OldPhoto
ExamplesOur approachFor familiesFAQPricing
Privacy PolicyTerms of Service
OldPhoto policies

Privacy Policy

This Privacy Policy explains how OldPhoto handles information when you visit photomend.app or use its browser-based photo restoration service.

Last updated: August 25, 2026

1. Who operates OldPhoto

OldPhoto provides the service available at photomend.app. In this policy, "OldPhoto," "we," "us," and "our" refer to the service operator and parties acting on its behalf.

2. Scope and definitions

This policy applies to the OldPhoto website, the upload and restoration workspace, and the restoration API that supports that workspace. It does not apply to third-party websites or services linked from OldPhoto.

"Photo" means an image file you submit for restoration. "Request information" means the settings and optional facts sent with that photo. "Output" means the image returned after processing.

3. Information you provide

When you start a restoration, OldPhoto processes the following information from your browser:

  • The photo file you select and related technical information, such as file name, type, size, dimensions, and any metadata embedded in the file.
  • Your selected restoration mode (Faithful or Full), whether you request natural color, and the image orientation.
  • Optional facts or instructions you provide about the photograph.
  • The restoration output and related request information.

4. Information processed automatically

When you access the service, we and our service providers may process standard technical and usage information, including network identifiers, browser or device information, approximate region, request times, pages or features used, response status, security events, and diagnostic data.

OldPhoto sets a first-party, randomly generated anonymous identifier cookie named oldphoto_anon. We use it only to count successful restorations and enforce the three-use MVP allowance. The cookie is not used for advertising, cross-site tracking, or to create a user account.

If you allow analytics, OldPhoto loads Google Analytics 4 to measure page views and a limited set of product events, such as selecting a photo, starting or completing a restoration, encountering a categorized error, and downloading a result. Analytics event parameters may include the interface language, broad file type and size buckets, image orientation, selected restoration settings, broad failure category, remaining free allowance, and processing duration.

OldPhoto's analytics implementation does not send Google the submitted photo, restoration output, file name, optional facts or instructions, email address, or other free-form text. Google Analytics may process device and browser information, page URL, referring page, approximate region derived from network information, and analytics identifiers. Google may set first-party cookies such as _ga and _ga_<container> after you allow analytics.

The current MVP does not offer user accounts or checkout and does not use advertising cookies or analytics data for advertising personalization or cross-site advertising. Infrastructure, analytics, and security providers may maintain technical logs under their own terms and operational practices.

5. Browser and session information

Your browser may hold the selected photo, restoration output, and session information while the restoration workspace is open. Closing or refreshing the page may clear the active session, although your browser, device, network, or service providers may retain cached or technical copies outside our direct control.

The anonymous identifier cookie may remain in your browser for up to one year so the service can remember how many successful MVP restorations remain. It is HttpOnly, SameSite=Lax, and sent only to OldPhoto. Clearing the cookie removes that browser identifier but does not create an account or photo history.

Your analytics choice is stored locally in your browser. If you allow analytics, Google Analytics cookies may remain for up to two years unless you change your analytics choice, clear browser storage, or applicable settings shorten that period. You can reopen Analytics choices from the website footer at any time; declining disables further analytics events from the page and attempts to remove OldPhoto's Google Analytics cookies.

The current MVP does not provide a user-facing permanent restoration library or account history.

6. How we use information

We use the information described above to:

  • Receive, validate, and process the photo you ask us to restore.
  • Apply the mode, color, orientation, and owner-provided context you select.
  • Return the generated output and let you compare or download it.
  • Count successful restorations and enforce the three-use allowance for each anonymous browser identifier.
  • With your permission, understand the restoration funnel, feature usage, broad failure categories, and aggregate product performance so we can improve the service.
  • Prevent abuse, protect the service, diagnose failures, and maintain service operations.
  • Comply with legal obligations, respond to lawful requests, and enforce our Terms of Service.

7. Automated processing and service providers

OldPhoto uses third-party hosting, security, delivery, and AI-processing services to operate the product. To complete a restoration, your submitted photo, selected settings, and optional facts are transmitted to service providers that process the request and return an output.

OldPhoto uses a private Cloudflare R2 bucket to store the submitted photo and, when restoration succeeds, the completed output under a randomly generated diagnostic reference. Original and restored files are stored as separate objects. The bucket is not configured as a public gallery or user-accessible photo library.

