Cullibrate

Legal / Privacy

Privacy policy.

What stays local, what you choose to publish, and how Cullibrate protects Gallery data.

DocumentPrivacy policy
UpdatedSep 2026
EffectiveSep 2026
JurisdictionEU · UK · US

Section 01

Plain-language summary

Your RAW files, local previews, culling decisions, and ordinary desktop work stay on your machine. Cullibrate does not upload them as part of culling.

When you deliberately create a Client Gallery, Cullibrate uploads one privacy-scrubbed source JPEG and four responsive JPEG renditions per photo, plus the small Gallery settings needed to deliver them. You choose open-link or shared-password access, whether downloads are off, web-size, or original, and when to delete the Gallery.

Section 02

Data we collect

Account data: your email, profile, plan and entitlement state, and authentication-provider identifiers. Cullibrate does not receive your Clerk password.

Website analytics: aggregated page views, performance metrics, error reports. We do not sell or share this data.

Desktop app: ordinary culling does not transmit file paths, filenames, previews, RAW data, or photo contents. A Gallery upload sends only the selected completed JPEG content, its four prepared JPEG renditions, opaque identifiers, and the small settings required to publish it.

Gallery service: Cloudflare holds photo, object, upload, progress, delivery, and recovery material. Convex holds only the account-owned Gallery control record and aggregate counts or byte totals; it does not store per-photo or per-object material.

Partner programme: if you participate, we collect registered promotion post URLs and notes, plus payout contact details and the legal and tax evidence needed to administer payouts.

Section 03

How we use that data

To deliver builds and notify you of new releases.

To answer your support emails.

To create, secure, deliver, manage, recover, and delete the Client Galleries you request.

To improve the website experience (loading speed, broken pages, accessibility).

Section 06

Third parties

Clerk provides account authentication and identity sessions.

Netlify hosts the website and authenticated Gallery management shell.

Convex stores account ownership and thin Gallery control records with aggregate counts and byte totals only.

Cloudflare Workers, Durable Objects, and private R2 buckets own Gallery photo objects, upload progress, admission, delivery, deletion, and delayed recovery cleanup.

Our analytics and error-monitoring providers receive bounded product, performance, and error events. We exclude Gallery passwords, signed links, photo contents, filenames, and unnecessary client identity.

Section 07

Your rights

You can request a copy of your account data, ask us to delete it, or correct it at any time.

Gallery clients can ask the photographer or contact Cullibrate about Gallery access or deletion without creating an account.

Email contact@cullibrate.com and we'll respond directly.

Section 08

Contact

contact@cullibrate.com for any privacy question, request, or complaint.