Data and privacy
Where your photographs go.
You are handing us other people’s wedding pictures. Here is every place they touch, in order, with no hedging. If anything here is not what you expected, stop and tell us before you catalog another wedding.
- Your full-resolution originals
- Stay where they are, on your Mac and in your Dropbox or Google Drive. We read them to catalog them and we never upload them. Disconnect les Archives tomorrow and your folders are exactly as they were.
- A working copy of every frame you catalog
- This one does come to us. When you catalog a wedding we upload a 2560 pixel copy of each frame to your workspace’s storage. That copy is what you and anyone you invite actually work with: it is what you drag into a carousel, what an editor sees in the portal, and what gets published to Instagram or Pinterest when you post. Cataloging cannot work without it.
- Who can reach that working copy
- Anyone with the exact link. The storage bucket is public-read, which is what lets Instagram and Pinterest fetch an image when you publish and what lets an editor open a submission without an account. The URLs are long and unguessable and we do not list them anywhere, but they are not password protected. Treat them the way you would treat an unlisted gallery link.
- What goes to Anthropic
- A 1568 pixel copy of a frame when you ask for tags, alt text, or a caption. It goes through our proxy under the workspace key, or straight from your Mac under your own key if you added one. It is discarded when the request returns. Anthropic does not train on it.
- What sits in our database
- Your account, your workspace, catalog metadata, tags, alt text, Story Files, carousels, submissions, and bug reports. Text about pictures, plus the working copies above.
- When the beta ends
- Your workspace either carries into the paid product or we delete it, your choice. Ask us to delete it sooner and we will do it within seven days, working copies included.