Memmie
How it worksFamily demoFamily eventsPublic timelinesPartnersPricingGuidesFAQ
Log inStart free

Privacy Policy

Your memories are not our product.

Effective 19 August 2026. This Policy explains how Memmie LLC handles personal information, family media and account activity.

Who controls your dataScopeWhat we collectSourcesHow and why we use itPhotos and metadataWho receives dataInternational transfersRetentionSecurityYour rightsChildrenContact

1. Who controls your information

Memmie LLC, P.O. Box 113, Wyoming, USA, is the owner and operator of Memmie and the controller of personal information processed for the service. The owner and founder is Chris Oestergaard. Contact us at [email protected].

When one member uploads information about another person, the uploading member decides what to contribute and share. Memmie still processes that information under this Policy to provide and secure the service.

2. Scope

This Policy applies to memmie.net, member accounts, Moments, timelines, uploads, invitations, support, safety reports and related communications. It does not govern websites, payment services or applications operated independently by others.

3. Information we collect

Account and profile information

  • Name, email address, password hash, account identifier, role, plan, settings and account status.
  • Names, descriptions, dates, relationships and places entered for people, Moments and timelines.

Photos, videos and stories

  • Original files, thumbnails, previews, captions, stories and filenames you upload.
  • Embedded and derived metadata such as capture date, time, location coordinates, dimensions, duration, format, size, device information and checksum.
  • Moment assignments, person tags, timeline links, sharing permissions and contribution ownership.

Usage, device and security information

  • IP address, timestamps, browser and device characteristics, requested pages, session and login events, upload status, error and audit logs.
  • Security indicators, rate-limit events, file-validation results and activity relevant to fraud, malware or abuse prevention.

Commercial and communication information

  • Plan, subscription, storage allowance, transaction reference, billing status and tax-related records. Full card credentials are intended to be handled by the payment provider, not Memmie.
  • Support messages, privacy requests, abuse reports, moderation decisions, appeals and related evidence.
  • Marketing preferences and communications if you subscribe to them.

4. Where information comes from

We receive information directly from you; from other members who invite, tag or include you in family Content; automatically from your browser, device and uploaded files; from security and infrastructure providers; and from payment or communication providers when those services are activated.

If you provide information about someone else, you should tell them where appropriate and ensure you have a lawful and respectful reason to do so.

5. How we use information and our legal bases

  • Provide the contract: create and secure accounts; store and display media; build Moments and timelines; process invitations; provide search, exports, support and requested deletion; and administer subscriptions.
  • Legitimate interests: prevent fraud, malware and abuse; diagnose faults; protect members; maintain audit records; improve usability and service reliability; and establish or defend legal claims. We balance these interests against affected people’s rights.
  • Legal obligations: respond to valid legal requests, preserve required records, process lawful safety notices and meet accounting, consumer and data-protection duties.
  • Consent: optional analytics, non-essential cookies, direct marketing and any future sensitive feature where consent is the appropriate basis. Consent can be withdrawn without affecting earlier lawful processing.

Where applicable law permits another legal basis, we will use and document it appropriately. We do not make decisions producing legal or similarly significant effects solely through automated processing.

6. Family media, metadata and automated suggestions

Memmie may read available file dates, times and location metadata to suggest Moments and organisation. Suggestions can be reviewed and changed by the member. We currently use manual person tagging and do not perform facial recognition or create biometric face templates.

Private media is not sold, used for behavioural advertising or used to train general-purpose AI models. Authorised personnel may access the minimum necessary Content when responding to a member’s support request, investigating a report, addressing a security incident or complying with law. Such access should be role-restricted and logged where appropriate.

7. When and with whom information is shared

  • People you choose: recipients can access only the Moments and functions allowed by your sharing choices. They may see the uploader, relevant tags, dates, places and other context in that Moment.
  • Service providers: hosting, database, private object storage, media delivery and processing, email, payments, security, logging, backups and customer support providers process information under instructions and contractual safeguards.
  • Professional advisers: lawyers, accountants, auditors and insurers where reasonably necessary and subject to confidentiality duties.
  • Legal and safety recipients: regulators, courts, law enforcement, designated reporting organisations or affected parties when disclosure is legally required or reasonably necessary to protect rights, safety and the service.
  • Business transaction: a buyer, investor or successor may receive information during a financing, merger, reorganisation or sale, subject to confidentiality and applicable law.

