1. Information Table 9 collects
Host account information
When a host creates an account, Table 9 collects their email address, organizer name, event name, event date, authentication details, account settings, coupon code and discount information when applicable, plan and payment status, and acceptance of the current Terms and Privacy Policy. Stripe—not Table 9—collects and processes card details. Table 9 retains Stripe transaction references, amounts, customer identifiers, and payment status needed to provide the purchase and keep financial records.
Event media and contribution details
Table 9 stores photos and videos uploaded through an event’s unique guest link. A guest may optionally provide a name. We also store file details such as filename, type, size, upload status, timestamps, and the event account receiving the upload.
Technical information
The service and its infrastructure may process basic request, device, browser, security, email-delivery, and diagnostic information needed to deliver the site, prevent abuse, investigate errors, send service messages, and keep accounts secure. Authentication uses necessary session storage and cookies.
Public website analytics
Table 9 uses Google Analytics on its public marketing pages, signup page, and sample host site to understand visits and improve the service. Google Analytics may process the page visited, referral source, general browser and device information, interaction and usage signals, cookies or similar identifiers, and approximate location derived from an IP address. Table 9 does not intentionally send account passwords, private event media, support-form contents, or guest-upload contents to Google Analytics. Analytics is not loaded on real host galleries, guest-upload pages, login, private dashboards, or administrative pages.
Support request information
When someone submits a support ticket, Table 9 stores the name they provide, email address, support topic, subject, message, optional event or guest link, ticket status, timestamps, and private administrative notes used to investigate and resolve the request. A Table 9 administrator may permanently delete a resolved ticket when it is no longer needed for support or legal purposes.
Optional news and promotional email
Hosts may separately opt in to occasional Table 9 product news, event ideas, and promotions. This choice is optional and is not required to purchase or use the service. For these messages, Table 9 and Resend process the recipient address, campaign, delivery, delay, bounce, complaint, unsubscribe, and—when enabled for the sending domain—open and link-click events. Every promotional message includes an unsubscribe link. Unsubscribing, a hard bounce, or a spam complaint suppresses future promotional campaigns without stopping necessary purchase, account, security, support, or requested service email.
2. How information is used
Information is used to provide private host dashboards and public event websites, create unique guest links, moderator links, and QR codes, receive and process uploads, generate optimized images, video playback copies, and thumbnails, operate automatic guest story feeds and host-initiated venue slideshows, apply coupon and plan rules, maintain purchase records, respond to and track support requests, enforce service limits, prevent abuse, and maintain the security and reliability of the service.
3. Who can see event media
Completed guest uploads appear in the private dashboard for the host who owns the event account. For uploads submitted under the current policy, completed, non-hidden photos and videos also appear automatically and without prior review on the event’s unlisted QR guest page and public event website while those features are enabled. Completed, non-hidden photos may likewise appear on the host-initiated venue slideshow; videos are not shown in that slideshow. The host or a Table 9 administrator can hide an individual item from the event website without deleting it from the private dashboard. Guest-feed and slideshow visibility can be controlled separately. A person holding the host’s private moderator link can review recent guest-facing photos, pause or resume the venue slideshow, and hide photos from guest-facing surfaces, but does not receive access to the host’s full dashboard. Historical uploads retain the public-visibility choice that applied when they were submitted unless the host or a Table 9 administrator changes it. A banner photo uploaded by the host is intentionally displayed at the top of their public event website until they replace or remove it.
4. Service providers
Table 9 uses Netlify for website hosting, account authentication, application functions, and structured account data. Cloudflare R2 stores photos and temporary video source files privately. Active media uses Standard storage; media belonging to a gallery that has entered a private recovery period may be moved to Infrequent Access storage until recovery ends. Cloudflare Stream creates protected playback versions, thumbnails, and downloadable MP4s for supported videos; after the downloadable version is confirmed ready, the temporary R2 video source is removed. Resend delivers account, support, retention, operational, and opted-in promotional email and reports relevant delivery and engagement events. Google provides analytics for the limited public pages described above. These providers process information to operate and improve the service on Table 9’s behalf and under their own applicable security and privacy terms.
5. Retention and deletion
Table 9 does not automatically delete media from a complimentary legacy event solely because time has passed. Those accounts remain on a non-expiring hold unless Table 9 gives advance notice and explicitly changes that account’s policy. Paid events receive gallery hosting through the disclosed date, advance download reminders, and then a private 30-day recovery period before permanent media deletion. Hosts can delete individual files from their dashboard at any time.
When permanent media deletion applies, Table 9 removes the event’s photos, optimized image versions, thumbnails, temporary exports, Cloudflare Stream video copies, guest contribution details, and public media access. Minimal account, billing, security, support, and deletion-audit records may remain when reasonably necessary. Provider backups and logs may take additional time to age out under the providers’ normal schedules.
Some limited records may be retained when reasonably necessary for security, fraud prevention, legal compliance, dispute resolution, or documenting a deletion request.
6. Guest choices and takedown requests
Guests should upload only files they created or have permission to share. A person shown in a file, a copyright owner, or another authorized requester may report a privacy or rights concern through the support and takedown process. Include the event website or guest link and enough information to identify the file.
7. Security
Table 9 uses private object storage, short-lived upload and download permissions, account authorization checks, signed video playback, file-size and file-type controls, and service monitoring. No online service can guarantee absolute security, so suspected account or media exposure should be reported promptly.
8. Children
Table 9 host accounts are intended for adults. The service is not designed for children to create accounts. Event guests should consider the privacy of minors before uploading or publishing media that includes them.
9. Policy changes
This policy may be updated as the service develops. Material changes affecting existing accounts will be communicated before they take effect when reasonably possible. The effective date at the top identifies the current version.
10. Contact
Questions, privacy requests, and deletion requests can be submitted through Table 9 Support. The form creates a tracked request and provides a reference number.