6f4; padding:15px; margin:20px 0; border-radius:6px;\">\n  <strong>TL;DR:<\/strong>\n<p>The Digital Personal Data Protection Act 2023, along with the Digital Personal Data Protection Rules 2025, will govern how organisations and entities in India collect, process, and store digital data.<\/p> \n<p>This legislation aims to ensure data protection and transparency of use for Indian citizens. It intends to give them more control over their personal data.<\/p>\n<p>In the event industry, the DPDP Act and Rules will influence how organisers treat attendee data. The data fiduciary decides how attendee data will be collected and used.<\/p>\n<p>Failing to implement reasonable security safeguards can attract a penalty of up to \u20b9 250 crore. Separately, failing to notify the Data Protection Board and affected data principals (the owners of the personal data i.e. the attendees in case of events) after a breach can attract a penalty of up to \u20b9 200 crore.<\/P><\/div>\n\n\n\n<p>When attendees sign up for an event, they share personal details such as their name, phone number, address, gender, job title, organisation, and sometimes government ID details. But where does all this information go after they click \u201cRegister\u201d? This is where the Digital Personal Data Protection Act 2023 and the Digital Personal Data Protection Rules 2025 become relevant.<\/p>\n\n\n\n<p>The DPDP Act 2023 aims to make the collection and use of personal data more transparent and responsible, while giving people greater control over their personal information. The DPDP Rules 2025 fully operationalise the 2023 Act.<br><br>For the <a href=\"https:\/\/www.dreamcast.in\/blog\/event-industry-insights\/\" type=\"post\" id=\"10564\">event industry<\/a>, this matters because events are highly data-driven. Attendee data moves through multiple systems for event registration, badging, accreditation, analytics, CRM, sales, and marketing.<\/p>\n\n\n\n<p>In this blog, we\u2019ll explore what the DPDP Act 2023 and DPDP Rules 2025 mean for event organisers, how it affects attendee data, and what event professionals should start considering for data protection.<\/p>\n\n\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_82_2 counter-hierarchy ez-toc-counter ez-toc-white ez-toc-container-direction\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<label for=\"ez-toc-cssicon-toggle-item-6a9eba037d85c\" class=\"ez-toc-cssicon-toggle-label\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #dd3333;color:#dd3333\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #dd3333;color:#dd3333\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/label><input type=\"checkbox\"  id=\"ez-toc-cssicon-toggle-item-6a9eba037d85c\" checked aria-label=\"Toggle\" \/><nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#What_is_the_Digital_Personal_Data_Protection_DPDP_Act_2023_and_DPDP_Rules_2025\" >What is the Digital Personal Data Protection (DPDP) Act 2023 and DPDP Rules 2025?<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#What_Should_Event_Organisers_Be_Prepared_For\" >What Should Event Organisers Be Prepared For?<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#What_Relevant_Terms_Event_Organisers_Must_Know_As_Per_the_DPDP_Act\" >What Relevant Terms Event Organisers Must Know As Per the DPDP Act?<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#Data_Principal_The_person_the_data_belongs_to\" >Data Principal: The person the data belongs to<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#Data_Fiduciary_The_organisation_deciding_what_happens_to_the_data\" >Data Fiduciary: The organisation deciding what happens to the data<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#Data_Processor_The_organisation_doing_the_processing\" >Data Processor: The organisation doing the processing<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-7\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#What_Does_the_Data_Fiduciarys_Responsibility_Mean_for_Event_Organisers\" >What Does the Data Fiduciary&#8217;s Responsibility Mean for Event Organisers?<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-8\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#What_Are_the_Core_Principles_Underlying_the_DPDP_Rules_2025\" >What Are the Core Principles Underlying the DPDP Rules 2025?<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-9\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#1_Clarity_and_Transparency\" >1. Clarity and Transparency<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-10\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#2_Purpose_Limitation\" >2. Purpose Limitation<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-11\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#3_Data_Minimisation\" >3. Data Minimisation<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-12\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#4_Data_Accuracy\" >4. Data Accuracy<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-13\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#5_Storage_Limitation\" >5. Storage Limitation<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-14\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#6_Security_Safeguards\" >6. Security Safeguards<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-15\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#7_Accountability\" >7. Accountability<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-16\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#How_does_the_DPDP_Framework_Impact_Event_Organisers_in_Practice\" >How does the DPDP Framework Impact Event Organisers in Practice?<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-17\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#1_How_Does_DPDP_Affect_Event_Registration_Forms\" >1. How Does DPDP Affect Event Registration Forms?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-18\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#2_How_Does_DPDP_Affect_Consent_and_Notices_at_Events\" >2. How Does DPDP Affect Consent and Notices at Events?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-19\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#3_Can_Event_Organisers_Use_One_Attendee_Database_for_Unlimited_Future_Marketing\" >3. Can Event Organisers Use One Attendee Database for Unlimited Future Marketing?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-20\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#4_How_Should_Event_Organisers_Manage_Vendors_That_Handle_Attendee_Data\" >4. How Should Event Organisers Manage Vendors That Handle Attendee Data?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-21\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#5_How_Does_DPDP_Affect_Data_Sharing_With_Event_Sponsors_and_Exhibitors\" >5. How Does DPDP Affect Data Sharing With Event Sponsors and Exhibitors?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-22\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#6_How_Should_Event_Organisers_Control_Access_to_Attendee_Data\" >6. How Should Event Organisers Control Access to Attendee Data?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-23\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#7_How_Long_Should_Event_Organisers_Retain_Attendee_Data\" >7. How Long Should Event Organisers Retain Attendee Data?