Spekto

Privacy Policy

Last updated: August 2026

Spekto is a platform for real-time photo sharing at events. We only collect what's needed for the service to work — nothing more. No ads, no third-party cookies, no tracking across other websites. On our marketing pages we keep simple, aggregated visit statistics to see which markets find us; it is described in the table below.

Data controller

The data controller for Spekto is Brattheng AS (Norwegian org. no. 999 033 741). Questions about privacy can be sent to [email protected].

What we store

Organizers (signed in)

DataPurposeRetention
Email addressSign-in and event communicationAs long as the account exists
NameDisplayed in admin panelAs long as the account exists
Payment informationEvent purchase (handled by Stripe)5 years (legal requirement)
IP addressSecurity and troubleshooting90 days
Visit statistics on our marketing pagesWhich page your visit started on, which site you came from if any, campaign tags in the link, the country Cloudflare reports, and a broad categorization of your browser signature (e.g. "human", "search crawler" or "AI crawler") — this statistic never stores the signature itself, only the category. Used to understand which markets find Spekto, and to distinguish real visitors from automated traffic. We never store your IP address here — only the country code. The row is stored under the same session ID as above, so it could in principle be linked to your participation in an event if you later use the same browser for that. A signature we cannot recognize at all may in rare cases end up in our operational logs under "Security and troubleshooting" above — never in this statistic.Up to 13 months — we purge month by month, so a month is removed in full once the whole month has passed the limit. After that we keep only aggregated monthly statistics with no session ID: visits per country, source and landing page, and how many of them went on towards creating an event.

Guests (no sign-in required)

DataPurposeRetention
Photos and videoDisplayed in the event's live feedDeleted with the event
EXIF metadata (GPS, date)Chronological sorting of photosDeleted with the event
Name (optional)Shown as photographer in the feedDeleted with the event
Guestbook (text, audio and video)Messages, voice recordings and video greetings in the guestbookDeleted with the event
Session ID (cookie)Identify your photos and likesDeleted with the event
IP addressSecurity and troubleshooting90 days

EXIF metadata (such as GPS location) is only used internally for sorting and is never shown to other guests.

Legal basis

  • Sign-in and event management — necessary to deliver the service (GDPR Art. 6(1)(b))
  • Photo uploads and guestbook — consent from the guest (GDPR Art. 6(1)(a))
  • AI moderation — legitimate interest in protecting against inappropriate content (GDPR Art. 6(1)(f)). Optional per event.
  • Transcription — legitimate interest in auto-generating captions for audio and video guestbook messages (GDPR Art. 6(1)(f)). Separate setting per event, on by default, independent of AI moderation.
  • MagicFind (facial recognition) — explicit consent for processing of biometric data (GDPR Art. 9(2)(a)). Opt-in per guest.
  • Payment — contract and legal obligation for accounting (GDPR Art. 6(1)(b) and (c))
  • Security and troubleshooting — legitimate interest (GDPR Art. 6(1)(f))

AI moderation

Organizers can enable automatic content moderation. When active, images are sent to OpenAI and text to Google Gemini to assess whether content is inappropriate. Flagged content may be automatically held back for manual review by the organizer.

The OpenAI Moderation API does not retain content. Video guestbook recordings are moderated in the same way as audio recordings.

Transcription

Audio and video guestbook messages are automatically captioned — this setting is enabled by default to make greetings accessible during playback, and is separate from AI moderation.

Audio recordings that are transcribed are processed under OpenAI's API terms without being used for training. Organizers can turn transcription off in the settings — if disabled, the message is shown without a caption, and the audio is not sent to OpenAI.

MagicFind (facial recognition)

For Spekto Pro events, organizers can enable MagicFind — a feature that lets guests find photos of themselves via selfie. For time-limited trial events, MagicFind is on by default as part of the trial, without the organizer enabling it separately. This feature uses facial recognition based on biometric data (GDPR Art. 9).

How it works

  • Indexing: When photos are uploaded to a MagicFind-enabled event, a mathematical representation (embedding) of each face is calculated. This representation cannot be used to reconstruct the face.
  • Selfie search: The guest takes a selfie which is analyzed to find matching photos in the feed. The selfie is not stored.
  • Processing: All facial analysis happens on Spekto's own servers. No images or biometric data are sent to third parties.

Consent and deletion

  • Explicit consent: You are asked to approve the use of facial recognition before MagicFind is activated (GDPR Art. 9(2)(a)).
  • Deletion: Face embeddings are automatically deleted when the event is deleted. Organizers can also manually delete all face data.
  • No sub-processor: MagicFind uses no external services — all processing happens on our own server.

Who has access

Your data is not shared with others. The following sub-processors handle data on our behalf:

  • Cloudflare — network security and HTTPS proxy (IP addresses pass through Cloudflare). EU-US Data Privacy Framework.
  • Stripe — payments. Handles all card information directly — we never see card numbers. EU-based processing.
  • Brevo — email delivery. Email addresses and message content. EU-based (France), no transfer outside the EU.
  • OpenAI — optional AI moderation of images and optional transcription of audio/video guestbook messages (two separate settings). USA, standard contractual clauses + EU-US Data Privacy Framework.
  • Google Gemini — optional AI moderation of text. EU-US Data Privacy Framework.
  • Backblaze B2 — off-site backup of database (encrypted) and media (not encrypted). Stored in EU (Amsterdam).

All primary data (database, images, video) is stored on a dedicated server in Norway.

Cookies

We only use technically necessary cookies for sign-in and guest sessions. No third-party analytics, tracking or advertising cookies, and nothing that follows you to other sites. Therefore, no cookie consent is required. The same session cookie is used to count visits on our marketing pages, as described in the table above.

Data deletion

  • Guests can delete their own photos and guestbook entries directly in the app.
  • Organizers can delete the entire event along with all associated data (photos, comments, guestbook).
  • Automatic deletion — events and all associated data are automatically deleted 90 days (Spekto) or 365 days (Spekto Pro) after the expiry date. Organizers with a registered email address are notified 30 days before deletion, with a link to download the photos first.

Backups

We take daily backups of the database and media to protect against data loss from technical failure. Backup retention is as follows:

  • Daily database backups are kept for 30 days locally and 90 days off-site (Backblaze B2).
  • Monthly database snapshots (first day of each month) are retained for up to 3 years off-site for disaster recovery and audit — contains text data (names, email addresses, comments, guestbook content), not the photo/video files themselves, and a relatively small storage volume (a few MB per month). This does not override the deletion timelines above — see the point below.
  • Media files are backed up as a mirror — if a photo or event is deleted, the backup copy is typically removed within 24 hours (no versioning).
  • Deletion requests — if we ever need to restore from a monthly snapshot, we keep a log of which data was deleted after the snapshot timestamp and exclude it from the restore. Deleted personal data is never restored.

Local backups are stored on a dedicated server in Norway. Off-site copies reside in Backblaze B2 (EU, Amsterdam) — database copies are encrypted before upload.

Your rights

You have the right to:

  • Access what we have stored about you
  • Have your information corrected or deleted
  • Request restriction of processing
  • Receive your data in a portable format (data portability)
  • Lodge a complaint with the Norwegian Data Protection Authority if you believe we are not complying with the rules

Send an email to [email protected] and we'll take care of it.