Skip to main content

Privacy

Our approach to privacy

You control who can see your memories. This page explains the product’s core data practices.

Last updated: September 22, 2026

Controller and scope

Depending on the service context, Anira acts as controller or processor for data used by organizer accounts, guest participation, invitations and media sharing.

Data categories

We may process identity and contact details; account and event settings; guest names, contact details, RSVP and custom answers; uploaded photos, videos, voice notes, filenames and technical metadata; and IP address, browser, session and security records.

Purposes and legal grounds

Data is used to perform the service agreement, deliver the event experience, prevent abuse, meet legal duties and pursue legitimate security interests. Consent is requested where applicable.

Retention and deletion

Event data is deleted 90 days after the event by default, with organizer warnings at 30, 7 and 1 day. Manual event or account deletion closes public access immediately, followed by retryable background removal of originals, derivatives, audio, ZIP archives and related records.

Processors and transfers

Limited providers may process data for private object storage, email delivery, hosting and payment-result verification. Appropriate safeguards are assessed where international transfer rules apply.

Deletion and rights requests

You may request access, correction, deletion, restriction and information about processing, subject to applicable law. Send requests to privacy@anira.com.tr; additional verification may be required.

Guest content

Guests confirm they have the rights or permission needed to share uploaded content. Organizers should inform invitees about processing and gallery visibility.

Security

Private storage, short-lived signed URLs, authorization checks, file validation, rate limits and security records help protect event data.