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-24\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#8_How_Should_a_Data_Breach_be_Handled\" >8. How Should a Data Breach be Handled?<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-25\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#What_Should_You_Do_In_Case_of_a_Data_Breach_as_per_DPDP_2025\" >What Should You Do In Case of a Data Breach as per DPDP 2025?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-26\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#The_Bottom_Line\" >The Bottom Line<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-27\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#FAQs\" >FAQs<\/a><\/li><\/ul><\/nav><\/div>\n<h2 class=\"wp-block-heading\" id=\"what-is-the-digital-personal-data-protection-dpdp-act-2023-and-dpdp-rules-2025\"><span class=\"ez-toc-section\" id=\"What_is_the_Digital_Personal_Data_Protection_DPDP_Act_2023_and_DPDP_Rules_2025\"><\/span>What is the Digital Personal Data Protection (DPDP) Act 2023 and DPDP Rules 2025?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<p><em>The <\/em><a href=\"https:\/\/www.meity.gov.in\/static\/uploads\/2024\/06\/2bf1f0e9f04e6fb4f8fef35e82c42aa5.pdf\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"><em>Digital Personal Data Protection Act, 2023<\/em><\/a><em>, together with the <\/em><a href=\"https:\/\/www.dpdpa.com\/dpdparules.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"><em>DPDP Rules, 2025<\/em><\/a><em>, forms India\u2019s framework for regulating the processing of digital personal data. For event professionals, this matters because attendee data is collected at almost every stage of an event, whether it is a conference, concert, exhibition, or government event. Full enforcement of the DPDP Act\u2019s operational provisions is set for May 2027 as per the <\/em><a href=\"https:\/\/www.dpdpa.com\/blogs\/DPDPA_Implementation_Timeline.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\"><em>DPDP Act\u2019s official implementation timeline.<\/em><\/a><\/p>\n\n\n\n<p>Event-Specific Context:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>The DPDP Act 2023 and DPDP Rules 2025 apply to event organisers whenever attendee personal data is collected or processed, which covers nearly every event.<\/li>\n\n\n\n<li>The organiser is usually the Data Fiduciary, responsible for deciding why data is collected and staying accountable for it.<\/li>\n\n\n\n<li>The biggest practical shifts are: justify every form field on a registration form, get fresh consent before reusing attendee data for new purposes, keep tighter control over vendors and sponsors who touch attendee data, and have a breach response plan ready, since failing on security safeguards can cost up to \u20b9 250 crores.<\/li>\n<\/ul>\n\n\n\n<p>From the moment an attendee registers, their data may be used for various purposes across different event stages. But after they share their data, they have little control over how it is used or shared with third parties. The DPDP framework addresses this gap. It focuses on why this data is collected, how it is used, who has access to it, and how long it is retained.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"what-should-event-organisers-be-prepared-for\"><span class=\"ez-toc-section\" id=\"What_Should_Event_Organisers_Be_Prepared_For\"><\/span>What Should Event Organisers Be Prepared For?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>Earlier, an attendee database could easily become a long-term marketing asset. An attendee who registered for one event might continue receiving sales emails or promotional messages months or even years later. Under the new framework, event organisers need to be more careful about using personal data beyond the purpose for which it was collected.<\/p>\n\n\n\n<p>Let\u2019s break down further how the DPDP framework can affect everyday event operations.<\/p>\n\n\n<h2 class=\"wp-block-heading\" id=\"what-relevant-terms-event-organisers-must-know-as-per-the-dpdp-act\"><span class=\"ez-toc-section\" id=\"What_Relevant_Terms_Event_Organisers_Must_Know_As_Per_the_DPDP_Act\"><\/span>What Relevant Terms Event Organisers Must Know As Per the DPDP Act?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<p>The easiest way to understand the DPDP framework is to look at <strong>who the data belongs to, who decides why it is used, and who processes it<\/strong>. In an event, the attendee is generally the data principal, the organiser may be the data fiduciary, and an event technology provider may act as a data processor, depending on the specific arrangement.<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>DPDP term<\/strong><\/td><td><strong>In simple words<\/strong><\/td><td><strong>Event example<\/strong><\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>Data Principal<\/strong><\/td><td>The person whose personal data is being used<\/td><td>An attendee registering for a conference<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>Data Fiduciary<\/strong><\/td><td>The organisation that decides why and how the data is used<\/td><td>An organiser collecting attendee details for registration<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>Data Processor<\/strong><\/td><td>An organisation processing data on behalf of the Data Fiduciary<\/td><td>An event-tech provider managing registration and badge printing<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n<h3 class=\"wp-block-heading\" id=\"data-principal-the-person-the-data-belongs-to\"><span class=\"ez-toc-section\" id=\"Data_Principal_The_person_the_data_belongs_to\"><\/span>Data Principal: The person the data belongs to<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>An attendee registering for a concert shares details like name, phone number, and email address, so she or he is the data principal. Simply put, it is <strong>the person whose personal data is being collected or processed.<\/strong><\/p>\n\n\n\n<p><strong>Other Relevant Examples:<\/strong><\/p>\n\n\n\n<p>1. At the billing counter of a shopping mall, you are the customer who gives your name, phone number, and email address (not necessarily, but often). The data is about you, so you are the data principal.<\/p>\n\n\n\n<p>2. As a new employee in a company, you provide your name, phone number, address, bank details, and other information to the company. Since the personal data belongs to you, you are the data principal.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"data-fiduciary-the-organisation-deciding-what-happens-to-the-data\"><span class=\"ez-toc-section\" id=\"Data_Fiduciary_The_organisation_deciding_what_happens_to_the_data\"><\/span>Data Fiduciary: The organisation deciding what happens to the data<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>The organiser asking for attendees\u2019 phone numbers to send them event confirmation and important updates is the data fiduciary. The organiser decides <strong>why the information is needed and how it will be used<\/strong>, making it the data fiduciary for that processing activity.