THE IMPORTANT DETAILS
Privacy, in plain sight.
What this product stores
Account email is handled by Supabase Auth. Photographer introductions, categories, country, city, time zone, service areas, packages and permissioned portfolio images support your listing. Booking requests contain your selected package, shoot time, currency, service location and brief. Private messages and booking events support the conversation and scheduling history.
Who can see what
Approved photographer profiles and their published work are viewable without an account. Owners can manage their drafts. Administrators review applications. Booking details, messages and events are restricted to the booking participants by database access policies. No public customer directory is provided.
Reviews and reports
Review ratings, text, publication dates and photographer replies are public on published profiles. Customer names, account identifiers, booking dates, prices, meeting areas and messages are not included in public review records. Text you choose to publish can still reveal personal details, so do not include them. The private booking link and customer confirmation snapshot are retained for attribution and eligibility; they do not verify payment or attendance.
Reports are private to the reporter and administrators. Moderation decisions retain an audit reason visible to the reporter; moderators do not gain access to private bookings. Hidden content and its eligibility record remain accessible to the booking participants. No automatic retention period or self-service deletion of reviews is promised in this release.
Images and local storage
Portfolio uploads are re-encoded in your browser to WebP before upload to private storage. Approved portfolio images use short-lived signed URLs; previously loaded images may remain in browser caches. Booking drafts are saved in this browser’s local storage for up to 24 hours to preserve them across email sign-in tabs, then discarded on their next read or after a matching successful request. Do not use a shared browser or put sensitive information in drafts. Claimed drafts are bound to the signed-in account and cleared on account change or sign-out. Pending message retry details remain in this browser until verified or signed out; do not use a shared device for private conversations. Sign-in uses cookies to maintain your authenticated session.
Infrastructure and communications
The application uses Supabase for authentication, data and portfolio storage. Authentication email delivery is subject to provider configuration. Booking email notifications are not yet guaranteed. No third-party advertising trackers or payment-card collection are implemented in this milestone.
Control and unresolved launch requirements
You can edit your profile and remove portfolio images through your dashboard. Automated account deletion, data-export requests, a staffed privacy contact and formal retention/deletion schedules are not implemented yet. These are launch blockers, not rights being waived. Do not put sensitive personal information in this preview.