Memmie does not sell personal information. We do not share personal information for cross-context behavioural advertising.

8. International data transfers

Memmie LLC is established in the United States and service providers may process information in the United States and other countries. These countries may have different data-protection laws from your country.

Where GDPR, UK GDPR or similar law requires a transfer mechanism, we use an available lawful safeguard such as adequacy regulations, approved standard contractual clauses and supplementary technical or organisational measures. Contact [email protected] for information about the safeguard relevant to your data.

9. How long we keep information

  • Active account and Content: while the account remains active and as needed to provide requested sharing.
  • Inactive Free or unpaid Family account: access and uploads may be paused; deletion follows the grace period communicated to the member.
  • Deleted Content and accounts: removed from active use after processing the request; derivatives, delivery caches and backups may take up to 90 days to expire unless a shorter period is technically available.
  • Security, support and moderation records: generally up to 24 months after closure of the matter, or longer where necessary for recurring abuse, legal claims, safeguarding or a legal hold.
  • Billing and transaction records: retained for the period required by tax, accounting and anti-fraud law.
  • Consent and acceptance records: retained while relevant and for the applicable limitation period.

We may keep information longer when required by law, necessary to protect a person, subject to a preservation request or needed to establish, exercise or defend a legal claim. We delete or anonymise it when the purpose ends.

10. Security

Measures are intended to include encrypted transport, private object storage, short-lived media links, password hashing, access controls, file-type and size validation, rate limits, audit events, backups and separation of administrative access. No online system can guarantee absolute security. Keep your password secure, maintain independent copies of irreplaceable files and report suspected compromise to [email protected].

Where required by law, we will notify affected people and authorities of a qualifying personal-data breach.

11. Your privacy choices and rights

Depending on where you live, you may have the right to:

  • know whether and how we process your information and receive a copy;
  • correct inaccurate information;
  • delete information or your account;
  • restrict or object to certain processing;
  • receive information you provided in a portable format;
  • withdraw consent;
  • opt out of marketing, sale, sharing or targeted advertising where applicable; and
  • appeal a refusal and complain to a data-protection or consumer authority.

Use Settings or email [email protected]. Describe the request and the account or Content involved. We may verify identity and authority, including for an authorised agent. We will respond within the period required by applicable law and explain any lawful exception. We will not discriminate against you for exercising a privacy right.

If Content about you was uploaded by another member, identify it as precisely as possible. We will consider your rights together with the uploader’s rights, family context, freedom of expression, safety and applicable law.

12. Children and family photographs

Only adults may create Memmie accounts. The service is not directed to children as account holders, but family libraries may contain photos, videos and information about children. Children receive special privacy protection.

Adults must consider the child’s dignity, safety, age and views; use appropriate privacy settings; avoid unnecessary sensitive information; and obtain permission required by law. Do not upload sexualised, exploitative or dangerous material involving a child. Suspected child sexual exploitation should be reported through the in-product tool or [email protected] without downloading or redistributing it.

If we learn that a child created an account or that information was handled unlawfully, we may restrict the account and delete the information after appropriate verification and safeguarding review.

13. Cookies and communications

Necessary cookies and browser storage support sign-in, security and requested functions. Optional analytics remain off until consent where required. See the Cookie Policy. Service messages about security, billing, privacy and account operation are not marketing. Marketing messages include an opt-out method.

14. Changes to this Policy

We may update this Policy as the product, providers or law changes. The effective date identifies the current version. We will provide prominent in-product or email notice before material changes where required. Earlier versions may be requested from Privacy Support.

15. Contact

Memmie LLC
Attn: Chris Oestergaard, Owner
P.O. Box 113
Wyoming, USA

Privacy requests: [email protected]
Security: [email protected]
Safety reports: [email protected]
General support: [email protected]

Memmie

Keep the moments that matter.

How it worksFamily demoFamily eventsFamily photo timelineFamily album onlineOrganise family photosShare family photosStore photos onlinePublic timelinesTimeline PartnersPricingQuick startGuidesStoriesFAQAboutSupportPrivacyTermsCookies
© 2026 Memmie