<\/p>\n\n\n\n<p><strong>Other Relevant Examples:<\/strong><\/p>\n\n\n\n<p>1. The mall collects your details so it can manage your loyalty membership and send you offers. Because the mall decides why and how your data will be used, it is the data fiduciary.<\/p>\n\n\n\n<p>2. Your employer collects this information to manage your employment, process your salary, and handle other work-related requirements. Since the company decides why and how your data is used, it is the data fiduciary.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"data-processor-the-organisation-doing-the-processing\"><span class=\"ez-toc-section\" id=\"Data_Processor_The_organisation_doing_the_processing\"><\/span>Data Processor: The organisation doing the processing<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>Now imagine the organiser uses an <a href=\"https:\/\/www.dreamcast.in\/event-registration-platform\">event registration platform<\/a> to collect registrations and print attendee badges. The <strong>platform is processing attendee data on behalf of the organiser<\/strong>, and may therefore act as a data processor.<\/p>\n\n\n\n<p>For example, if an organiser uses Dreamcast to manage event registration and <a href=\"https:\/\/www.dreamcast.in\/event-check-in-badge-printing\">badge printing<\/a>, Dreamcast may act as a Data Processor where it processes attendee information on the organiser\u2019s behalf. The exact role depends on the specific processing activity and relationship between the organiser and technology provider.<\/p>\n\n\n\n<p><strong>Other Relevant Examples:<\/strong><\/p>\n\n\n\n<p>1. The mall uses a software company to run its loyalty programme. That company stores your details and sends messages on the mall&#8217;s instructions. It is the data processor.<\/p>\n\n\n\n<p>2. The company uses a payroll software provider to calculate salaries and process employee payments. The software provider handles your information on the company&#8217;s behalf, so it may act as the data processor.<\/p>\n\n\n\n<p><strong>One important point:<\/strong> These roles depend on the actual processing activity and the relationship between the parties. An organisation is not automatically a data fiduciary or data processor simply because it handles personal data.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"what-does-the-data-fiduciarys-responsibility-mean-for-event-organisers\"><span class=\"ez-toc-section\" id=\"What_Does_the_Data_Fiduciarys_Responsibility_Mean_for_Event_Organisers\"><\/span>What Does the Data Fiduciary&#8217;s Responsibility Mean for Event Organisers?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>As per the DPDP Act, the data fiduciary decides the purpose and intent of data collection and how it will be processed. So, it\u2019s not that you cannot collect attendee information anymore. You just need to be able to be clear about and be able to justify the following:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>The intent and purpose of every single form field in your registration form<\/li>\n\n\n\n<li>Its relevance to the activities or experience of the attendee at that moment or in the near future<\/li>\n\n\n\n<li>How you plan to use their data and for how long you intend to retain it<\/li>\n<\/ul>\n\n\n<h2 class=\"wp-block-heading\" id=\"what-are-the-core-principles-underlying-the-dpdp-rules-2025\"><span class=\"ez-toc-section\" id=\"What_Are_the_Core_Principles_Underlying_the_DPDP_Rules_2025\"><\/span>What Are the Core Principles Underlying the DPDP Rules 2025?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<p>The DPDP Act 2023 and the DPDP Rules 2025 are built around seven core principles for handling personal data. These principles apply to the entire data lifecycle: collection, use, storage, and deletion. Here\u2019s a detailed overview in the context of events.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"1-clarity-and-transparency\"><span class=\"ez-toc-section\" id=\"1_Clarity_and_Transparency\"><\/span>1. Clarity and Transparency<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>People should know <strong>what information you are asking for and why you need it<\/strong>. They should not have to read pages of complicated language to understand what they are agreeing to.<\/p>\n\n\n\n<p><strong>At an event:<\/strong><\/p>\n\n\n\n<p>If you ask for an attendee&#8217;s phone number, the registration process should make it clear whether it is needed for registration updates, <a href=\"https:\/\/www.dreamcast.in\/blog\/event-communication-tips\/\" type=\"post\" id=\"11329\">event communication<\/a>, or another specific purpose.<\/p>\n\n\n\n<p><strong>Everyday example:<\/strong><strong><br><\/strong><strong><br><\/strong>A clothing store asks for your phone number and tells you it needs it to send your order updates. You know why your number is being collected.<\/p>\n\n\n\n<p>After the DPDP Act is officially enforced, data principals will have the right to question data fiduciaries as to why their data is being collected.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"2-purpose-limitation\"><span class=\"ez-toc-section\" id=\"2_Purpose_Limitation\"><\/span>2. Purpose Limitation<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>If you are collecting attendees\u2019 personal data for a particular purpose, you must use it only for that declared purpose. Data once collected does not become eligible for use for every other purpose you wish to fulfill.<\/p>\n\n\n\n<p><strong>At an event:<\/strong><strong><br><\/strong><br>An attendee provides an email address to receive a conference registration confirmation. You, as an organiser, should not automatically treat that as permission for unrelated marketing.<\/p>\n\n\n\n<p><strong>Everyday example:<\/strong><\/p>\n\n\n\n<p>A customer gives their phone number to a delivery person so the delivery can be completed. They would not expect the delivery person to start sending advertisements.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"3-data-minimisation\"><span class=\"ez-toc-section\" id=\"3_Data_Minimisation\"><\/span>3. Data Minimisation<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>You should avoid collecting information simply because your event registration form has a field for it. The basic principle is: if the information is not needed for a legitimate purpose, there may be no reason to ask for it.<\/p>\n\n\n\n<p><strong>At an event:<\/strong><strong><br><\/strong><\/p>\n\n\n\n<p>If you only need an attendee&#8217;s name and company to print a badge, asking for their residential address may serve no clear purpose.<\/p>\n\n\n\n<p><strong>Everyday example:<\/strong><strong><br><\/strong><strong><br><\/strong>A caf\u00e9 needs a customer&#8217;s name to put on a coffee cup. It does not need the customer&#8217;s home address to make the coffee.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"4-data-accuracy\"><span class=\"ez-toc-section\" id=\"4_Data_Accuracy\"><\/span>4. Data Accuracy<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>As an event organiser, you must make reasonable efforts to ensure the personal data you use is <strong>correct and up to date<\/strong>, particularly when incorrect information could affect the attendee&#8217;s experience or the service being provided.