Meni Gallery

Legal

Privacy Policy

Last updated 25 August 2026

Who this covers

Meni Gallery is a platform photography studios use to run their business — their website, their client list, their events, their photographs and their invoices. Two different people are covered by this policy, and the difference matters:

  • Studios, who hold an account with us. We decide how their account data is handled, so we are the data fiduciary for it.
  • Clients and guestsof a studio, who reach a studio's own site or album. Their photographs and details belong to the studio; we hold and process them on the studio's instructions, as a data processor. Requests about that data go to the studio first, and we will help them answer.

What we collect

  • Account details — name, email, phone number, and a password we store only as a hash. We never see it.
  • Studio details— business name, logo, address, GSTIN and contact details, because they are printed on invoices and shown on the studio's public site.
  • Client and event records a studio enters — names, phone numbers, event dates, venues and amounts.
  • Photographs a studio uploads, and the derived thumbnails.
  • Payment records— amounts, dates, methods and the reference the gateway returns. Card and UPI details are entered on the gateway's own page and never reach us.
  • Access codes — a one-time code sent to a phone number the studio has recorded, so a private album opens only for the person it belongs to.

Face search, and what it does with a photograph

A studio can switch on Find My Photos. A guest takes a selfie on their phone and gets the pictures they appear in, out of an album that may hold two thousand.

  • The selfie is not stored. It is held in memory long enough to compare, and then it is gone. It is never written to disk, never logged, and never sent anywhere else.
  • What is stored is a mathematical descriptor— a list of numbers derived from each face in the studio's own photographs. A photograph cannot be reconstructed from it. It is used for nothing but matching within that one studio's album.
  • Those descriptors are held by a separate service that knows only opaque identifiers. It never learns whose wedding it is, whose face it is, or which studio the album belongs to.
  • Deleting a photograph deletes its descriptors. Deleting an event deletes all of them.
  • A studio switching the feature off, or a guest simply not using it, means no face is ever processed.

Descriptors derived from a face are biometric data. If you are a guest and would rather yours were not held, ask the studio — they control the album, and we will act on their instruction.

Why we hold it

To run the account: to show a studio its own clients and events, to serve its website at its subdomain, to let a client open their album, to work out what has been paid and what is owed, and to produce invoices. We do not sell any of it, and we do not use a studio's photographs or client records to advertise to anyone.

Who else sees it

  • Payment gateways. A studio connects its own gateway account. When a client pays, the gateway handles the card or UPI details and tells us only whether it succeeded.
  • Hosting and email providers, who store the data and deliver the messages, under contract and nothing more.
  • Nobody else, unless the law requires it of us.

How long

Account and studio data stays while the account is open. When a studio closes its account, its photographs, client records and face descriptors are deleted; payment and invoice records are kept as long as tax law requires them, because they are financial records rather than ours to discard.

An album's access session lasts twelve hours, after which a client verifies again.

Your rights

You can ask what we hold about you, ask us to correct it, or ask us to delete it. Studios can do most of this themselves from the panel. If you are a client or a guest of a studio, ask that studio — they hold the record, and we act on their instruction.

Anything we can help with directly: support@menigallery.com.

Changes

If this policy changes in a way that affects what we collect or why, we will say so to account holders before it takes effect. The date at the top always reflects the current version.

See also our Terms of Service.