Your privacy is paramount. Zero data retention, zero cloud uploads, and 100% local processing.
August 2026 (Last Updated: September 2026)
This Privacy Policy explains how Photo Organizer AI handles user photos, identity recognition, metadata, and local system information.
Photo Organizer AI is architected from the ground up as a pure offline desktop application.
Specifically:
If you choose to link Google Photos, Microsoft OneDrive, or Contacts:
All AI/ML processing (such as face recognition, face detection, ArcFace feature extraction, clustering, semantic multimodal embeddings, and scene classification) operates locally or offline on the user's device via Windows DirectML.
We explicitly affirm that Google user data is never transmitted externally or stored on remote servers, and is never used to train generalized models for third party or any external systems.
Photo Organizer AI provides optional cloud integration with Google services to allow users to sign in, synchronize their contacts to recognize friends and family in photos, and synchronize app preferences across their personal devices. We clearly state below exactly what raw and aggregated/anonymized Google user data is accessed by the application:
When you explicitly choose to connect your Google account, Photo Organizer AI requests scoped access via Google OAuth 2.0. The application accesses only the following specific items of raw Google user data:
email, profile scopes):
When you sign in with Google, the app accesses your raw Google user account identifier (id), primary email address (email), full display name (name), given name / first name (given_name), family name / last name (family_name), and profile avatar picture URL (picture), as well as the image bytes of your profile avatar downloaded directly to display your user badge.
https://www.googleapis.com/auth/contacts.readonly scope via Google People API):
When you initiate contact synchronization, the app accesses raw contact identifiers (resourceName), contact display names, first and last names, email addresses, telephone/mobile numbers, job titles, organization/company names, and contact profile photo URLs, as well as the full-resolution contact photo image bytes downloaded directly for facial matching. This raw data is accessed from your personal Google Contacts (people/me/connections), personal user profile (people/me), and other frequent contacts (otherContacts).
https://www.googleapis.com/auth/drive.appdata scope via Google Drive API v3):
The app requests restricted access strictly sandboxed to the application's private, hidden Application Data folder (spaces=appDataFolder). It accesses raw content solely for the application's own configuration file (settings.json), which contains local UI preferences, category rules, and AI sensitivity thresholds. Crucially, the app does NOT access, list, search, view, read, modify, or download any personal files, documents, photos, videos, or folders stored in your personal Google Drive or Google Photos library.
Zero Aggregated or Anonymized Data Accessed: Photo Organizer AI does NOT access, collect, query, calculate, receive, or compile any aggregated, anonymized, de-identified, or pseudonymized Google user data. All data access is strictly limited to the direct, raw user data points explicitly listed above for the active user's local session. No demographic aggregates, population statistics, or anonymized usage datasets are accessed from Google or any intermediary.
| Google Service & Scope | Exactly What Raw Data is Accessed | Aggregated / Anonymized Data Accessed | How the Data is Used by the App |
|---|---|---|---|
Google Account / Sign-Inemailprofile |
Google Account ID, primary email address, full display name, given name, family name, profile picture URL, and profile picture avatar image bytes. | None. No aggregated or anonymized account data is accessed or collected. | Used strictly on-device to authenticate your identity, display your account avatar and name in the application UI, and maintain your local active session. |
Google Contactscontacts.readonly(Google People API) |
Contact resource IDs, display names, given/family names, email addresses, phone numbers, job titles, companies, contact photo URLs, and downloaded contact photo image bytes. | None. No aggregated or anonymized contact data is accessed or collected. | Loaded temporarily into local memory to match contact photos against unlabelled face clusters in your local photos using local DirectML ArcFace AI. Confirmed matches auto-label the person cluster with the contact's name, email, and phone number in your local SQLite database. |
Google Drive AppDatadrive.appdata(Google Drive API v3) |
Restricted sandboxed content of the app's own configuration file (settings.json) inside the hidden appDataFolder. No access to personal Drive files. |
None. No aggregated or anonymized Drive data is accessed or collected. | Used solely to sync your personal app preferences, custom tagging rules, and AI sensitivity thresholds across your own Windows devices running Photo Organizer AI. |
Photo Organizer AI enforces strict purpose limitation, on-device local execution, and zero data monetization. Below is clearly how raw and aggregated/anonymized Google user data is used by the application:
photos.db). This empowers you to search, filter, and organize photos by person without manual tagging. Existing manually labelled identities are never overwritten. Raw contact data is processed in memory and never transmitted to developer servers or third parties.
settings.json file located in Google Drive's isolated appDataFolder is read and written solely to keep your personal application configurations (such as custom album rules, categorization preferences, and AI sensitivity thresholds) synchronized across your own Windows computers.
No Use of Aggregated or Anonymized Data: Because Photo Organizer AI does NOT access, compile, generate, or receive any aggregated or anonymized Google user data, no aggregated or anonymized Google user data is used for any purpose whatsoever. The application does not perform telemetry analytics, user behavior analysis, trend aggregation, demographic profiling, market research, or advertising using Google user data.
Photo Organizer AI's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
The use of raw or derived user data received from Google Workspace APIs / Google API Services User Data Policy, are for Limited Use requirements only:
If you have questions regarding this Privacy Policy, you can contact the developer via the official Microsoft Store listing page.