Privacy Policy
Last updated: 12 June 2026
This Privacy Policy explains how ROGUE (“we”, “us”) collects, uses, stores, and protects personal data when you use our website and services (the “Service”). The Service lets you upload photographs of an event and turns them into a printed magazine. Because we process photographs of people — and detect and group faces within them — we take particular care with that data, as described below.
1. Who we are
ROGUE is a UK-based service and is the data controller for the personal data described here. We process personal data in accordance with the UK GDPR and the Data Protection Act 2018. For any privacy question or to exercise your rights, contact us at contact@printsbyrogue.co.uk.
2. The data we collect
- Account & contact data — email address and authentication identifiers (via our auth provider), and any name you provide.
- Photographs you upload — the images you submit to create a magazine, which may contain images of you and other people.
- Facial / biometric-derived data — to group photos by person we run automated face detection and create numerical face representations (embeddings). See Section 4.
- Names you assign to people — optional labels you add to grouped faces.
- Payment data — handled by our payment processor (Stripe). We do not store full card numbers; we receive only limited transaction metadata.
- Order & fulfilment data — shipping details and order status for printed magazines.
- Usage & device data — IP address, browser/user-agent, and basic visit analytics.
- Cookies — see our Cookie Policy.
3. How we use your data
- To provide the Service — generate, preview, and print your magazine.
- To detect and group faces so you can label the people in your photos.
- To process payments and fulfil printed orders.
- To operate, secure, and improve the Service and prevent abuse.
- To communicate with you about your orders and account.
Our legal bases under the UK GDPR are: performance of our contract with you (Art. 6(1)(b)); your consent (Art. 6(1)(a), and Art. 9(2)(a) for facial/biometric data and non-essential cookies); and our legitimate interests (Art. 6(1)(f)) in running, securing, and improving the Service.
4. Facial and biometric data — important
To assemble your magazine we can run automated face detection on your uploaded photographs and create face embeddings (mathematical representations used to group photos of the same person together). Under the UK GDPR, when used to uniquely identify a person this is special category data (Art. 9) and we rely on your explicit consent (Art. 9(2)(a)).
In plain English (and with feeling): face grouping has exactly one job — working out which photos show the same person, so the right faces land on the right pages and Uncle Dave isn’t captioned as the bride. We’re not building a facial-recognition database, we’re not selling anyone’s likeness, and there are no shady third parties rubbing their hands together. It stays inside your own session, it’s deleted when you delete the session, and you’re free to switch it off entirely at upload.
- It is optional — you can opt out. At the upload step you can choose notto use face detection. If you opt out, we do not run face detection or create face embeddings; you will not be able to label people, the “Who’s Here” step is skipped, and the magazine cannot feature named or grouped guests.
- Explicit consent. We process facial data only where you have uploaded the photographs and given explicit consent at the point of upload, and you confirm you have permission from the people shown in the photographs. You can withdraw consent at any time.
- Purpose limitation. Face embeddings are used solely to group photos within your own session. We do not use them to identify strangers, build a facial-recognition database, sell them, or share them for advertising.
- Retention & deletion. Face embeddings and groupings are retained only as long as needed to produce your magazine and are deleted when you delete your session or on request. See Section 8.
5. Who we share data with (sub-processors)
To run the Service we use trusted providers who process data on our behalf:
- Authentication — Clerk (account & session management).
- Payments — Stripe.
- Database — Supabase.
- Storage & delivery — Cloudflare R2.
- Hosting & compute — Google Cloud.
- AI processing — OpenAI (generates editorial text and analyses images to compose the magazine). Photographs and derived descriptions may be sent to this provider for processing.
- Print fulfilment — our print partner, who receives the final files (which include your photographs) needed to produce and ship your magazine.
We do not sell your personal data.
6. International transfers
Some providers may process data outside your country. Where required, transfers are made under appropriate safeguards (such as Standard Contractual Clauses).
7. Data retention
We keep personal data only as long as necessary for the purposes above: to deliver your magazine, fulfil and support orders, and meet legal/accounting obligations. Uploaded photographs and facial data tied to a session are deleted when you delete the session or on request, subject to short technical backup windows.
8. Your rights
Depending on your location you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Delete your data (“right to erasure”), including your photographs and facial data.
- Withdraw consent (including for facial-data processing) at any time.
- Object to or restrict certain processing, and request portability.
- Lodge a complaint with the UK’s supervisory authority, the Information Commissioner’s Office (ICO) — ico.org.uk.
To exercise any right, email contact@printsbyrogue.co.uk. We respond within one month as required by the UK GDPR.
9. Security
We use technical and organisational measures to protect your data, including encryption in transit, access controls, authentication on data endpoints, and least-privilege secrets handling. No method of transmission or storage is 100% secure, but we work to protect your information and respond promptly to any incident.
10. Children
The Service is not directed to children under 16, and we do not knowingly collect their personal data. If you believe a child has provided us data, contact us and we will delete it.
11. Changes
We may update this policy; we will post the new version here with an updated date. Material changes will be communicated where appropriate.
12. Contact
Questions or requests: contact@printsbyrogue.co.uk.
This document is a template provided for transparency and must be reviewed by a qualified UK solicitor before you rely on it — particularly the facial/biometric-data sections. Under UK law these are governed by the UK GDPR (Art. 9 special category data) and the Data Protection Act 2018; if you also serve users in other regions, additional laws may apply (e.g. EU GDPR, and US biometric statutes such as Illinois BIPA, which carries statutory damages). Consider whether a Data Protection Impact Assessment (DPIA) is required for the facial processing.