Privacy Policy
Updated 20 August 2026This page explains how GaliVue handles the information needed to provide professional photographer accounts, private client selection, final-file delivery, billing, support and service reliability. It is written to describe the current production service; it is not a promise that optional future tracking tools are already enabled.
Information used for photographer accounts
Photographer accounts may include a name, professional display name, email address, country, password hash, professional billing information supplied by the account holder, plan status, subscription references and project information. Billing details are used only where needed to operate the account, payments, invoices and related support.
Project and client information
Photo projects may include client names or email addresses entered by the photographer, preview files, final delivery files, selection choices, filenames and project activity needed to operate the service. Photographers should only provide information and files they are entitled to process and share.
Private client galleries
Clients do not need a GaliVue account. A client opens a private token link supplied by the photographer. GaliVue stores selection and delivery status needed to complete the project. Private links may expire, be revoked or be replaced. Private client and delivery routes are excluded from public audience measurement.
Anonymous client reviews
The optional two-question client review is designed without a name or email field. One review is associated with the private delivery record so duplicate responses can be prevented.
How information is used
Information is used to create and secure accounts, provide requested workflow and delivery features, maintain subscriptions and billing, send operational messages, respond to support requests, prevent abuse, diagnose technical problems and maintain service reliability. GaliVue does not sell personal data and does not use account or client data for behavioural advertising.
Infrastructure and service providers
GaliVue uses Cloudflare for application processing, database records and file storage, Stripe for secure payment and subscription processing, and Resend for transactional email delivery. These providers receive only the information needed for their role in providing the service. GaliVue does not intentionally add advertising pixels or marketing trackers to the current service.
Account verification and recovery
GaliVue uses short-lived codes for photographer email verification and password recovery. Verification and reset codes are stored as hashes, expire after a limited period and are removed after expiry or consumption. A successful password reset invalidates older photographer sessions.
Cookies used by GaliVue
The current service does not use marketing or advertising cookies. Authentication cookies are first-party and host-only because GaliVue does not set a Domain attribute. Secure is applied on HTTPS. The analytics opt-out cookie exists only to remember a privacy choice.
First-party audience measurement
GaliVue uses privacy-limited first-party audience measurement only on public website pages. It can count page views, broad country/region/city, referral source, device type, browser category, operating system and meaningful public-page actions such as pricing or sign-up clicks. Private client galleries, delivery links, the photographer workspace and the Admin panel are excluded. Raw visitor IP addresses and full User-Agent strings are not stored in the analytics database. The derived visitor identifier is a keyed HMAC based only on coarse signals and rotates every 30 days. Raw audience-measurement sessions and events are automatically removed after 90 days. Bot traffic is separated from human traffic.
Privacy signals and audience-measurement choice
GaliVue honours Global Privacy Control (GPC), Do Not Track (DNT) and the local GaliVue opt-out preference. When one of those signals is active, public audience measurement is skipped. Turning audience measurement off does not affect sign-in, private galleries, final delivery, billing or account features.
Audience measurement choice
Security and privacy safeguards
- Public documents use a restrictive Content Security Policy, anti-framing controls, MIME sniffing protection, a same-origin referrer policy and disabled camera, microphone and geolocation permissions unless a feature explicitly requires them.
- HTTPS responses send HTTP Strict Transport Security so browsers continue using encrypted connections after a successful HTTPS visit.
- Operational error logging redacts obvious secrets and does not intentionally store passwords, OTPs, session cookies, authentication headers, payment-card data, gallery tokens or client message bodies.
- Admin error records are limited to operational fields such as time, module, reason, endpoint, HTTP status, request/incident ID, safe account/project references and occurrence counts. They are automatically removed after 90 days.
Retention and deletion
Project files and related workflow records are retained while needed for the active project, delivery, account or configured expiry period. Photographers can archive projects or move them to Trash, which includes a safety period before permanent deletion is allowed. A photographer can request permanent account deletion from account settings; GaliVue requires a deletion reason, email verification code and final confirmation before destructive deletion begins. For an unresolved subscription payment, a seven-day payment grace period applies before any automatic account deletion, and a successful payment cancels that timer. GaliVue performs a final billing-status check before automatic deletion and defers deletion if billing status cannot be confirmed safely. Payment or other service providers may retain billing or transaction records they are required to keep, and GaliVue may retain limited records where necessary for legal, accounting, fraud-prevention or service-security purposes.
Privacy requests
For access, correction, deletion or other privacy questions relating to a GaliVue account or project, email privacy@galivue.com. To report a security issue or suspicious message, email security@galivue.com. A request may require reasonable verification before account or project information is disclosed or changed.