Back to PartyShots

Privacy Policy

A service of Brody Technologies, LLC

Last updated: July 13, 2026

PartyShots is designed around a simple idea: your photos are not our product. Full-resolution guest media streams through our systems to the event Host's Google Drive and is never stored by us, not even as thumbnails. This policy explains what little we do collect, why, what we do with it, and your rights. PartyShots is operated by Brody Technologies, LLC, an Idaho limited liability company.

1. What we collect: Hosts

  • Account info: your name and email address, via Google Sign-In.
  • Google Drive access: an encrypted Google refresh token, used solely to deliver guest media to your Drive folder. We use Google's narrowest Drive permission (drive.file): we can only see and modify files and folders PartyShots itself creates, never the rest of your Drive.
  • Event details: event name, theme, date, time zone, and settings.
  • Payment: processed entirely by Stripe. We receive a payment confirmation and transaction reference, never your card number.

2. What we collect: Guests

  • The name and optional message you type when submitting a photo or video.
  • Your photos/videos: transferred directly to the Host's Google Drive. We store no media whatsoever: the live gallery streams images and videos from the Host's Drive through our access-controlled gallery endpoint (which enforces the event PIN, moderation, and expiry), and our only record is text (your name, your optional message, the media type, and a Google Drive file reference).
  • Where your name appears: the name and message you enter are shown alongside your uploads in the event gallery (and, if the Host enables challenges, on the event leaderboard and recap). They are also saved into the Host's own Google Drive (in the media file names and in the event's album file), where they remain under the Host's control after the event.
  • For convenience, the name you type is remembered in your own browser's local storage so it can be prefilled on your next visit. It stays on your device and you can clear it through your browser at any time.
  • No account, email, or phone number is ever required from Guests.

3. Technical data and analytics

We process IP addresses transiently for rate limiting, bot detection, and abuse prevention. They are held only in short-lived operational records: rate-limit counters that expire with their time window (minutes to a few hours), PIN attempt-limiting records pruned hourly, and content-report deduplication entries kept up to 96 hours. When a Host enables bot protection, the uploader's IP address is also sent to Cloudflare Turnstile for verification. IPs are never used for advertising or profiling.

We collect coarse, aggregate product analytics (such as event opens, uploads, and theme) through Cloudflare Analytics Engine, and page-view counts through Cloudflare Web Analytics. Both are cookieless and record no names, messages, emails, IP addresses, or device fingerprints, and do not identify individual users. If the app crashes in your browser, a short error report (the error text, the page path, and your browser's user-agent string, never your name or media) is sent to us so we can fix the bug; these reports appear only in our short-lived operational logs.

4. Cookies and browser storage

We use only strictly necessary cookies required to operate the Service:

  • sb_host: maintains your Host login session. Signed, httpOnly, expires after 30 days.
  • sb_evt_*: remembers that a Guest's browser has been admitted to a PIN-protected event. Signed, httpOnly, expires after 48 hours (and is invalidated if the Host changes the PIN).
  • sb_oauth: a short-lived security token that protects the Google sign-in flow against forgery. Signed, httpOnly, expires after 10 minutes and is deleted as soon as sign-in completes.

We do not use analytics, advertising, or tracking cookies. Because we use only strictly necessary cookies, we do not display a cookie consent banner. These cookies cannot be disabled without breaking core Service functionality. You can clear cookies through your browser settings at any time.

Browser storage: we also use your browser's own storage for convenience, never for tracking: the name a Guest types is remembered locally so it can be prefilled next visit, small tab-scoped flags remember things like a dismissed notice, and on the Host's album page a temporary Google Drive access token (valid about an hour) is held by the Host's own browser so the album can stream directly from their Drive. All of it stays on your device and can be cleared through your browser settings.

5. What we never do

  • We never sell or rent personal data. To anyone. Ever.
  • We never use guest photos for advertising, AI training, or anything beyond operating the specific event they were uploaded to.
  • We never store media on our servers: not full-resolution, not thumbnails, nothing. The gallery is served from the Host's own Google Drive.
  • We never share your data with any third party except the service providers listed in Section 8.

6. Data retention and deletion

Text-only gallery records (we hold no media), including guest names and messages, are permanently deleted from our systems shortly after an event's live gallery closes, which is no later than 72 hours after the event date plus a short recap window of about 48 hours. Approximately 30 days later, the event record itself is scrubbed of personal details (event name, welcome message); only anonymized payment transaction references are retained as required by applicable financial regulations (typically up to 7 years). Host account data is retained while your account is active. Media in the Host's Google Drive belongs to the Host and is not affected by our deletion. Likewise, deleting your PartyShots account does not delete your Drive files.

Deleting your account: Hosts can delete their account at any time from the dashboard. This immediately revokes our access to your Google Drive, deletes your events and their records, and removes your name and email from our systems (anonymized payment references are kept only as required by financial regulations). You can also email partyshots.support@gmail.com and we will action your request within 30 days.

7. Google API Services disclosure

PartyShots's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Drive access is used only to create your PartyShots event folder and save your guests' media into it. You can revoke access at any time at myaccount.google.com/permissions.

