Legal

Privacy Policy

Last updated September 15, 2026

Overview

Fondays ("Fondays", "we", "us") helps you collect, organize, and print photos from weddings, parties, trips, and other events shared with the people who were there. This policy explains what information the Fondays app collects, how we use it, and the choices you have, for everyone who creates an account, joins an event pool, or orders a printed product.

Fondays is operated by Ondravan Private Limited (CIN U62011TN2026PTC195416), 19/35 Mount Road, Little Mount, Saidapet, Chennai 600 015, Tamil Nadu, India. We are the data fiduciary responsible for the information described here.

Information we collect

We collect the information needed to run shared photo pools and fulfil physical orders:

  • Account details: when you sign in with Google or with Apple, we receive your name, email address, and profile photo from that provider, and store an identifier linking your Fondays account to it. Fondays never sees or stores a password.
  • Photos & media: images and videos you upload to an event pool, along with the caption and dimensions we need to display them. Fondays does not ask for or record your device's location.
  • Event & pool data: pool names, dates, guest lists, roles (host/member), and invites you send or accept.
  • Messages & reactions: messages you send in a pool's chat, notes you leave on a photo, replies, emoji reactions and likes, and how far you've read so we can show what's new.
  • Blocks & reports: the people you block, and any report you file about a photo or a message.
  • Order & shipping details: items ordered (prints, photobooks, framed pieces), the shipping address and contact phone number you provide for delivery, and order status, when you buy a physical product.
  • Purchase records: which subscription or event pass you hold and when it expires. Payments are processed by Apple, Google, or our payment gateway; Fondays never receives or stores your card details.
  • Country: used to show the right prices and currency. We take it from your app store account where available, otherwise from your device settings or the approximate region of your connection.
  • Device & usage data: app version, device type, a push notification token if you allow notifications, and server logs of requests to our API that help us fix bugs and prevent abuse.

Your photos & pools

Photos you add to a pool are visible to the other members of that pool, as set by the host's pool settings. Your photos remain yours. We don't sell them, license them, or use them to advertise Fondays.

"Photos of me" works from tags, not from your face. When you upload a photo you're recorded as a subject of it, and people in a pool can be tagged in photos. Fondays does not use facial recognition and does not collect or process biometric data.

You can remove your own uploads, leave a pool, or ask a host to remove a pool at any time from within the app. Leaving a pool does not remove the photos you added to it, so delete them first if you want them gone.

Pool chat, reactions & likes

Every pool has a chat. Messages, notes on photos, reactions and likes are visible only to the people who have joined that pool. Nothing in a pool's chat is public.

You can delete your own message for everyone, and the pool's host can delete any message in their pool. When a message is deleted for everyone, its text is erased from our database straight away and the chat shows only that a message was deleted.

You can block anyone. Their messages, notes and reactions stop being shown to you in every pool, and you stop getting notifications about them. They are not told. You can undo a block from Me > Blocked people in the app. You can also report a message by holding it, or a photo from its menu.

While you have a pool open, other members can see that you're there ("here now"), and while you type they see that you're typing. Neither is stored in our database: presence clears about a minute after you leave, and typing is never saved.

Chat notifications say who wrote and in which pool, never what they wrote.

How we use information

We use the information above to:

  • Operate event pools: uploading, organizing, and displaying photos to the right members.
  • Fulfil orders: printing and shipping photobooks, prints, and framed pieces to the address you provide.
  • Run pool chat: deliver messages, notes and reactions to the members of a pool, and show what's unread.
  • Send essential notifications: pool invites, chat activity, order updates, and account security alerts.
  • Keep pools safe: act on reports, apply the blocks you set, and remove content or accounts that break our terms.
  • Improve Fondays: understand which features are used, and diagnose crashes.
  • Prevent abuse: detect spam, fraud, or violations of our terms.

We do not sell your photos or personal information to advertisers.

