Privacy Policy
Last updated 27 July 2026
This page is maintained by the Ezhuvam StudioFlow team and describes what data the service handles and why. It reflects how the product works today; it is not an independent audit or certification.
Who we are
Ezhuvam StudioFlow is a workspace for wedding photography studios: client records, projects, photo selection links, album design and file delivery. The studio that signs up is the owner of the data it uploads; we process that data on the studio's behalf.
Data we collect
- Account data — studio name, owner name, email address and phone number provided at signup or via Google sign-in.
- Customer records — client names, contact details, event dates, quotes, invoices and payment notes that a studio enters.
- Uploaded media — photographs and files a studio uploads for selection, album design or client delivery, plus generated thumbnails and previews.
- Usage data — aggregated page views, device type and coarse location used to understand product usage. We do not sell this data.
How we use it
Data is used to operate the service: authenticating users, storing and serving media, generating share links, sending notifications, enforcing plan limits and providing support. We do not use uploaded photographs to train models and we do not sell personal data.
Where data is stored
Account and application records are stored in a managed PostgreSQL database. Photographs and files are stored in Cloudflare R2 object storage and served through a CDN. Access to stored rows is restricted per studio account by row-level security policies, and signed upload and download URLs are issued only after the server verifies ownership.
Sharing with third parties
We use service providers to run the product — hosting and CDN (Cloudflare), database and authentication, email delivery, and optional AI image processing when a studio explicitly runs an AI tool on an image. Providers process data only to deliver their service to us.
Client share links
Selection, approval and delivery links are unguessable tokens. Studios can add a password and an expiry date to a delivery folder. Anyone holding a valid, unexpired link can view the files that link exposes, so treat links as confidential.
Retention and deletion
Files remain available while the studio's plan is active. Deleting a project, client or folder removes the associated objects from storage; deletion runs as a background job and can take a short time to complete. Trial uploads are not retained for long-term storage. To delete your entire account and its data, email ezhuvam@gmail.com.
Your rights
You can access, correct or export your studio data from within the app, or request access, correction or deletion by emailing ezhuvam@gmail.com. We respond to verified requests within a reasonable period.
Security
Traffic is served over HTTPS. Authentication is handled by a managed auth provider, passwords are never stored in plain text, and per-account access rules are enforced on the server. No online service can promise absolute security; report a suspected vulnerability to ezhuvam@gmail.com and we will investigate.
Changes and contact
We will update this page when the product changes and revise the date above. Questions: ezhuvam@gmail.com.