<\/p>\n\n\n\n<p><strong>At an event:<\/strong><strong><br><\/strong><strong><br><\/strong>If an attendee changes their company before the event, you should ideally be able to update the registration record and reflect the change on the attendee&#8217;s badge.<\/p>\n\n\n\n<p><strong>Everyday example:<\/strong><\/p>\n\n\n\n<p>If a bank has a customer&#8217;s old phone number, important alerts may go to the wrong person. Keeping the information updated helps the bank contact the right customer.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"5-storage-limitation\"><span class=\"ez-toc-section\" id=\"5_Storage_Limitation\"><\/span>5. Storage Limitation<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>If the purpose for which you collected attendees\u2019 data is over, you should have valid reasons to retain any of it in your storage.<\/p>\n\n\n\n<p><strong>At an event:<\/strong><strong><br><\/strong><br>Once an event ends, you should know which attendee information still needs to be retained and which information no longer has a reason to remain in your systems.<\/p>\n\n\n\n<p><strong>Everyday example:<\/strong><\/p>\n\n\n\n<p>A person may keep a receipt for something they bought recently. There is usually little reason to keep every shopping receipt from the last 20 years.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"6-security-safeguards\"><span class=\"ez-toc-section\" id=\"6_Security_Safeguards\"><\/span>6. Security Safeguards<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>Organisers must put <strong>reasonable security safeguards<\/strong> in place to protect personal data from breaches. In simple terms, attendee information should not be left open for anyone to access.<\/p>\n\n\n\n<p><strong>At an event:<\/strong><\/p>\n\n\n\n<p>A database containing thousands of attendee names, phone numbers, and email addresses should not be accessible to every person working on the event. Access should be limited to people who actually need it. Proper encryption and compliance should be in place.<\/p>\n\n\n\n<p><strong>Everyday example:<\/strong><\/p>\n\n\n\n<p>A shop owner would not leave the keys to the shop hanging outside the front door where anyone could take them.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"7-accountability\"><span class=\"ez-toc-section\" id=\"7_Accountability\"><\/span>7. Accountability<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>If you collect and use personal data, you need to take responsibility for <strong>how that data is handled throughout its journey<\/strong>. This means knowing what information is collected, where it goes, who can access it, and what happens if something goes wrong.<\/p>\n\n\n\n<p><strong>At an event:<\/strong><strong><br><\/strong><br>You should be able to answer basic questions such as: What attendee data are we collecting? Who is handling it? Where is it stored? How is it protected? What happens to it after the event?<\/p>\n\n\n\n<p><strong>Everyday example:<\/strong><\/p>\n\n\n\n<p>If a bank collects customer phone numbers, it cannot simply ignore the situation if those numbers are accidentally exposed.<\/p>\n\n\n<h2 class=\"wp-block-heading\" id=\"how-does-the-dpdp-framework-impact-event-organisers-in-practice\"><span class=\"ez-toc-section\" id=\"How_does_the_DPDP_Framework_Impact_Event_Organisers_in_Practice\"><\/span>How does the DPDP Framework Impact Event Organisers in Practice?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<p>For event organisers, the DPDP framework can affect everyday processes such as registration, ticketing, accreditation, marketing, vendor management, access control, data retention and breach response. The practical question is no longer simply whether data is being collected, but how that data moves through the event lifecycle. Let\u2019s understand the key implications of the new rules across different event stages and processes:<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"1-how-does-dpdp-affect-event-registration-forms\"><span class=\"ez-toc-section\" id=\"1_How_Does_DPDP_Affect_Event_Registration_Forms\"><\/span>1. How Does DPDP Affect Event Registration Forms?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>The organiser should be able to explain why each personal data field is being requested and how that information will be used.<\/p>\n\n\n\n<p><strong>In practice, organisers should:<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Review every field on registration forms.<\/li>\n\n\n\n<li>Remove fields that have no clear purpose.<\/li>\n\n\n\n<li>Explain why required information is being collected.<\/li>\n\n\n\n<li>Avoid making optional information appear mandatory.<\/li>\n<\/ul>\n\n\n\n<p>For example, an event registration platform such as Dreamcast allows organisers to <a href=\"https:\/\/www.dreamcast.in\/blog\/custom-event-registration-forms\/\">customise registration forms<\/a> based on the information actually required for an event. This gives organisers greater control over which attendee details they ask for at the point of registration, rather than relying on a rigid form.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><a href=\"\/getstarted\"><img loading=\"lazy\" decoding=\"async\" width=\"832\" height=\"212\" src=\"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-Act-2023-and-DPDP-Rules-2025-for-Events-CTA.png\" alt=\"DPDP Act 2023 and DPDP Rules 2025 for Events - CTA\" class=\"wp-image-13620\" srcset=\"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-Act-2023-and-DPDP-Rules-2025-for-Events-CTA.png 832w, https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-Act-2023-and-DPDP-Rules-2025-for-Events-CTA-300x76.png 300w, https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-Act-2023-and-DPDP-Rules-2025-for-Events-CTA-768x196.png 768w, https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-Act-2023-and-DPDP-Rules-2025-for-Events-CTA-150x38.png 150w\" sizes=\"auto, (max-width: 767px) 89vw, (max-width: 1000px) 54vw, (max-width: 1071px) 543px, 580px\" \/><\/a><\/figure>\n\n\n<h3 class=\"wp-block-heading\" id=\"2-how-does-dpdp-affect-consent-and-notices-at-events\"><span class=\"ez-toc-section\" id=\"2_How_Does_DPDP_Affect_Consent_and_Notices_at_Events\"><\/span>2. How Does DPDP Affect Consent and Notices at Events?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>Consent should be treated as an actual part of the attendee journey, rather than a checkbox added at the bottom of a form. Organisers need to make it clear what data is being collected, why it is being used, and where consent is the basis for processing.<\/p>\n\n\n\n<p><strong>In practice, organisers should review:<\/strong><\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Registration notices<\/li>\n\n\n\n<li>Consent language<\/li>\n\n\n\n<li>Marketing opt-ins<\/li>\n\n\n\n<li>Ways for attendees to withdraw consent where applicable<\/li>\n\n\n\n<li>How consent and related records are maintained<\/li>\n<\/ul>\n\n\n<h3 class=\"wp-block-heading\" id=\"3-can-event-organisers-use-one-attendee-database-for-unlimited-future-marketing\"><span class=\"ez-toc-section\" id=\"3_Can_Event_Organisers_Use_One_Attendee_Database_for_Unlimited_Future_Marketing\"><\/span>3. Can Event Organisers Use One Attendee Database for Unlimited Future Marketing?