Sharing & third parties

We share information only where it's needed to run the service:

  • Other pool members: see the photos you add, the messages, notes, reactions and likes you leave in that pool, your name and your username. They never see your email address or your phone number. A host can turn the invite link off and remove a member at any time.
  • Print & fulfilment partners: receive the specific images, shipping address, and contact phone number needed to produce and deliver your order, and nothing else.
  • Apple and Google: process subscription and event pass purchases made in the app, and confirm to us what you bought.
  • Razorpay: processes payments for physical orders. They handle your card or UPI details directly; we receive only a confirmation.
  • Cloudflare: stores and serves your photos from object storage on our behalf.
  • Google Firebase: delivers push notifications to your device.
  • Sentry: receives technical crash and error reports so we can fix faults. Reports are scrubbed of personal details before they leave your device or our servers, and are stored in the European Union.
  • Legal requests: if required to comply with law or to protect the rights and safety of our users.

Data retention

Photos in a pool. How long we keep them depends on the plan the pool's host is on. On a paid plan we keep them for as long as the plan is active. On the free plan we keep them for a limited period after the pool is created. The current window is shown in the app and on our pricing page.

Nothing is deleted without warning. When a free pool's window is close to ending we email the host. When it ends, the full-size originals stop being served and the pool is locked: the photos are still there, everyone can still see them, and nothing has been deleted. A grace period then follows, during which we email the host again. Throughout the lock and the grace period, anyone can still save the photos they took, and upgrading the pool restores every original, including ones that had already locked.

Only when the grace period ends without an upgrade are the files deleted. That deletion cannot be undone. Removal from our storage is immediate; copies held in our content delivery network's caches fall out within 24 hours, so a link someone already had may keep working for a short time after that point.

Messages. A pool's chat is kept for as long as the pool exists, including after the pool closes, when it becomes read-only. Deleting a pool deletes its chat. A message deleted for everyone has its text erased immediately. Deleting your account removes your messages, notes, reactions, likes and blocks. When someone reports a message, the report keeps a copy of that message and who wrote it, so it can still be reviewed if the message is later deleted; we keep reports for as long as we need them to handle the report and meet our legal obligations.

Account data. We keep it for as long as your account is active. If you delete your account, we remove your personal data and uploaded photos within 30 days, except where a copy is still needed to complete an order already placed, or where longer retention is required by law. Indian tax rules, for instance, require us to keep records of completed purchases.

Our Account deletion page sets out exactly what is erased, what is kept, and how to make the request.

Where your data is stored

Our servers and database are hosted in India. Photos are stored on Cloudflare's object storage and served through its global network, which means copies may be cached in other countries to load quickly wherever you are. Our processors are bound by contract to protect your data and use it only for the services they provide us.

Your rights & choices

Depending on where you live, you may have the right to access, correct, export, or delete your personal information, and to withdraw consent you've given. You can manage most of this directly in the app under Me, or by contacting us below. You can also turn off notifications at any time from your device settings.

To delete your account and photos, see Account deletion.

If you're in India and aren't satisfied with how we've handled a request, you can raise a grievance with our Grievance Officer, Vijayakumar Sakthivel (Director, Ondravan Private Limited), at privacy@fondays.com. We acknowledge grievances within 24 hours and resolve them within 15 days.

Security

Your photos and account data are encrypted in transit and encrypted at rest: in transit over TLS between your device, our servers and our storage, and at rest with AES-256 encryption on the object storage that holds every photo and file.

Access to our production systems is limited to the small number of people who need it to run the service. Our admin tools require two-factor authentication, and access to your data is logged. Our staff have no tool for browsing the photos or chats in your pools: they only see a photo or a message when someone reports it, and that view is logged too. Our database backups are encrypted as well.

No system is perfectly secure, and we continually review our practices as Fondays grows. If you find a vulnerability, write to support@fondays.com.

Children's privacy

Fondays is for people aged 18 and over, and we don't knowingly collect personal information from anyone younger. If you believe an account belongs to someone under 18, or a child has been added to a pool, contact us and we'll remove it.

Changes to this policy

We'll update this page when our practices change, and update the "Last updated" date above. If a change is material, we'll let you know in the app before it takes effect.

Contact us

Questions about this policy or your data? Email us at privacy@fondays.com, or write to Ondravan Private Limited, 19/35 Mount Road, Little Mount, Saidapet, Chennai 600 015, Tamil Nadu, India.