Privacy Policy
Trellilume is designed around user-selected, self-hosted servers. This policy explains what the publisher controls, what your selected server controls, and the choices available to you.
The central privacy boundary
Trellilume does not place every user's library in one publisher-operated database. The app connects to the trusted HTTPS server you select. The person or organization operating that server controls its accounts, media, settings, logs, backups, retention, and optional integrations.
Scope
This policy applies to the Trellilume mobile apps and this public website. It also describes the boundary between the publisher and independently operated Trellilume servers. A server operator may need a separate privacy notice for the people using that server.
Information the app handles
- Connection and account information: the server address you select, your account email or display name, authentication state, and server-issued permissions.
- Photos, videos, and library metadata: media you select or authorize for upload, filenames and timestamps needed for organization, album membership, favorites, edits, location metadata when available, and server-generated previews.
- Device and app information: app version, platform, local preferences, connection state, upload progress, and cache information needed to operate the app.
- Optional features: feedback you deliberately submit and Assistant information processed under the selected server's configuration.
The app sends functional requests to the server you select. It does not embed an advertising SDK or cross-app tracking SDK in the reviewed beta release.
Self-hosted servers
Your selected server may store account records, password hashes, sessions, permissions, media, metadata, albums, search indexes, previews, action history, feedback, and operational logs. Its operator chooses hosting, backups, retention, optional AI providers, sharing features, and other deployment settings. The Trellilume publisher cannot inspect or delete data on an independently operated server.
If you use a publisher-operated demonstration or review server, that server's operator can access its disposable demonstration accounts and data for testing, support, security, and deletion. Do not place irreplaceable or sensitive media on a demonstration server.
Public website and service providers
This website does not require a Trellilume account and does not use advertising or behavioral analytics. Cloudflare provides DNS, HTTPS, content delivery, and security for the website and may process ordinary network information such as IP addresses, request details, security events, and timestamps under its own terms and privacy practices.
Apple and Google process store accounts, downloads, payments, subscriptions, diagnostics, and review activity under their own policies. Trellilume does not receive your store password or full payment-card details.
How information is used
- Provide sign-in, browsing, search, organization, uploads, backups, and sharing.
- Apply server permissions, safety controls, quotas, and account-management choices.
- Diagnose reliability or security problems and respond to support requests.
- Process feedback only when you deliberately submit it.
- Comply with law and protect users, systems, and the public from abuse.
We do not sell personal information. We do not use Trellilume library contents for third-party advertising.
Retention, deletion, and your choices
Retention is primarily controlled by the selected server and its operator. You can remove selected media through Trash and can request account deletion in the app. Active authority is revoked as deletion proceeds; retry-safe file cleanup and backup aging may complete later under the server's retention policy.
Visit the account-deletion page for the public instructions and the route to your selected server. Copies kept only on your device, removable media, or an independent backup must be managed there.
Security
The store beta requires a user-selected trusted HTTPS server and stores server-bound credentials using platform security facilities. No system is perfectly secure. Server operators are responsible for secure deployment, updates, access control, backups, and incident response. Do not send passwords, access tokens, private keys, or recovery codes through support email.
Children
Trellilume is not directed to children under 13. A parent, guardian, or server operator must supervise accounts for anyone who cannot legally consent in their location. Server operators should not invite children unless they can meet all applicable consent and privacy obligations.
Policy changes and contact
We may update this policy as the beta and its optional services evolve. The effective date above identifies the current version. Material changes will be reflected on this page before they apply where required.
Privacy questions: privacy@trellilume.com. General help: support@trellilume.com.