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>An attendee database can be extremely valuable to an organiser, but the fact that information was collected during one event does not mean it can be used for every future purpose.&nbsp;<\/p>\n\n\n\n<p>In practice, organisers should ensure:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Seeking permission from attendees before using their personal data for every new event or every unique purpose.<\/li>\n\n\n\n<li>Clearly stating the purpose of data collection and standing by it.<\/li>\n<\/ul>\n\n\n<h3 class=\"wp-block-heading\" id=\"4-how-should-event-organisers-manage-vendors-that-handle-attendee-data\"><span class=\"ez-toc-section\" id=\"4_How_Should_Event_Organisers_Manage_Vendors_That_Handle_Attendee_Data\"><\/span>4. How Should Event Organisers Manage Vendors That Handle Attendee Data?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>As data fiduciaries, organisers need to have total control over all their data processors (all the vendors handling data on behalf of the organisers). In a typical event, there is a high probability that different vendors process data at different event stages: registration, badging, communication, post-event follow-up, etc. Organisers must keep track of all of them and maintain strict oversight over how all of them are processing the data because ultimately, the accountability lies with the data fiduciaries.&nbsp;<\/p>\n\n\n\n<p>This is where the choice of event technology partner becomes important. A platform such as <a href=\"\/\">Dreamcast<\/a> can bring several stages of the attendee journey, including registration, check-in, badging and attendee reporting, into a connected workflow. For organisers, having greater visibility over where attendee data is collected, accessed and used can make data management easier to track across the event lifecycle.&nbsp;<\/p>\n\n\n\n<p>In a typical event setting, greater visibility and control over the data journey can make it easier for organisers to meet their responsibilities as Data Fiduciaries. The technology partner&#8217;s role is therefore worth considering not only from an operational perspective, but also from a data-management perspective.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"5-how-does-dpdp-affect-data-sharing-with-event-sponsors-and-exhibitors\"><span class=\"ez-toc-section\" id=\"5_How_Does_DPDP_Affect_Data_Sharing_With_Event_Sponsors_and_Exhibitors\"><\/span>5. How Does DPDP Affect Data Sharing With Event Sponsors and Exhibitors?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>Sponsors and exhibitors often want attendee information to generate leads and continue conversations after an event. DPDP makes it important for organisers to think carefully about when and why attendee information is shared.<\/p>\n\n\n\n<p><strong>For example:<\/strong> An attendee visits an exhibitor&#8217;s booth and scans their badge. That does not mean organisers should assume the attendee has agreed to every possible future use of their information.<\/p>\n\n\n\n<p>The key question is:<\/p>\n\n\n\n<p><strong>What was the attendee told about this data sharing, and what basis allows the information to be shared?<\/strong><\/p>\n\n\n\n<p>This is especially important for lead retrieval, sponsor databases and post-event sales activity.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"6-how-should-event-organisers-control-access-to-attendee-data\"><span class=\"ez-toc-section\" id=\"6_How_Should_Event_Organisers_Control_Access_to_Attendee_Data\"><\/span>6.<strong> <\/strong>How Should Event Organisers Control Access to Attendee Data?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>Not everyone working on an event needs access to the entire attendee database. DPDP makes data security an organisational responsibility, which means access to personal data should be handled thoughtfully.<\/p>\n\n\n\n<p><strong>For example:<\/strong> A volunteer helping attendees find their registration may need to verify a name or registration number. They probably do not need access to the complete attendee database.<\/p>\n\n\n\n<p>Organisers should consider:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Who can access attendee data<\/li>\n\n\n\n<li>What level of access each person needs<\/li>\n\n\n\n<li>Whether former employees or temporary staff still have access<\/li>\n\n\n\n<li>How access is removed when a project ends<\/li>\n<\/ul>\n\n\n<h3 class=\"wp-block-heading\" id=\"7-how-long-should-event-organisers-retain-attendee-data\"><span class=\"ez-toc-section\" id=\"7_How_Long_Should_Event_Organisers_Retain_Attendee_Data\"><\/span>7.<strong> <\/strong>How Long Should Event Organisers Retain Attendee Data?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>The end of an event does not automatically mean the end of data processing. At the same time, attendee information should not simply remain in every system forever without a reason.<\/p>\n\n\n\n<p><strong>For example:<\/strong> A 50,000-person conference may leave attendee information stored in the registration platform, CRM, email system, <a href=\"https:\/\/www.dreamcast.in\/mobile-event-app\">event app<\/a>, and spreadsheets months after the event.<\/p>\n\n\n\n<p>Organisers should know <strong>what needs to be retained, why it needs to be retained, and when information that is no longer required should be removed<\/strong>, subject to applicable legal or other retention requirements.<\/p>\n\n\n<h3 class=\"wp-block-heading\" id=\"8-how-should-a-data-breach-be-handled\"><span class=\"ez-toc-section\" id=\"8_How_Should_a_Data_Breach_be_Handled\"><\/span>8. How Should a Data Breach be Handled?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n<p>A breach involving attendee information can quickly become an event-management issue, not just an IT issue. Organisers need to know what happens if personal data is accidentally exposed, stolen, or accessed by an unauthorised person. Learn more in the following section.<\/p>\n\n\n<h2 class=\"wp-block-heading\" id=\"what-should-you-do-in-case-of-a-data-breach-as-per-dpdp-2025\"><span class=\"ez-toc-section\" id=\"What_Should_You_Do_In_Case_of_a_Data_Breach_as_per_DPDP_2025\"><\/span>What Should You Do In Case of a Data Breach as per DPDP 2025?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<p>If an event organiser becomes aware of a personal data breach, the DPDP framework requires action without delay. The key steps are:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Inform affected attendees and the Data Protection Board:<\/strong> Tell affected Data Principals what happened, the likely impact, what is being done to reduce the risk, and what they can do to protect themselves. Notify the Data Protection Board of India about the breach without delay.<\/li>\n\n\n\n<li><strong>Submit detailed information within 72 hours:<\/strong> Provide the Board with detailed information about the breach <strong>within 72 hours of becoming aware of it<\/strong>, unless the Board allows more time.<\/li>\n\n\n\n<li><strong>Find out what happened:<\/strong> Identify how the breach occurred, what personal data was affected, and how many people may be impacted.<\/li>\n\n\n\n<li><strong>Take corrective action:<\/strong> Fix the issue, strengthen security measures, and take reasonable steps to prevent a similar breach from happening again.