MembouxEN

Version 17/07/2026

Privacy policy

Memboux is a private event-gallery service. This notice transparently describes the current technical operation; it is not a certification of compliance.

Roles and responsibility

Memboux operates the platform and accounts. Each event owner decides who is invited, the purpose of the collection and access. Uploaders confirm that they are entitled to submit the content.

Data we process

Account details, sessions and security logs, event metadata and memberships, photos/videos and technical metadata, upload-consent versions, invitations, support conversations and contact details, removal requests and privacy requests. Rate limits store one-way hashed identifiers rather than raw IP addresses.

Purposes and services

Data is used for authentication, private-gallery operation, uploads, collaboration, security, abuse prevention, support, cloud backups and rights requests. Infrastructure is provided by Cloudflare Workers, D1 and R2; transactional email by Resend; optional Google sign-in and Google Drive backup by Google. We do not sell data or use it for advertising profiles.

Google Sign-In and personal Drive backups

When you choose Google Sign-In, we receive the basic identity details you approve, such as name, email and profile image, solely to create or connect your account. When you optionally connect Google Drive, we request only the limited drive.file permission. We use it solely to create and manage the Memboux folder and the event backups you choose in your own Drive. We do not read, modify or delete unrelated files in your Drive.

The Google refresh token is encrypted at rest and linked only to your own Memboux account. We do not disclose Google user data to advertisers, data brokers or other apps, and we do not use it for advertising, profiling or training generalized AI/ML models. Memboux's use and transfer to any other app of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Google API Services User Data Policy

Retention and Google Drive disconnection

We retain the encrypted Google connection only while Drive remains connected. You can disconnect it at any time from the Backups page; we then revoke access with Google and delete stored tokens from Memboux. Disconnecting does not delete copies already created in your personal Drive; those remain under your control and can be deleted directly in Google Drive. Backup status and technical audit metadata may remain as needed for service operation, security and accountability.

Other retention

Sessions expire after 30 days. Trashed media/events are permanently deleted after 30 days. Rate-limit counters expire at the end of their window. Expired invitations and verification records are automatically cleaned up. Resolved removal requests are retained for up to 12 months and resolved privacy requests for up to 3 years for audit. Event access expiry does not automatically erase memories; an event remains until its owner/admin deletes it.

Choices and rights

Users can export their account data, disconnect Google Drive and request verified deletion from the Privacy center. Each media item offers a removal request. For access, correction, deletion, restriction or objection, use the secure request form.

Submit a request

Controller details

Memboux is the service operator. Before accepting payments, the full legal name, postal address and official privacy email will also be published. Until then, privacy requests and contact are received through the secure Privacy center form.