Privacy Policy
Effective August 8, 2026
What we collect, why, and how long we keep it — for the vendors who run their businesses here and the guests who buy from them. The short version: photos exist to print one order and are automatically deleted after it; nobody's data is sold or shared across shops.
1. Who controls what data
Two relationships run through this product, and they're different. For the data a vendorgives us about themselves — their account, business, and billing — we are the data controller. For the data a vendor's guests generate — customers, orders, and photos — the vendor is the controller and we process it on their behalf, only to run the service.
Practically: your relationship for a magnet you bought is with the shop you bought it from. This policy explains what happens to your information inside the software they use.
2. Information we collect from vendors
Account email and sign-in credentials (managed by Supabase Auth), business name and timezone, branding such as a logo, notification preferences, subscription plan and billing status, and a Stripe connected-account identifier. We never see your bank details or card numbers — those live with Stripe.
3. Information guests provide
An email address (required, verified with a one-time code), an optional name and phone number, a shipping address when shipping is chosen, the photos uploaded for an order, and the order itself. If you check the optional “text me” box at checkout, your phone number is also used to send updates about that one order (ready for pickup, shipped) — nothing else, and replying STOP always works. Card details are entered directly into Stripe's payment form and never touch our servers.
4. Guest photos and how long we keep them
Photos are uploaded to fulfill one specific order. They live in a private storage bucket — never on the open web — readable only by the vendor who received the order and the print pipeline that lays out their sheets.
Deletion is automatic, not on-request: original photos are deleted 90 days after the order is placed. If an order is still unfulfilled at 90 days, its photos are held so the vendor can still print it, but never longer than 180 days. If a vendor closes their account, their guests' photos are deleted within 30 days, whichever deadline comes first. Order records (what was bought, when, for how much) survive for bookkeeping; the pictures don't.
We use photos only to provide the service — storage, the editing preview, and print-file generation. Never for advertising, profiling, or training AI models.
5. Marketing consent
Marketing email is strictly opt-in, recorded per customer with a timestamp — and separately from the optional consent to feature a photo socially. Order confirmations and status updates are transactional and sent regardless. Every marketing message carries an unsubscribe link that clears the consent flag immediately, and unsubscribed customers are excluded from sends at the database level, not just in the interface.
6. Why we process it
To fulfill orders and produce print files (performance of the vendor's contract with their guest), to send transactional email, to bill vendor subscriptions, to prevent fraud and abuse, to provide support, and — only with consent — to send a vendor's marketing to their opted-in customers. We collect nothing beyond what those purposes need.
7. Who else processes it
Five services process data on our behalf, each for one job:
Supabase — database, authentication, and photo storage (privacy). Stripe — guest payments, vendor payouts, and subscription billing (privacy). Resend — transactional and marketing email delivery (privacy). Twilio — text-message delivery for opted-in order updates (privacy). Vercel — application hosting and delivery (privacy). Error monitoring (Sentry) receives technical error reports that are scrubbed of personal data before they leave our servers.
9. Vendor data ownership and export
A vendor's customer list and order history belong to the vendor, exportable as CSV at any time from the dashboard. On account closure the same rules as above apply: guest photos are deleted within 30 days, and business records remain exportable during that window — after which the account's data is removed from the live service.
10. Your rights
You can ask for access to, correction of, or deletion of your personal data, and object to specific processing. Guests should ask the shop they bought from first — the vendor controls their customer records, and the product gives them the tools to honor requests. We assist as the processor.
If a vendor is unreachable or you'd rather talk to us, email hello@liveimpressions.co and we'll help directly.
11. How we protect it
Data is encrypted in transit and at rest. Every tenant's rows are isolated by database-level row security, photo buckets are private with access scoped per tenant, photo access uses signed, short-lived URLs, and internal access is limited to what running the service requires. No system is breach-proof; if an incident affects your data we'll tell you what happened and what we're doing about it.
13. Children
The service is for businesses and their adult customers, not children. Family photos uploaded for an order often include children — those are treated like every guest photo: private bucket, order-fulfillment use only, automatic deletion on the schedule above.
14. Changes to this policy
When this policy changes materially we'll notify vendors by email and in-app announcement at least 14 days before the change takes effect. The current version always lives at this page.
15. Contacting us
Live Impressions is operated by Coastal Impressions Co., a Wyoming limited liability company. For anything in this policy, email hello@liveimpressions.co.