<\/li>\n\n\n\n<li><strong>Understand the financial risk:<\/strong> Failure to maintain reasonable security safeguards can attract a penalty of up to \u20b9250 crore. Failure to notify the Board or affected Data Principals about a breach can attract a penalty of up to \u20b9200 crore. Any other violations of the rules of DPDP can attract penalties up to \u20b9 50 crore.<\/li>\n<\/ul>\n\n\n\n<p><strong>For event organisers, the practical takeaway is simple:<\/strong> have a clear breach-response plan in place before an incident occurs, including who will coordinate with technology vendors, affected attendees, and the Data Protection Board.<\/p>\n\n\n<h2 class=\"wp-block-heading\" id=\"the-bottom-line\"><span class=\"ez-toc-section\" id=\"The_Bottom_Line\"><\/span>The Bottom Line<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<p>For event organisers, DPDP is ultimately a shift in how attendee data is treated. Registration data is no longer simply a future marketing database. It is information that needs a clear purpose, controlled access, appropriate security and responsible handling throughout the event lifecycle.<\/p>\n\n\n\n<p>As event technology continues to connect registration, ticketing, accreditation, badging, access and communication, understanding the data journey will become just as important as understanding the event journey.<\/p>\n\n\n<h2 class=\"wp-block-heading\" id=\"faqs\"><span class=\"ez-toc-section\" id=\"FAQs\"><\/span>FAQs<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n<div class=\"schema-faq wp-block-yoast-faq-block\"><div class=\"schema-faq-section\" id=\"faq-question-1788761808299\"><strong class=\"schema-faq-question\"><strong>Does the DPDP Act apply to event organisers?<\/strong><\/strong> <p class=\"schema-faq-answer\">Yes. The DPDP Act can apply when organisers collect or process attendees\u2019 digital personal data, including names, phone numbers, email addresses, photographs, and identification details.<\/p> <\/div> <div class=\"schema-faq-section\" id=\"faq-question-1788761819247\"><strong class=\"schema-faq-question\"><strong>How does the DPDP Act affect event registration and ticketing?<\/strong><\/strong> <p class=\"schema-faq-answer\">It requires organisers to think carefully about what attendee data they collect, why they collect it, how they use it, and who has access to it.<\/p> <\/div> <div class=\"schema-faq-section\" id=\"faq-question-1788761830995\"><strong class=\"schema-faq-question\"><strong>Can event organisers use attendee data for marketing after an event?<\/strong><\/strong> <p class=\"schema-faq-answer\">Not automatically. Organisers should consider the original purpose of collection and the applicable legal basis before using attendee data for post-event marketing.<\/p> <\/div> <div class=\"schema-faq-section\" id=\"faq-question-1788761845129\"><strong class=\"schema-faq-question\"><strong>Who is responsible for attendee data under the DPDP Act: the organiser or the event-tech provider?<\/strong><\/strong> <p class=\"schema-faq-answer\">It depends on their roles. An organiser may be the Data Fiduciary, while an event-tech provider may act as the Data Processor processing data on its behalf.<\/p> <\/div> <div class=\"schema-faq-section\" id=\"faq-question-1788761858929\"><strong class=\"schema-faq-question\"><strong>What is the penalty for a data breach under the DPDP Act?<\/strong><\/strong> <p class=\"schema-faq-answer\">Failure to maintain reasonable security safeguards can attract penalties of up to \u20b9250 crore, while certain breach-notification failures can attract penalties of up to \u20b9200 crore.<\/p> <\/div> <div class=\"schema-faq-section\" id=\"faq-question-1788761879949\"><strong class=\"schema-faq-question\"><strong>How long can event organisers retain attendee data under DPDP?<\/strong><\/strong> <p class=\"schema-faq-answer\">Organisers should retain personal data only for as long as there is a valid reason to retain it for the relevant purpose or another applicable requirement. They should also establish appropriate retention and deletion practices.<\/p> <\/div> <\/div>\n","protected":false},"excerpt":{"rendered":"<p>TL;DR: The Digital Personal Data Protection Act 2023, along with the Digital Personal Data Protection Rules 2025, will govern how organisations and entities in India collect, process, and store digital data. This legislation aims to ensure data protection and transparency of use for Indian citizens. It intends to give them more control over their personal &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;DPDP Act 2023 and DPDP Rules 2025 for Events: What Event Organisers Need to Know About Data Protection&#8221;<\/span><\/a><\/p>\n","protected":false},"author":27,"featured_media":13617,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-13612","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-updates"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>DPDP Act 2023 &amp; DPDP Rules 2025 for Events<\/title>\n<meta name=\"description\" content=\"Learn everything about the DPDP Act 2023 and DPDP Rules 2025, and how they affect event organisers, attendee data, consent, and data protection.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"DPDP Act 2023 &amp; DPDP Rules 2025 for Events\" \/>\n<meta property=\"og:description\" content=\"Learn everything about the DPDP Act 2023 and DPDP Rules 2025, and how they affect event organisers, attendee data, consent, and data protection.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/\" \/>\n<meta property=\"og:site_name\" content=\"Dreamcast Blog\" \/>\n<meta property=\"article:published_time\" content=\"2026-09-07T10:59:57+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-09-07T11:05:17+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-for-Events.png\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"500\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Mohi Gaur\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Mohi Gaur\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"17 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/\"},\"author\":{\"name\":\"Mohi Gaur\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/#\\\/schema\\\/person\\\/c6b2d55a6b0690411f19296d3580b4cd\"},\"headline\":\"DPDP Act 2023 and DPDP Rules 2025 for Events: What Event Organisers Need to Know About Data Protection\",\"datePublished\":\"2026-09-07T10:59:57+00:00\",\"dateModified\":\"2026-09-07T11:05:17+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/\"},\"wordCount\":3460,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/DPDP-for-Events.png\",\"articleSection\":[\"News &amp; Updates\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#respond\"]}]},{\"@type\":[\"WebPage\",\"FAQPage\"],\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/\",\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/\",\"name\":\"DPDP Act 2023 & DPDP Rules 2025 for Events\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/DPDP-for-Events.png\",\"datePublished\":\"2026-09-07T10:59:57+00:00\",\"dateModified\":\"2026-09-07T11:05:17+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/#\\\/schema\\\/person\\\/c6b2d55a6b0690411f19296d3580b4cd\"},\"description\":\"Learn everything about the DPDP Act 2023 and DPDP Rules 2025, and how they affect event organisers, attendee data, consent, and data protection.