LensDrop

Privacy Policy

Last updated 26 September 2026

LensDrop lets photographers deliver private, password-protected photo and video galleries to their clients. This policy explains what we hold, why, and for how long.

1. Information we hold

Gallery details — the client name and project title your photographer sets, the gallery password (stored only as a one-way hash, never in readable form), the gallery’s expiry date and display settings.

Media — the photos and videos uploaded to your gallery, together with derived preview sizes and file metadata such as dimensions and duration.

Device identifier — when you sign in, the app generates a random identifier for that installation. It contains no hardware, advertising or account identifiers, and exists so a gallery can be limited to one device at a time.

Activity — download requests you submit, favourites, notifications, messages sent through Help & Support, and security events such as a detected screenshot or screen recording attempt.

2. How we use it

Only to operate the service: to show you your gallery, to keep it private, to review and action download requests, to send you notifications about your gallery, and to protect the photographer’s work. We do not sell your information, and we do not use it for advertising.

3. Screen capture

On Android the app blocks screenshots, screen recording and screen mirroring while your gallery is open. When a capture attempt is detected, viewing pauses and a security event is recorded. We cannot prevent capture on every platform or device; where a platform does not permit blocking, the app can detect a capture and respond.

4. Service providers

Gallery data is stored with MongoDB Atlas and media and application hosting are provided by Vercel. These providers process data on our behalf under their own terms. Media is served through short-lived signed links tied to your session rather than permanent public URLs.

5. Retention

Media is automatically and permanently deleted a set period after a gallery expires (by default 30 days after expiry). The gallery record itself may be kept as an archive with its counts cleared. Sessions are invalidated when they are replaced, when you sign out, or when the gallery expires.

6. Security

Access requires both the private gallery link and its password. Passwords are hashed, sessions are tied to a single device, and links to media expire. No system is perfectly secure, so please treat your gallery link and password as confidential and do not forward them.

7. Your choices

You can sign out at any time from Profile, which ends your device session. To ask a question about your gallery, to correct the client name shown, or to request deletion of your gallery before its expiry, contact your photographer using Help & Support in the app.

8. Changes

We may update this policy as the service evolves. Material changes will be reflected by the “last updated” date above.