Confetti Albums
FeaturesGuidesBlogPricingGet started free

Privacy Policy

Last updated: 26 June 2026

Draft pending legal review. This policy reflects how Confetti Albums is built; have counsel review it before public launch.

Confetti Albums ("Confetti," "we," "us") helps you organize photos and build albums. This policy explains what we collect, how we use it, and the choices you have. The short version: your photos stay in your own cloud storage, we store only the organizing layer, and we never sell your data.

1. Who we are

Confetti Albums is operated by Feld Labs. Contact: privacy@confettialbums.com.

2. Information we collect

  • Identity (via SSO). You sign in with a third-party identity provider (currently Google). We receive your name, email, and profile image. We never receive, store, or manage your password.
  • Your photos & content. Your photos remain in your own Google Drive. We access only the specific folder you select, with read-only access (via Google's drive.readonly permission), and only to provide the service. We never write to, move, or change anything in your Drive.
  • Organizing metadata. Tags, people you name, album definitions, ratings, and notes you create.
  • Face / biometric data. To group people across photos, we compute numeric face descriptors ("embeddings"). This is processed only with your explicit opt-in consent, see §5.
  • Payment data. Processed by Stripe. We do not store full card numbers.
  • Usage & device data. Basic logs (IP, browser, actions) for security and reliability.
  • Analytics & cookies. On our public website we use Google Analytics to understand how visitors find and use the site (pages viewed, approximate location, device and referral source). Google Analytics sets cookies and sends this usage data to Google; it does not receive your photos, face data, or album contents. We use this only in aggregate to improve the product, and we do not sell it. You can opt out with Google's browser add-on or by blocking cookies in your browser.

3. Google user data & Limited Use

Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements:

  • We request the drive.readonly Google Drive scope. It lets us read files in your Google Drive; we use it only to read the photos in the folder you select, so we can display, organize, and group faces in them. Access is read-only: we never write to, modify, move, or delete anything in your Drive, and we do not use your other files. Finished albums are downloaded to your own computer, not written back to your Drive.
  • We use Google data only to provide and improve the user-facing features you request.
  • We do not sell Google user data, use it for advertising, or transfer it except to provide the service, comply with law, or with your consent.
  • No humans read your Google data except with your consent, for security/abuse, or as required by law.

4. How we use information

  • To run the service: read the photos you connect, generate thumbnails, tag faces, build albums, and save albums back to your Drive.
  • To authenticate you (via SSO) and enforce who can access which content.
  • To process one-time, per-event payments and your album balance.
  • To secure the service, prevent abuse, and meet legal obligations.

5. Face & biometric data, your consent

Face recognition is opt-in. We ask for your explicit consent before computing face embeddings. You may decline and still use non-face features. Where we process biometric identifiers, we provide notice and obtain consent consistent with applicable biometric-privacy laws (e.g., Illinois BIPA). We use face embeddings only to group people within your own photo set, we do not sell them, and we delete them when you delete the related content or your account, or on request.

6. How we share information

We do not sell your personal information. We share it only with:

  • Service providers that run the product: Google (Drive/identity, and Google Analytics for website usage measurement), Supabase (database/auth), Stripe (payments), and our hosting provider, each under contractual data-protection terms.
  • People you choose, when you share an event/album or invite a viewer.
  • Legal, when required by law or to protect rights and safety.

7. Storage & security

Your photos live in your Google Drive, we do not take custody of your photo library. We store the organizing metadata in our database. Authentication is SSO-only, so we hold no passwords. We use encryption in transit and access controls; no system is perfectly secure, but we minimize what we hold.

8. Retention & deletion

We keep metadata while your account is active. You can delete albums, tags, people, and face data at any time. Deleting your account removes your metadata and face embeddings from our systems; your photos remain in your own Drive (we never had custody). Some records may be retained as required by law.

9. Your rights

Depending on where you live (e.g., GDPR/EEA, UK, CCPA/California), you may have rights to access, correct, delete, port, or restrict your data, and to withdraw consent. Exercise them via privacy@confettialbums.com. We do not sell or "share" personal information for cross-context behavioral advertising.

10. Children

Confetti is not directed to children under 16 and we do not knowingly collect their data. Photos may depict children; the account holder is responsible for having the right to upload and share them.

11. International transfers

We may process data in countries other than yours, using appropriate safeguards (e.g., Standard Contractual Clauses) where required.

12. Changes & contact

We'll post changes here and update the date above; material changes may require re-consent. Questions: privacy@confettialbums.com.

GuidesBlogPricingFeaturesSecurityPrivacyTerms
© Confetti Albums · your most precious moments, in albums worth keeping.