\",\"mainEntity\":[{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761808299\"},{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761819247\"},{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761830995\"},{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761845129\"},{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761858929\"},{\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761879949\"}],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/DPDP-for-Events.png\",\"contentUrl\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/DPDP-for-Events.png\",\"width\":800,\"height\":500,\"caption\":\"DPDP for Events\"},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/\",\"name\":\"Dreamcast Blog\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/#\\\/schema\\\/person\\\/c6b2d55a6b0690411f19296d3580b4cd\",\"name\":\"Mohi Gaur\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/10\\\/Mohi-Bio-Photo-96x96.jpg\",\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/10\\\/Mohi-Bio-Photo-96x96.jpg\",\"contentUrl\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/10\\\/Mohi-Bio-Photo-96x96.jpg\",\"caption\":\"Mohi Gaur\"},\"description\":\"Mohi Gaur is a content writer and AI\\\/LLM analyst with a Master's in Journalism and Mass Communication and over four years of experience across content writing, editorial work, and language model analysis. Her journalism background shapes how she approaches every topic - with rigorous research, clear structure, and audience-first thinking. Having worked as a freelance writer, editor, and translator for nearly three years, she developed a strong command of long-form content, proofreading, and multilingual communication. Her experience as an AI\\\/LLM Analyst gives her a deeper understanding of how search engines and language models evaluate content - an edge she brings directly into her writing and content strategy work.\",\"sameAs\":[\"https:\\\/\\\/www.linkedin.com\\\/in\\\/mohi-gaur-829058224\\\/\"],\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/author\\\/mohi\\\/\"},{\"@type\":\"Question\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761808299\",\"position\":1,\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761808299\",\"name\":\"Does the DPDP Act apply to event organisers?\",\"answerCount\":1,\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"Yes. The DPDP Act can apply when organisers collect or process attendees\u2019 digital personal data, including names, phone numbers, email addresses, photographs, and identification details.\",\"inLanguage\":\"en-US\"},\"inLanguage\":\"en-US\"},{\"@type\":\"Question\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761819247\",\"position\":2,\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761819247\",\"name\":\"How does the DPDP Act affect event registration and ticketing?\",\"answerCount\":1,\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"It requires organisers to think carefully about what attendee data they collect, why they collect it, how they use it, and who has access to it.\",\"inLanguage\":\"en-US\"},\"inLanguage\":\"en-US\"},{\"@type\":\"Question\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761830995\",\"position\":3,\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761830995\",\"name\":\"Can event organisers use attendee data for marketing after an event?\",\"answerCount\":1,\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"Not automatically. Organisers should consider the original purpose of collection and the applicable legal basis before using attendee data for post-event marketing.\",\"inLanguage\":\"en-US\"},\"inLanguage\":\"en-US\"},{\"@type\":\"Question\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761845129\",\"position\":4,\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761845129\",\"name\":\"Who is responsible for attendee data under the DPDP Act: the organiser or the event-tech provider?\",\"answerCount\":1,\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"It depends on their roles. An organiser may be the Data Fiduciary, while an event-tech provider may act as the Data Processor processing data on its behalf.\",\"inLanguage\":\"en-US\"},\"inLanguage\":\"en-US\"},{\"@type\":\"Question\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761858929\",\"position\":5,\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761858929\",\"name\":\"What is the penalty for a data breach under the DPDP Act?\",\"answerCount\":1,\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"Failure to maintain reasonable security safeguards can attract penalties of up to \u20b9250 crore, while certain breach-notification failures can attract penalties of up to \u20b9200 crore.\",\"inLanguage\":\"en-US\"},\"inLanguage\":\"en-US\"},{\"@type\":\"Question\",\"@id\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761879949\",\"position\":6,\"url\":\"https:\\\/\\\/www.dreamcast.in\\\/blog\\\/dpdp-for-events\\\/#faq-question-1788761879949\",\"name\":\"How long can event organisers retain attendee data under DPDP?\",\"answerCount\":1,\"acceptedAnswer\":{\"@type\":\"Answer\",\"text\":\"Organisers should retain personal data only for as long as there is a valid reason to retain it for the relevant purpose or another applicable requirement. They should also establish appropriate retention and deletion practices.\",\"inLanguage\":\"en-US\"},\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"DPDP Act 2023 & DPDP Rules 2025 for Events","description":"Learn everything about the DPDP Act 2023 and DPDP Rules 2025, and how they affect event organisers, attendee data, consent, and data protection.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/","og_locale":"en_US","og_type":"article","og_title":"DPDP Act 2023 & DPDP Rules 2025 for Events","og_description":"Learn everything about the DPDP Act 2023 and DPDP Rules 2025, and how they affect event organisers, attendee data, consent, and data protection.","og_url":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/","og_site_name":"Dreamcast Blog","article_published_time":"2026-09-07T10:59:57+00:00","article_modified_time":"2026-09-07T11:05:17+00:00","og_image":[{"width":800,"height":500,"url":"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-for-Events.png","type":"image\/png"}],"author":"Mohi Gaur","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Mohi Gaur","Est. reading time":"17 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#article","isPartOf":{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/"},"author":{"name":"Mohi Gaur","@id":"https:\/\/www.dreamcast.in\/blog\/#\/schema\/person\/c6b2d55a6b0690411f19296d3580b4cd"},"headline":"DPDP Act 2023 and DPDP Rules 2025 for Events: What Event Organisers Need to Know About Data Protection","datePublished":"2026-09-07T10:59:57+00:00","dateModified":"2026-09-07T11:05:17+00:00","mainEntityOfPage":{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/"},"wordCount":3460,"commentCount":0,"image":{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#primaryimage"},"thumbnailUrl":"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-for-Events.png","articleSection":["News &amp; Updates"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#respond"]}]},{"@type":["WebPage","FAQPage"],"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/","url":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/","name":"DPDP Act 2023 & DPDP Rules 2025 for Events","isPartOf":{"@id":"https:\/\/www.dreamcast.in\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#primaryimage"},"image":{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#primaryimage"},"thumbnailUrl":"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-for-Events.png","datePublished":"2026-09-07T10:59:57+00:00","dateModified":"2026-09-07T11:05:17+00:00","author":{"@id":"https:\/\/www.dreamcast.in\/blog\/#\/schema\/person\/c6b2d55a6b0690411f19296d3580b4cd"},"description":"Learn everything about the DPDP Act 2023 and DPDP Rules 2025, and how they affect event organisers, attendee data, consent, and data protection.","mainEntity":[{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761808299"},{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761819247"},{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761830995"},{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761845129"},{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761858929"},{"@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761879949"}],"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#primaryimage","url":"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-for-Events.png","contentUrl":"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2026\/09\/DPDP-for-Events.png","width":800,"height":500,"caption":"DPDP for Events"},{"@type":"WebSite","@id":"https:\/\/www.dreamcast.in\/blog\/#website","url":"https:\/\/www.dreamcast.in\/blog\/","name":"Dreamcast Blog","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.dreamcast.in\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.dreamcast.in\/blog\/#\/schema\/person\/c6b2d55a6b0690411f19296d3580b4cd","name":"Mohi Gaur","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2025\/10\/Mohi-Bio-Photo-96x96.jpg","url":"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2025\/10\/Mohi-Bio-Photo-96x96.jpg","contentUrl":"https:\/\/www.dreamcast.in\/blog\/wp-content\/uploads\/2025\/10\/Mohi-Bio-Photo-96x96.jpg","caption":"Mohi Gaur"},"description":"Mohi Gaur is a content writer and AI\/LLM analyst with a Master's in Journalism and Mass Communication and over four years of experience across content writing, editorial work, and language model analysis. Her journalism background shapes how she approaches every topic - with rigorous research, clear structure, and audience-first thinking. Having worked as a freelance writer, editor, and translator for nearly three years, she developed a strong command of long-form content, proofreading, and multilingual communication. Her experience as an AI\/LLM Analyst gives her a deeper understanding of how search engines and language models evaluate content - an edge she brings directly into her writing and content strategy work.","sameAs":["https:\/\/www.linkedin.com\/in\/mohi-gaur-829058224\/"],"url":"https:\/\/www.dreamcast.in\/blog\/author\/mohi\/"},{"@type":"Question","@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761808299","position":1,"url":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761808299","name":"Does the DPDP Act apply to event organisers?","answerCount":1,"acceptedAnswer":{"@type":"Answer","text":"Yes. The DPDP Act can apply when organisers collect or process attendees\u2019 digital personal data, including names, phone numbers, email addresses, photographs, and identification details.","inLanguage":"en-US"},"inLanguage":"en-US"},{"@type":"Question","@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761819247","position":2,"url":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761819247","name":"How does the DPDP Act affect event registration and ticketing?","answerCount":1,"acceptedAnswer":{"@type":"Answer","text":"It requires organisers to think carefully about what attendee data they collect, why they collect it, how they use it, and who has access to it.","inLanguage":"en-US"},"inLanguage":"en-US"},{"@type":"Question","@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761830995","position":3,"url":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761830995","name":"Can event organisers use attendee data for marketing after an event?","answerCount":1,"acceptedAnswer":{"@type":"Answer","text":"Not automatically. Organisers should consider the original purpose of collection and the applicable legal basis before using attendee data for post-event marketing.","inLanguage":"en-US"},"inLanguage":"en-US"},{"@type":"Question","@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761845129","position":4,"url":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761845129","name":"Who is responsible for attendee data under the DPDP Act: the organiser or the event-tech provider?","answerCount":1,"acceptedAnswer":{"@type":"Answer","text":"It depends on their roles. An organiser may be the Data Fiduciary, while an event-tech provider may act as the Data Processor processing data on its behalf.","inLanguage":"en-US"},"inLanguage":"en-US"},{"@type":"Question","@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761858929","position":5,"url":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761858929","name":"What is the penalty for a data breach under the DPDP Act?","answerCount":1,"acceptedAnswer":{"@type":"Answer","text":"Failure to maintain reasonable security safeguards can attract penalties of up to \u20b9250 crore, while certain breach-notification failures can attract penalties of up to \u20b9200 crore.","inLanguage":"en-US"},"inLanguage":"en-US"},{"@type":"Question","@id":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761879949","position":6,"url":"https:\/\/www.dreamcast.in\/blog\/dpdp-for-events\/#faq-question-1788761879949","name":"How long can event organisers retain attendee data under DPDP?","answerCount":1,"acceptedAnswer":{"@type":"Answer","text":"Organisers should retain personal data only for as long as there is a valid reason to retain it for the relevant purpose or another applicable requirement. They should also establish appropriate retention and deletion practices.","inLanguage":"en-US"},"inLanguage":"en-US"}]}},"_links":{"self":[{"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/posts\/13612","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/users\/27"}],"replies":[{"embeddable":true,"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/comments?post=13612"}],"version-history":[{"count":10,"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/posts\/13612\/revisions"}],"predecessor-version":[{"id":13630,"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/posts\/13612\/revisions\/13630"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/media\/13617"}],"wp:attachment":[{"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/media?parent=13612"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/categories?post=13612"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.dreamcast.in\/blog\/wp-json\/wp\/v2\/tags?post=13612"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}