Privacy Policy

Last updated: July 2026

1. Who we are

Glimpic is a photo delivery service that helps photographers share event photos with guests using facial recognition. We are the data processor; the photographer using our platform is the data controller for their guests' information.

2. Data we collect

For photographers: name, email address, business details, payment information (processed by Stripe — we never see card numbers), uploaded event photos, and QR code usage data.

For guests: name, email address, and a selfie photograph used solely to match you with your event photos. We use AWS Rekognition to extract facial feature vectors from your selfie. The selfie and its derived features are used only for photo matching within the specific event you registered for.

3. How we use your data

Guest data (name, email, selfie) is used exclusively to identify and deliver the photos from your event. We do not use it for marketing, do not sell it, and do not share it with third parties except as required to provide the service (cloud infrastructure providers under data processing agreements).

4. Data retention

Event photos are stored for 90 daysfrom the event date, then automatically deleted. Guest gallery links are valid for 30 days. Guest registration data (name, email) is retained for the photographer's reasonable business record-keeping period unless deletion is requested.

5. Your rights

You may request access to, correction of, or deletion of your personal data at any time by contacting us at jj@glimpic.com. We will respond within 30 days.

6. Cookies

We use only essential session cookies required for authentication. We do not use tracking or advertising cookies.

7. Contact

Questions about this policy: jj@glimpic.com