eMotion Picture

Privacy Policy

Last updated: 10 August 2026
The short version. eMotion Picture runs on your own computer. Your photos and videos, and everything derived from them — thumbnails, face detections, embeddings, tags and locations — stay on your device. We never upload, receive, store or view your media.

1. Information we access

2. Information we do not collect

3. Google API Services — Limited Use

eMotion Picture's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements. Data obtained through Google APIs is used only to provide features you have explicitly requested within the application, is never sold, is never used for advertising, and is not transferred to others except as necessary to provide those features, to comply with applicable law, or as part of a merger or acquisition.

4. Anonymous usage analytics

The application uses Google Analytics to understand how it is used in aggregate (for example, which screens are opened). Each installation generates a random, memorable handle such as brave-otter-42. This handle contains no name, email address or other identifying information, and we cannot connect it to you unless you tell us your handle yourself.

5. Software updates

The application periodically contacts daam.ai to check whether a newer version is available, and downloads updates from there. These requests reveal your IP address and the application version you are running, as any web request does. Updates are cryptographically signed and are rejected by the application if the signature does not verify.

6. Account and licensing service

To establish which features an installation is entitled to, the application contacts a licensing service we operate. This happens only if you sign in with Google, and it is the only part of the application that sends account information to a server we control.

What is sent. Immediately after a successful sign-in, the application sends the identity token Google issued for that sign-in, together with a random identifier for that installation. The identity token proves to our service that Google — not the application — vouched for who you are. It is valid for about an hour, is passed straight through, and is never stored by the application or by our service.

What is retained. The service keeps your Google account identifier, your email address, the installation identifier, and the subscription tier associated with your account, along with the dates those records were created and last used. Nothing else is retained: no media, nothing derived from media, and no Google Drive, Google Photos or YouTube content or credentials.

The installation identifier is a random value generated on your own computer. It is not derived from your hardware and contains no personal information. It exists so an entitlement can be issued to one installation rather than to a machine we would otherwise have to recognise.

In return the service issues a short-lived signed entitlement, which is stored on your computer and remains valid offline for 14 days. If the service cannot be reached, the application continues with the entitlement it already holds; once that lapses, only features that depend on our server are withheld. Your library, your database and all local processing remain available indefinitely, with or without a network connection.

7. Where your data is stored

All application data — your media index, face data, tags, settings, account record and any connected-service tokens — is stored in a database file on your own computer. Apart from the account record described in section 6, it is not replicated to us. Backups the application creates before an update are also written to your own storage.

8. Protection of sensitive data

This section describes the mechanisms that protect sensitive data, including all data obtained through Google APIs under sensitive and restricted scopes.

We treat the following as sensitive data:

The strongest protection is structural: eMotion Picture processes sensitive data on your own computer. Your media, everything derived from it, and every OAuth credential are never transmitted to, stored on, or accessible from any server we operate. We hold no copy of them, and no employee, contractor or third party can access them. The mechanisms below protect them on your device and in transit to Google.

The one deliberate exception is the account record described in section 6: if you sign in with Google, your email address and Google account identifier are held by our licensing service. That record is limited to what is listed there, and it never includes media, data derived from media, or credentials for any connected service.

Encryption in transit

Encryption at rest

Access control

Data minimisation

Software integrity

Retention and secure deletion

Incident response

9. Data retention and deletion

10. Children's privacy

eMotion Picture is not directed to children under 13, and we do not knowingly collect personal information from children.

11. Changes to this policy

We may update this policy from time to time. Material changes will be reflected by the "last updated" date above and, where appropriate, noted in the application's release notes.

12. Contact

Questions about this policy can be sent to support@daam.ai.