8. Service providers

We share data only with the processors required to run the Service:

  • Cloudflare (United States): hosting, database, caching, bot detection (Turnstile receives the uploader's IP address when a Host enables bot protection), and aggregate analytics
  • Stripe (United States): payment processing
  • Google (United States): sign-in and Drive delivery
  • Resend (United States): transactional email (receipts, event notifications)

Each provider is bound by data-processing terms. We do not sell or license your data to any other party.

9. International data transfers

Our service providers operate in the United States. If you are located in the European Economic Area (EEA), United Kingdom, or another jurisdiction with data-transfer restrictions, your personal data may be transferred to and processed in the United States. We rely on Standard Contractual Clauses (SCCs) approved by the European Commission and, for UK transfers, the UK International Data Transfer Agreement (IDTA) or equivalent mechanisms. You may request a copy of the applicable safeguards by contacting partyshots.support@gmail.com.

10. Hosts control event content

For photos and videos uploaded at an event, the Host is the data controller: they own the Drive folder, decide what appears in the gallery, and handle requests about event content. PartyShots acts as a data processor on the Host's behalf for event media. If you appear in a photo at someone's event and want it removed, the fastest path is the Host; you can also use the in-gallery report button or contact us at partyshots.support@gmail.com and we will forward your request to the Host.

11. Children

The Service is not directed at children under 13, and Hosts must be 18 or older. PartyShots does not knowingly collect personal information directly from children under 13. Children may appear in photos taken at private events hosted by adults; such content is the responsibility of the event Host (as data controller), not PartyShots. Hosts are responsible for obtaining any required parental consent and for ensuring their event complies with COPPA and applicable local laws if children under 13 will participate. If you believe we have inadvertently collected personal information from a child under 13, contact us at partyshots.support@gmail.com and we will delete it promptly.

12. Security

Google Drive refresh tokens are encrypted at rest (AES-GCM). All traffic is encrypted in transit (TLS). Session cookies are cryptographically signed (HMAC), and event PINs are stored as keyed hashes, never in plain text. We limit access to personal data to personnel who need it. No system is perfectly secure, so we deliberately minimize what we hold: the most privacy-protective data is the data we never store. In the event of a personal data breach that creates a risk to your rights and freedoms, we will notify affected individuals and relevant supervisory authorities as required by applicable law (within 72 hours where required by the GDPR).

13. Your privacy rights

All users: You may contact us at partyshots.support@gmail.com to access the personal data we hold about you, correct inaccurate data, request deletion (subject to legal retention obligations), or ask how your data is used. We will respond within 30 days.

EU and UK residents (GDPR / UK GDPR): You also have rights to data portability, restriction of processing, and objection to processing based on legitimate interests, and you may lodge a complaint with a supervisory authority (for example, the UK Information Commissioner's Office at ico.org.uk, or your local EU authority). Our legal bases for processing are: contract performance (running your event), legitimate interest (abuse prevention and security), and legal obligation (financial record-keeping).

California residents (CCPA / CPRA): California residents have the following rights under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA):

  • Right to Know: You may request disclosure of the categories and specific pieces of personal information we have collected, the categories of sources, the business purpose, and the categories of third parties with whom we share it.
  • Right to Delete: You may request deletion of personal information we hold about you, subject to certain exceptions.
  • Right to Correct: You may request correction of inaccurate personal information.
  • Right to Opt-Out of Sale or Sharing: We do not sell or share personal information for cross-context behavioral advertising. You do not need to opt out.
  • Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights.

To exercise these rights, email partyshots.support@gmail.com. We will verify your identity before processing requests. For deletion requests, we use a two-step process: we confirm receipt of your request and ask you to separately confirm your intent to delete before we act. We will respond within 45 days of receipt (extendable by an additional 45 days with notice where reasonably necessary).

Authorized agents: You may designate an authorized agent in writing to submit CCPA requests on your behalf. We will require written authorization signed by you, or a valid power of attorney under California Probate Code § 4000-4465. We may contact you directly to verify the agent's authority before processing the request.

Other US state residents (Virginia, Colorado, Connecticut, Texas, and others): You may have similar rights of access, deletion, correction, portability, and to opt out of targeted advertising and profiling. We do not sell personal data or conduct targeted advertising. To exercise applicable rights, contact us at partyshots.support@gmail.com.

14. Do not sell or share my personal information

PartyShots does not sell personal information to third parties and never has. We do not share personal information for cross-context behavioral advertising, targeted advertising, or commercial profiling of any kind (as those terms are defined under the CCPA/CPRA and similar laws). We share data only with service providers as described in Section 8, solely to operate the Service, under contractual terms that restrict those providers from using your data for any other purpose.

Because we do not sell or share personal data for advertising purposes, there is no opt-out required. You may verify this at any time by contacting partyshots.support@gmail.com.

15. Changes to this policy

We will update the "Last updated" date when this policy changes. For material changes, we will notify Hosts by email at the address associated with their account at least 14 days before the change takes effect.

16. Contact

Privacy questions, requests, or concerns: partyshots.support@gmail.com. The Service is operated from the United States and is not specifically directed at or marketed to the EU or UK; accordingly, we have not appointed an EU/UK representative under GDPR Article 27, but we honor the rights in Section 13 for all users and respond to all inquiries via email within 30 days. PartyShots is a service of Brody Technologies, LLC (Boise, Idaho).