Privacy
What MIDDAY holds, and what it does not.
Last updated 25 August 2026.
About this page
MIDDAY is a private, invitation-only monthly lunch in Park City, Utah. This page explains what this site collects, why, who else touches it, and what you can ask us to do about it.
It is written to describe what the site actually does. If something here does not match what you experience, tell us at privacy@middaypc.com and we will fix one or the other.
The short version
- We collect what you give us, and very little else.
- We do not use tracking pixels, advertising tools, or website analytics of any kind.
- We do not sell your information, and we do not share it for anyone else's marketing.
- We never publish a roster, an attendee list, or a profile to the public.
- A member who chooses to keep their profile private is not visible to other members at all.
- Business contact details are shared with another member only after both people have accepted a connection.
- You can ask us for a copy of your information, ask us to correct it, or ask us to delete it. Write to privacy@middaypc.com.
Who we are
MIDDAY is operated by Ted Engelage as an individual. There is no company behind it. He hosts the lunch, and he is the only person who administers this site.
For anything about your information, write to privacy@middaypc.com. That mailbox is monitored.
What we collect when you visit a public page
Nothing you have to give us. There is no account, no sign-up, and no tracker.
Our hosting provider keeps ordinary technical records that any website receives: the address your request came from, the page requested, and the kind of browser used. These are handled by the provider as part of running the site and are not used to build a profile of you.
What we collect when you request access
The request form asks for your name, email address, mobile phone number, company, and role or title. It asks how you heard about MIDDAY and what you would bring to the room. There is an optional box for anything else you want to add.
The form also records the time it was received and the kind of browser used, so that we can tell a real request from an automated one.
A request goes privately to Ted. It is not published anywhere, and it is not shared with anyone at the table.
We use it to decide whether to invite you, and to contact you about that decision. Nothing else.
If we approve a request, we send a one-time invitation to set up a login. That invitation expires, can only be used once, and is stored in a scrambled form that cannot be read back, including by us.
If we do not approve a request, we keep the record so that we know the conversation happened. You can ask us to delete it.
What we collect when you have an account
Your profile holds what you put in it: your name, your role or title, your company, where you are, a short introduction, and the two sets of tags describing the introductions that would be useful to you and the topics you can help with. You can add a photo and up to ten links.
It also holds your business contact details (email, phone and address) and, separately, private contact details that are only ever visible to Ted.
You choose whether your profile is visible to other members at all. If you choose to stay private, you do not appear in anyone's list, anywhere in the site.
If you make your profile visible, other members can see your introduction and your two sets of tags. They cannot see your business email, phone, or address until you and they have both accepted a connection.
We also keep a private note field that only Ted can see and edit. It is used for the ordinary business of running a lunch: a reminder of how you were introduced, or what you asked about. It is not visible to you or to anyone else, and you can ask us what it says.
Your photo is stored privately, not on the open internet, and is shown through links that expire shortly after they are created.
What we collect when you RSVP or attend
We record your response to each event, any note you add, and the number of guests you are bringing along with their names, if you give them.
If you check in at a lunch, we record that you did and when.
Other members see who has said they are coming, subject to the same rules as everywhere else on this site. Members who have chosen to keep their profile private are not named. Guests who have accepted an invitation are named on the attendee list. Their contact details are visible to Ted. The member who invited a guest also sees the address, because they typed it in. No other member sees it.
What we collect when you check in as a guest
Guests do not have accounts. The check-in form asks for your name, mobile phone, email, company, and role or title.
Guest contact details are visible only to Ted. They are never shown to members, and never displayed on the screen in the room.
We keep them so that Ted knows who was at the table and can follow up. Write to privacy@middaypc.com to have yours removed.
What we collect when you message or post
Direct messages are between the two people in the conversation and are available only between accepted connections. We store the message, who sent it, who it was for, and when each person last read the conversation.
Posts and replies in the members-only Journal are visible to every member. They are never public.
We do not read your direct messages as a matter of course. Ted has technical access to the database, as anyone running a site does, and may need to look at a specific message if there is a safety problem or a legal obligation. That is the exception, not the routine.
If a member reports a post for review, the report goes to Ted. The person who made the report is not named to the person who wrote the post.
