Privacy Policy
Mudimedia Yazılım ("we", "us") operates the Lens & Muse mobile application and the web pages at lensandmuse.co (together, the "Service"). This policy explains what data we collect, why, and how you can control it. It is written for freelance models and photographers using Lens & Muse's shoot diary, cards and document-signing features.
We handle personal data under UK GDPR. Your account data is stored in our Supabase project in the eu-west-2 (London) region.
Data we collect
Account and profile
- Email address, and if you sign in with Apple or Google, the identifier and name they provide.
- Role (model / photographer / both / other), display name, date of birth (used once to confirm you are 18 or over — we do not display it, and store only the confirmation, not a reusable age record beyond what is needed to enforce the 18+ gate).
- Currency preference and the city and travel radius you set for your card.
Your card and photos
- Up to 12 photos, plus your levels, rates, availability and any PurplePort / Model Mayhem / Instagram links you choose to add.
- Photos are re-encoded on your device before upload, which strips EXIF metadata including GPS location.
- Every photo is automatically screened for adult, racy or violent content using Google Cloud Vision SafeSearch before it becomes visible to anyone else. Rejected photos are deleted immediately; photos flagged for manual review are held in a moderation queue and reviewed within 24 hours.
- Other people only ever see your photos through short-lived signed URLs (valid 1 hour), never a public file.
Shoots, documents and signatures
- Shoot details you log: date, location, the other party's name and any contact details you add, fee, and status.
- Document content you generate from a template (a model release, TFP agreement or paid shoot agreement), and the fields you fill in.
- Signatures: a drawn or typed signature image, the signer's legal name and email, the timestamp, IP address, user agent and device information. This is the audit trail that makes an electronic signature admissible in evidence under the UK Electronic Communications Act 2000, and it is printed on the signed PDF.
- Signed documents, and their signature audit trail, are kept for 7 years from the date of signing, then automatically and permanently deleted. This matches standard UK record-keeping practice for signed contracts.
Purchases
Subscription and document-pack purchases are handled by RevenueCat, which receives your purchase and entitlement status from Apple or Google. We do not see or store your payment card details.
Usage analytics
We use PostHog, hosted in the EU, to understand how the app is used. Analytics events are tied to a random, pseudonymous account identifier — never your name, email, phone number, free-text content or photos. You can opt out at any time in Settings → Share usage analytics. The website itself loads no analytics script and sets no cookies; the only web-triggered analytics events (e.g. a card being viewed) are sent from our server, not your browser.
Reports and moderation
If you or someone else files a report (nudity, harassment, spam, impersonation, under-18 concern, copyright or other), we store the report, the reason, and any details supplied, so it can be reviewed and actioned within 24 hours.
Third parties we use
- Supabase — database, authentication and file storage, hosted in eu-west-2 (London).
- RevenueCat — subscription and purchase management (EU-hosted event processing).
- PostHog (EU cloud) — pseudonymous product analytics.
- Google Cloud Vision — automated SafeSearch screening of uploaded photos.
- Resend — sends sign-in codes, signed-document PDFs, and moderation emails.
- Apple and Google — Sign in with Apple / Google, and push notifications (Apple Push Notification service, Firebase Cloud Messaging via Expo).
- GeoNames — the city list used for your card location (public, non-personal reference data, CC BY 4.0).
We do not sell your personal data, and we do not share it with data brokers or advertisers.
Who sees your data
Your card is only reachable through a private link you choose to share, or a QR code you generate — it is never listed publicly or indexed by search engines. A shoot record and its documents are visible only to you and the other participant in that shoot. Blocking someone hides your card and shoot invites from them, server-side.
Retention & deletion
You can export a copy of your data at any time from Settings → Export my data, or delete your account from Settings → Delete account (or by emailing us). Deleting your account removes your profile, card, photos, links, blocks and analytics identifiers. If you own a shoot whose counterpart has an account, that shoot and any signed document transfer to them so their legal record is not destroyed by your deletion (UK GDPR Art. 17(3)(e)); otherwise the shoot and any unsigned documents are deleted. Signed documents are always kept until the 7-year retention period above, regardless of account deletion, because both parties may need the record. Full detail is in the in-app account-deletion screen.
Children
Lens & Muse is for adults 18 and over only. We check your date of birth at sign-up and block anyone under 18.
Your rights
Under UK GDPR you have the right to access, correct, export and delete your personal data, and to object to or restrict certain processing. Contact us using the details below to exercise any of these rights, or use the in-app tools in Settings.
Contact
Mudimedia Yazılım — [email protected]