COLOR BYROSS MO
Privacy Policy
Last updated:
1. Scope
This policy explains how byRoss Technology Co. Ltd. handles personal data used by COLOR BYROSS MO and apps connected to the service. Send privacy questions and data requests to ross@byross.mo.
2. Account and service data
We process your sign-in email, member ID, display name, optional author profile, work and descriptions, recipe settings, favourites, compatibility feedback and reports. Google sign-in supplies account information needed to verify identity; we do not receive your Google password.
3. Photos, EXIF and location
Uploads are processed with their EXIF, MakerNote, camera and lens data to read recipes and create sharing versions. Shared images are resized to at most 1,600 pixels on the long edge and 1 MB per file; this is not original-photo backup. Public previews remove metadata; recipe downloads retain MakerNote and remove GPS. You can remove location or share only a broad area, and withdraw location in the studio. Image content and text you enter may still identify people or places.
4. Purposes and public visibility
We use data for sign-in, drafts, publication, display, favourites, downloads, feedback, security and service improvement. Published work, public author details, shooting data and location you choose to share can be viewed, downloaded or shared by others. Sign-in emails and credentials are not public author information.
5. Cookies, analytics and security
We use essential sign-in cookies and local storage for language preferences. The production website uses Google Analytics for browsing and device information; Google may process data using cookies or other identifiers. We also process connection IPs, security-limit and request information to prevent abuse. Site statistics include aggregate views, favourites and recipe information. A view-identification cookie lasts up to 30 days to reduce duplicate work-view counting.
6. Providers and international processing
Cloudflare provides hosting, databases, storage and image processing; Resend delivers sign-in emails; Google provides optional sign-in and website analytics. Data may be processed outside your country. Third-party apps or connections you choose to use have their own policies. If you authorise a third-party connection, authorised data may be transferred to that service. Review its data handling before connecting.
7. Retention and deletion
Account and work records are retained as needed to provide the service, with no single automatic deletion period. Sign-in expires after 30 idle days and requires renewal after at most 180 days; expired sign-in and verification records are periodically cleared. Deleting work removes it from display and deletes stored images, but related database records may remain. Security, legal, dispute and backup needs may require some retention. We cannot control copies downloaded or reposted by others.
After an account or content is deleted, we handle data within the platform’s control in accordance with this policy. Copies previously downloaded or saved by other users are not automatically deleted. We cannot directly retrieve those copies from their devices or third-party services, but will continue to fulfil obligations required by applicable law.
8. Your choices and requests
Permanently delete your account on the account page using an email confirmation code. By default, your account, work, photos, drafts, favourites and all sessions are deleted. You may separately and voluntarily permit the platform to retain, organise and share published recipe parameters. Photos, titles, stories, author and location data are excluded. Original recipe node IDs, other works’ links and other members’ saved references remain; administrators initially retain the parameters without automatic publication or transfer of your copyright. Account data is removed immediately; image cleanup follows and is retried if it fails. Removing the app does not delete server accounts or synced recipes; unsynced content may be lost. Contact ross@byross.mo for other access, correction or privacy requests.
9. Minors and updates
This service is not designed specifically for children. Minors should use it with guardian permission and guidance. Contact us if you identify children’s data shared without appropriate authorisation. Policy updates will be dated, and material changes communicated appropriately.