Notifications
We send email through our email provider, and, only if you turn it on, push notifications to your device.
If you turn on push notifications, your browser gives us a technical address for your device so it can receive them. You can turn this off at any time in your browser or device settings.
We keep a record of whether a message was sent and whether it was delivered. That record deliberately does not contain the contents of the message.
We do not use tracking pixels in email. We do not use link tracking. We do not add marketing tags to any link we send you. If we send you a link, it goes straight where it says it goes.
We do not send text messages.
Security records
We keep a limited log of significant administrative actions, for example when an agenda is published or a message is removed, so there is a record of what happened.
We also keep a short-lived record of failed sign-in attempts, to slow down anyone trying to guess a password. That record stores a scrambled value rather than your email address.
What we never do
- We do not sell your information. We have never done it and we will not.
- We do not share it with anyone for their own marketing.
- We do not run advertising, and there are no advertising tools on this site.
- We do not run website analytics. Not a page counter, not a heat map, nothing.
- We do not use tracking pixels or link tracking anywhere, including in email.
- We do not publish a public roster, a public profile, a public attendee list, or any public record of who knows whom.
- We do not display attendee names, guest details or contact details on the screen in the room.
- We do not send text messages.
Who else touches your information
We use a small number of services to run the site. Each one only receives what it needs to do its job, and none of them are permitted to use your information for their own purposes.
- Database, sign-in and file storage: the information described above, including profiles, messages, events and photos.
- Website hosting: serves the pages; ordinary technical request records.
- Email delivery: the email address we are sending to, and the message itself.
- Business mailbox: any email you send to or receive from an address at middaypc.com.
- Push notifications: the technical address of your device, only if you enabled it.
If you would like the specific names of these providers, write to privacy@middaypc.com and we will tell you.
We may also disclose information if the law requires it, or if it is genuinely necessary to protect someone's safety. If that ever happens and we are allowed to tell you, we will.
How long we keep things
- Your profile and account: for as long as you have an account, and then as long as reasonably needed after you leave. Ask us to delete it and we will.
- Access requests: kept as a record of the conversation. Ask and we will delete yours.
- RSVPs and check-ins: kept as a record of who attended which lunch.
- Messages: kept until deleted by the person who sent them, or until the account is removed.
- Guest check-in details: kept so Ted knows who attended. Ask and we will remove yours.
- Delivery and administrative records: kept as an operating record. These do not contain message contents.
If you ask us to delete something and we are required to keep part of it, for example, a record we need for a legal or regulatory reason, we will tell you plainly which part and why.
Your choices
You control your own visibility. Whether your profile appears to other members at all is a switch on your profile, and it is yours.
You control your contact details. Business contact details reach another member only after you have both accepted a connection.
You control notifications. Turn push notifications off in your browser or device at any time.
You can leave. Ask us to close your account and we will.
Your rights
We offer these to everyone who uses this site, regardless of where you live and regardless of whether a particular law requires it of us:
- Ask what we hold about you, and get a copy.
- Ask us to correct anything wrong.
- Ask us to delete your information.
- Ask us to stop sending you anything.
- Ask a question about any of this and get a straight answer.
Write to privacy@middaypc.com. We will confirm we received your request and respond within 45 days. If we need longer, we will tell you why before that deadline passes.
We will not charge you for this, and we will not treat you differently for asking.
If we cannot verify that a request genuinely comes from you, we will say so rather than hand your information to someone else.
Where your information is held
Your information is stored on servers in the United States. If you are writing to us from outside the United States, please know that this is where it lives.
Children
MIDDAY is for working adults. This site is not for anyone under 18, and we do not knowingly collect anything from a child. If you believe a child has given us information, write to privacy@middaypc.com and we will remove it.
Changes to this page
If we change how any of this works, we will change this page and update the date at the top. If the change is significant, if we start collecting something new, or share something with someone new, we will tell members directly rather than quietly editing this page and hoping you notice.
Contact
- privacy@middaypc.com: anything about your information: questions, corrections, a copy, deletion.
- support@middaypc.com: anything about your account, signing in, or security.
- hello@middaypc.com: anything else.