01Information we collect
To run the service we collect:
- Account details: your name, email address, and (optionally) phone number.
- Event photos: images uploaded by event organizers, photographers, or guests.
- Selfies & facial data: the selfie you submit to find yourself in an event, and the numeric face signature derived from it (see “Facial recognition” below).
- Usage & device data: basic analytics, device information, and IP address, used to operate and secure the service.
- Payment data: handled by our payment provider, Paymob. We never see or store your full card number, expiry, or security code.
02How we use your information
- To deliver the photo-matching and gallery service you signed up for.
- To match faces between your selfie and event photos so you receive the right images.
- To communicate with you about your account, events, and purchases.
- To operate, secure, troubleshoot, and improve the service.
- To meet legal, tax, and accounting obligations.
03Facial recognition
When you submit a selfie to find your photos, our system converts it into a numeric face signature (a mathematical vector) and compares that signature against faces detected in event photos. This signature is what powers matching. It is not a usable picture of your face.
A face signature is biometric data and we treat it as sensitive. We use it only to match you to photos within events you choose to join, and you can delete it at any time, which removes you from future matching.
04How your data is protected
Your data is hosted on Google Cloud infrastructure. It is encrypted in transit using TLS (HTTPS) and encrypted at rest by the storage platform. Saved payment tokens are additionally encrypted by us using AES-256-GCM before storage.
We restrict internal access to personal data and keep applying reasonable technical and organizational safeguards. No online service can promise perfect security, so we describe what we actually do rather than over-promise.
06Data retention
We keep your data while your account is active and for as long as needed to provide the service and meet legal obligations. When you delete your selfie, account, or an event, the associated data is removed from our active systems. Backups age out on a rolling basis.
07Your rights
You can:
- access the personal data we hold about you;
- correct inaccurate information;
- request deletion of your data, including your face signature;
- opt out of non-essential communications;
- control which events can match your selfie.
To exercise any of these, use the controls in your account or email privacy@dsprs.com. If you are in the EU/EEA or UK, see our GDPR page for how these rights map to GDPR.
08Children
DSPRS is not directed to children. We do not knowingly create accounts for, or build face signatures of, children under the age required by local law without appropriate consent. If you believe a child’s data is in the service, contact us and we will remove it.
09Who we are & how to contact us
This service is operated by DSPRS, based in Cairo, Egypt (Arab Republic of Egypt).
Privacy questions: privacy@dsprs.com · Data Protection enquiries: dpo@dsprs.com.
Registered entity: DSPRS · Cairo, Egypt. Full registration details available on request.
This policy is governed by the laws of the Arab Republic of Egypt.
