This policy explains how Castle of Chaos collects, uses, and protects your Personally Identifiable Information (PII) — anything that could be used to identify, contact, or locate you.
Last updated June 10, 2026When you buy tickets, register on our site, subscribe to our newsletter, respond to a survey, fill out a form, use live chat, or open a support ticket, you may be asked for your name, email address, mailing address, phone number, or other details to help with your experience.
Our website is scanned regularly for security holes, known vulnerabilities, and malware. Your personal information is kept behind secured networks, accessible only to a limited number of people with special access rights who are required to keep it confidential. All sensitive and credit information you supply is encrypted via SSL — and every transaction is processed through a gateway provider, so card data is never stored on our servers.
Cookies are small files a site transfers to your device (if you allow it) so its systems can recognize your browser and remember certain information. We use them to:
You can have your browser warn you each time a cookie is sent, or turn cookies off entirely, in your browser settings. Some features of the site may not work properly without them.
We do not sell, trade, or otherwise transfer your PII to outside parties without advance notice. That does not include hosting partners and other parties who help us operate the website, conduct our business, or serve you — all of whom agree to keep your information confidential. We may also release information to comply with the law, enforce our site policies, or protect ours or others’ rights, property, or safety. Non-personally-identifiable visitor information may be shared for marketing, advertising, or other uses.
At our discretion we may link to third-party products or services. Those sites have separate, independent privacy policies — we have no responsibility or liability for their content or activities.
We use Google AdSense advertising on our website. Google, as a third-party vendor, uses cookies — including the DART cookie — to serve ads based on your previous visits to this and other sites. We have implemented Remarketing with Google AdSense, Google Display Network impression reporting, demographics & interests reporting, and DoubleClick platform integration.
You can opt out any time through Google’s Ad Settings page, the Network Advertising Initiative opt-out page, or the Google Analytics Opt-Out browser add-on.
Under the California Online Privacy Protection Act (CalOPPA): you can visit our site anonymously, our privacy policy link sits in the footer of every page, and any changes to this policy will be posted right here. You can change your personal information by emailing us.
We honor Do Not Track (DNT) browser signals — when a DNT mechanism is in place we do not plant cookies or use advertising. We do allow third-party behavioral tracking.
The Children’s Online Privacy Protection Act (COPPA) puts parents in control of what’s collected from children under 13. We do not specifically market to children under 13 — and the Castle isn’t recommended for them anyway.
In line with Fair Information Practices, should a data breach occur we will notify you by email within one business day. We also honor the Individual Redress Principle — you have the right to pursue legally enforceable claims against data collectors and processors who fail to follow the law.
We collect your email address to respond to inquiries, process orders and send updates about them, share information related to your tickets or events, and occasionally market to our mailing list. In accordance with the CAN-SPAM Act we will never use false or misleading subjects or addresses, we identify advertisements as such, we include our physical address, and we honor opt-out requests quickly.
Unsubscribe any time using the link at the bottom of any email — or just email us — and we will promptly remove you from all correspondence.