Privacy and how we use your data
Last updated: 23 July 2026
· Written to follow Thailand’s PDPA
Sections 1–7 cover people searching for their own photos from an event — you need no account, and you never tell us your name or email.
Section 8 covers event organisers who sign up for an account which is a separate case, because opening an account requires contact details.
The short version
- We use your selfie only to find your photos at this event.
- Your selfie file is deleted automatically within 24 hours.
- Event photos are deleted automatically when the event’s retention period ends (usually 14 days after the event, never more than 30).
- We never share your data with third parties, and never use it for advertising.
- You can ask us to delete your data at any time — contact the event admin, or email us.
1. What we collect
- Your selfie — used only to find your photos at this event
- Facial characteristics — we turn the face in your selfie into a set of numbers, held temporarily so it can be compared against the event photos. That set of numbers cannot be turned back into a picture of your face.
- A one-way encrypted IP address — used to prevent abuse. We do not store your real IP.
- Device and browser information — used for technical troubleshooting. Not linked to you.
- A temporary session code — so you see your own results
From people searching for photos, we do not collect: your name, phone number, email address, any other usage history, or your browsing behaviour elsewhere (if you sign up for an organiser account, see section 8).
2. How we use it
When you upload a selfie, our face recognition compares your face against the photos from that event and shows you only the photos you are likely to appear in. Your data is used for that search alone.
We never use your data for: advertising, selling or trading it to third parties, training AI models, or tracking and identifying you across events — each event’s data is kept separate.
Lawful basis
facial data is sensitive personal data under section 26 of the PDPA, so we rely on explicit consent and nothing else. You must tick the consent box before the system will let you upload a selfie, and we record the date and time you gave it as evidence. Without that tick, we will not accept your photo at all.
3. How long we keep it
- Your selfie (the image file): deleted automatically within 24 hours of upload
- The facial characteristics from your selfie: deleted together with the selfie file
- Your search results: kept for up to 72 hours so you can come back and download
- Event photos: set by the event owner — usually 14 days after the event and never more than 30 days, then deleted entirely
- Audit logs: kept longer for system security, with nothing in them that identifies you
4. Where it lives, and how it is protected
- Data is stored on servers in the Southeast Asia region.
- Every connection is encrypted with HTTPS.
- Image files are stored privately and reachable only through temporary links the system issues.
- Backups run automatically, and stored data is encrypted.
- Every administrator must authenticate before gaining access, and every action is logged and auditable.
5. Your rights under the PDPA
- Right of access — you can ask to see the data we hold about you
- Right to erasure — you can ask us to delete your selfie and facial characteristics at any time (they are deleted automatically within 24 hours anyway)
- Right to withdraw consent — closing the search page counts as withdrawing it
- Right to complain — if anything about your data concerns you, come to us first — we are glad to look into it. You also always have the right to complain to Thailand’s Personal Data Protection Committee (PDPC).
6. No third parties
We do not use Google Analytics, Facebook Pixel, or any tracker.
Event photos and selfies are all
processed inside our own system
and never passed to an outside AI service.
7. What to know about face search
Search uses face recognition that runs inside our own system —
your data never leaves our system
Results are based on estimated similarity, so they may miss some photos, and occasionally someone who simply looks like you may appear. Please check before downloading.
8. If you sign up for an organiser account
Opening an account to run events requires contact details, so this section differs from section 1, which covers only people searching for photos.
- Name and email — used to sign you in, verify your identity, and contact you about your events
- Organisation name (if you provide one) — used to identify who is running an event
- Password — stored one-way encrypted. We never see your actual password.
- Access records — your last sign-in time and significant actions in the system, for security and auditing
How long we keep it: for as long as the account is in use. To close your account and have the data deleted, contact us at the email below.
We never sell or pass on organiser data to third parties, and never use it for advertising.
The organiser’s obligations
the organiser is the data controller for the photos from their own event, and we act as the processor following their instructions. It is therefore the organiser’s duty to inform attendees and obtain the consent the law requires before adding photos of their faces to the system, and to give attendees a way to withdraw consent or request deletion. Organisers accept these terms when they create an account.
If an attendee does not consent
the organiser must remove that photo from the system. If they do not act, the attendee can contact us directly and we will delete it.
If you have questions about your data, contact:
The event admin (try this first — they can delete your data straight away)
Or email:
privacy@jerroop.com
Powered by Jerroop