While it is our policy to use in-house (or “on premises”) solutions wherever possible in our platform, if a suitable in-house option is not available to us, we use a contracted service provider/sub-processor. Wherever personal information is involved, contracted service provider agreements are in place to ensure security and recoverability of that information.
Data Storage: We use a sub-processor to host our platform within Australia, United States, United Kingdom and Canada only to provide our cloud infrastructure. Customers get to choose their hosting location.
Functionalities: We use cloud infrastructure services in 4 regions selected by the customer (Australia, United States, United Kingdom or Canada) for object recognition (e.g. cup, ball, grass) and facial recognition templating (i.e., deployment of a mathematical face algorithm that enables pixevety to identify faces and apply photo consent). These functions are only available in Enterprise Galleries. The use of an Application Programming Interface (API) ensures we do not permanently share or store images/media when using these functionalities. For example, a facial recognition API creates an encrypted algorithmic template of a person’s features (as a random alphanumeric string of code) thus anonymizing facial data. Images themselves are only used for initial processing within pixevety, and an API template cannot be reverse-engineered back into a photo. The use of APIs ensures the data held by our object recognition and facial recognition provider is useless to anyone except pixevety. NOTE: Both object and facial recognition can be turned OFF in an Enterprise Gallery and these functions are not available in Personal Galleries.
