Privacy Policy
At Yazhi Software Solutions (operating as Yazhi Snap), protecting the privacy of both photographers and their event guests is our top priority. This policy outlines data handling across our hybrid local-cloud infrastructure.
1. Data Collected by the Desktop App & Local Network
During a live event, the Yazhi Snap Desktop App and Node.js Sidecar operate entirely on your local network (LAN):
- Guest uploads via the local Wi-Fi router never touch the internet.
- Photos are transferred directly from guest devices to the photographer's local hard drive using direct socket connections.
- Any interactions within the local Guest App (such as "liking" photos for the Hall of Fame or generating branded share cards) are processed and cached strictly on the local machine. No telemetry or photo metadata is extracted or sent to our servers during local capture.
2. Data Synced to the Cloud
When you utilize our Cloud Portal and features, we collect and store the following data:
- Authentication & Profile Data: We collect Google OAuth data (Email, Name, Profile Picture) to authenticate the photographer's account.
- Team Data: If you invite crew members to your studio, we store their email addresses, assigned roles (Manager, Operator, Viewer), and profile names to facilitate access control.
- Hardware Router Telemetry: To ensure secure local connectivity and licensing, we collect hardware identifiers from your linked routers, including the `MAC Address`, `Device Public Key`, and `Telemetry URL`.
- Cloud Galleries: Only the photos you explicitly select inside the Desktop App are transmitted securely via HTTPS to our cloud storage buckets. We also store event metadata (Event Name, Cloud Gallery PIN, Expiration dates).
3. Guest Privacy on Cloud Galleries
Client Galleries hosted on the internet are protected by several layers:
- Access is strictly gated behind a 4-digit PIN generated by the photographer.
- Guest names provided when leaving comments on specific photos are stored in our database, linked only to that specific photo's ID.
4. Payment Processing Privacy
Currently, purchases are handled via manual, offline invoicing, meaning we do not process or store credit card details on our servers. As we transition to automated billing via Razorpay, all payment data will be securely processed directly by Razorpay's PCI-compliant infrastructure. Yazhi Software Solutions will never store your sensitive financial information or credit card numbers.
5. Cookies, Local Storage, and Tracking
To provide a seamless experience on our Cloud Portal, we use the following standard web technologies:
- Local Storage: We store minimal UI preferences (such as your Light/Dark mode `ws_theme` preference) locally on your browser.
- Authentication Cookies: We utilize secure, HTTP-only session tokens managed by Supabase to keep you logged in safely across sessions.
6. Data Retention
- Ephemeral Cloud Galleries: Cloud galleries automatically expire 7 days after activation. Upon expiration, all associated media is queued for automated, irreversible deletion from our servers.
- Account & Team Data: Your profile data, team member records, and license key history are retained as long as your studio account remains active to provide continuous service. You may request account deletion at any time by contacting support.
7. Third-Party Services
We utilize the following secure infrastructure providers:
- Supabase: For Database, Storage, and Authentication, utilizing strict Row Level Security (RLS) policies.
- Vercel: For hosting the Next.js Cloud Management Portal and Client Galleries.
- Google OAuth: For secure, passwordless authentication.
- Razorpay: For secure payment processing (upcoming).
8. Contact Us
If you have any questions or concerns about our privacy practices, the local network sandbox, or cloud data retention, please contact our support team at yazhisoftwaresolutins@gmail.com.
Last Updated: June 2026