Legal
Privacy Policy
Your privacy matters to us. This policy explains what data we collect, how we use it, and the rights you have over it. Questions? Reach us at support@momentpik.com.
1. Information We Collect
Photographers: We collect business contact information, payment gateway details, and event-related metadata.
Participants: We collect selfie images for face recognition, bib numbers, and email addresses if provided for purchase receipts.
Biometric data policy: Selfies you submit are used solely to match you to your event photos via AWS Rekognition. This processing is treated as biometric data and is handled under the safeguards described in Data Storage and Security — selfies are deleted after processing unless retaining them is required to improve matching accuracy, and they are never sold or used for any purpose other than photo matching.
Technical Data: IP addresses, browser types, and device information for security and analytics purposes.
2. How We Use Your Information
To provide face/bib recognition services via AWS Rekognition.
To facilitate photo purchases through photographer-provided payment gateways (we do not process payments directly).
To send invoices to photographers for platform fees and commissions.
To improve platform performance and user experience.
3. Data Storage and Security
Photos and event data are stored on secure AWS S3 buckets with encryption at rest.
Selfies used for face recognition are deleted after processing unless required for improving accuracy.
We implement industry-standard security measures, but no system is 100% secure.
4. Third-Party Services
AWS: We use Amazon Web Services for hosting, storage (S3), and face recognition (Rekognition).
Payment Gateways: Payments are processed directly via photographer-configured gateways (e.g., Stripe, PayPal). We do not store payment card details.
Analytics: We may use anonymized data to track platform usage.
5. Your Rights
Access & Deletion: You may request access to or deletion of your personal data by contacting support@momentpik.com.
GDPR Compliance: EU participants have the right to data portability and erasure under GDPR.
Opt-Out: Photographers must ensure compliance with local privacy laws (e.g., obtaining consent for photography at events).
7. Data Retention
Event photos remain live for 30 days unless photographers pay $10/month to keep them active.
Deleted events and photos are permanently removed within 30 days.
8. Changes to This Policy
We may update this policy periodically. Significant changes will be communicated via email or platform notifications.
9. Contact
For privacy inquiries, email support@momentpik.com.