When you allow analytics, Google acts as an analytics service provider for the limited usage data described above. Advertising personalization and Google signals are disabled in OldPhoto's Google Analytics configuration.

These providers may process information in multiple jurisdictions and may maintain request data, generated content, or technical logs under their own terms and policies. We do not control every aspect of an independent provider's systems or retention practices. Do not submit material that you are not comfortable having processed by third-party service providers.

8. When information may be shared

We may disclose information in the following limited situations:

  • To vendors, contractors, affiliates, and service providers when reasonably necessary to host, secure, support, analyze, or provide the service.
  • To professional advisers, regulators, courts, law-enforcement authorities, or other recipients when required by law or reasonably necessary to protect rights, safety, security, or the service.
  • In connection with a future merger, acquisition, financing, reorganization, or sale of the service, subject to applicable law.
  • With your direction or consent.

9. Retention and deletion

Submitted photos and completed restoration outputs are stored privately in Cloudflare R2 for result delivery and troubleshooting. An automatic lifecycle rule expires objects seven days after creation. Cloudflare may complete physical removal shortly after an object reaches its expiration time. Failed requests may retain the submitted photo and diagnostic metadata, but do not contain a completed output.

The diagnostic metadata contains a random request reference, timestamps, processing state, file type and byte count, selected mode, color and orientation settings, whether optional facts were supplied, broad failure category, provider response status, and any provider request reference. It does not store the original file name or the text of optional facts.

The seven-day R2 lifecycle does not control copies that may exist temporarily in transit, active AI-processing systems, caches, backups, security records, or service-provider logs. Those providers may apply different retention periods under their own terms and operational practices.

The anonymous usage counter and its cookie may persist for up to one year. Google Analytics event-level data is configured to be retained for up to 14 months, while aggregated reports may remain available for longer under Google's product behavior. Other technical records may be retained as reasonably necessary for security, dispute resolution, legal compliance, and service operation.

You can remove the local session from the page by closing the restoration workspace or refreshing the page. Because there is no current account or history system, there is no in-app account deletion control. Privacy requests may require enough information to verify the request and locate relevant processing records.

10. Your choices and privacy rights

You choose whether to upload a photo, whether to request natural color, and whether to provide optional facts. Do not upload a photo unless you have the right or permission to have it processed.

Google Analytics is disabled until you choose Allow analytics. You may decline without losing access to restoration features and may change the choice later through Analytics choices in the footer.

Depending on where you live, you may have rights to request access to, correction of, deletion of, or information about the personal data we control, and to object to or restrict certain processing. You may also have the right to complain to a data-protection authority. We will handle a verified request as required by applicable law.

11. International processing

We and our service providers may process information in countries other than the country where you live. Those countries may have different data-protection rules. Where required, transfers will rely on an applicable legal mechanism or other protection required by law.

12. Security

We use HTTPS and server-side request controls intended to reduce unauthorized access and abuse. No transmission or storage system is completely secure, and we cannot guarantee that information will never be accessed, altered, disclosed, or destroyed.

13. Children

OldPhoto is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you are under the age required to use online services where you live, use OldPhoto only with the permission and involvement of a parent or guardian.

14. Third-party links

The website may link to third-party pages, including image-source pages for public-domain examples. We do not control those sites or their privacy practices. Review their policies before sharing information with them.

15. Changes to this policy

We may update this policy as OldPhoto changes. We will change the "Last updated" date and, where required, provide additional notice for material changes. Your continued use of the service after an update means that the updated policy applies to future use.

16. Contact

Privacy questions or requests may be sent to support@photomend.app. We may request information reasonably necessary to verify your identity, authority, and request.

Current beta boundaryOldPhoto is a limited MVP preview. Each anonymous visitor may complete up to three successful restorations at no charge. The current implementation does not provide user accounts, a permanent photo library, checkout, subscriptions, or a task-history dashboard.
OldPhoto

AI restoration for the family photos you thought were lost.

ExploreRestoration examplesOur approachFor familiesPricing
TrustPrivacyTermsAI disclosureData deletionContact support
© 2026 OldPhotoMade for memories, with respect for the original.