Plain-English Summary
We collect only what we need: your phone number to log you in, your profile info to show on your page, and — if you're a vendor — the city you serve so clients can find you. We don't sell your data. You can delete your account anytime, right from the app. Payments are processed securely by Razorpay. Some optional features (photo moderation, greeting-message suggestions, the business assistant) are powered by Google's Gemini AI.
1. Who We Are
App Name: Leoran
Package Name: in.bookmyevent
Developer / Data Controller: MR Sagar Photography
Contact Email: sagarstudios07@gmail.com
Leoran is a marketplace app that connects event vendors — photographers, photo/video editors and album labs — with clients booking their services for weddings and events. This Privacy Policy explains how we collect, use, share and protect information when you use our Android application, whether you use it as a vendor (Photographer, Editor, Album Lab) or as a Client booking services.
2. Information We Collect
2.1 Information You Provide
| Data | Why We Collect It | Required? |
|---|---|---|
| Phone Number | Used for OTP-based login via Firebase Authentication. We do not store raw OTPs. | Yes — needed to log in |
| Name & Display Name | Shown on your profile to clients and collaborators in the app. | Yes — for your profile |
| Profile Photo | Displayed on your public photographer/editor/lab profile within the app. | Optional |
| Business Name & City | Shown on your public profile and quotation documents. | Optional |
| Identity Documents (Aadhar, PAN, GST) |
Collected only if you choose to apply for profile verification. Stored securely and used only to verify your identity. | Optional — verification only |
| City / Service Area | A city you type into your profile, shown to help clients find vendors near them. We do not use GPS or collect your precise location — this is a manually entered text field, not device location tracking. | Optional |
| Booking & Event Details (Clients) |
Event date, type, venue, budget and requirements you provide when requesting a quotation or booking a vendor. Shared with the vendor you're booking so they can quote and deliver the service. | Yes — to request a booking |
| Reviews & Ratings | Feedback you leave about a vendor after a booking, or that a vendor's other clients leave about them. Visible to other users of the app. | Optional |
| Payment Information | We do not store card or bank details. Payments are processed by Razorpay. We receive only the payment confirmation ID. Booking payments between Clients and vendors are settled directly via UPI — Leoran does not collect, hold or process this money (see Section 6.3 of our Terms of Service). | When you make a payment |
2.2 Information Collected Automatically
- Firebase Token (FCM): Used to send push notifications for booking updates, job requests and payment confirmations. Stored in our Firestore database linked to your user account.
We do not currently use crash reporting or app-analytics tools. If we add one in the future, we will update this Privacy Policy first.
2.3 Photos You Choose to Process with AI
If you use an AI-powered feature — automatic content moderation on uploads, the greeting-message generator, AI image generation, or the business assistant chat (Photographer/Editor/Album Lab only) — the relevant text or image is sent to Google's Gemini API to generate a result. We do not use your content to train any AI model. Google's own handling of content sent to the Gemini API is governed by Google's Gemini API Additional Terms of Service (linked in Section 4) — please review it for details on how Google processes this data.
3. How We Use Your Information
- To create and manage your account via Firebase Authentication
- To display your profile to other users within the app
- To send push notifications for booking requests, job updates and payment alerts
- To process payments and record transaction references through Razorpay
- To verify your identity if you apply for a verified profile badge
- To connect Clients with vendors — showing vendor profiles, portfolios and pricing, and passing booking/event details to the vendor a Client books
- To power optional AI features you choose to use (photo moderation on upload, greeting-message suggestions, AI image generation, and the business assistant chat)
- To improve app performance, fix bugs and develop new features
- To respond to your support requests
We do not use your data for advertising, profiling or sell it to any third party.
4. Third-Party Services
We use the following third-party services to operate the app. Each has its own privacy policy:
Firebase (Google)
Authentication, Firestore database, file storage (photos/videos), push notifications (FCM), and server-side logic (Cloud Functions). All data is stored in Google Cloud servers.
Firebase Privacy Policy →Razorpay
Payment processing for subscriptions, verification fees, and Boost/AI-Culling purchases. Card and bank details are handled directly by Razorpay — we never see or store them.
Razorpay Privacy Policy →Google Play Services
Required for Android device functionality and in-app update checks.
Google Privacy Policy →Google Gemini API
Powers optional AI features: automatic photo-upload moderation, greeting-message suggestions, AI image generation, and the business assistant chat. Only used when you use these features.
Gemini API Terms →5. Data Storage & Security
All user data is stored in Google Firebase Firestore, a cloud database with industry-standard encryption at rest and in transit (TLS/SSL). Access to your data is restricted by Firestore Security Rules — you can only read and write your own data.
Profile verification documents are stored in Firebase Storage with restricted access controls. Only authorized administrators can view verification submissions.
We implement access controls, authentication guards and Firestore rules to prevent unauthorized access. However, no system is 100% secure and we cannot guarantee absolute security.
6. Data Retention
- Account data: Retained while your account is active. Deleted within 30 days of account deletion request.
- Transaction references: Retained for 7 years as required by Indian tax and accounting laws.
- Verification documents: Retained until your verification is approved or rejected, then deleted within 60 days.
- Push notification tokens: Updated automatically and removed when you uninstall the app or revoke notification permissions.
- Pro subscription cancellation: If you cancel your Pro plan, your portfolio is hidden from clients (not deleted) for 90 days in case you resubscribe. If you don't resubscribe within that window, photos beyond the free plan's limit are permanently deleted.
7. Your Rights
You have the right to:
- Access the personal data we hold about you
- Correct inaccurate data by editing your profile in the app
- Delete your account and all associated data — in the app, by email, or by WhatsApp (see 7a below)
- Withdraw consent for optional permissions (notifications, media access) via Android Settings, or clear your city/service-area field in the app
- Export your data — contact us and we will provide a copy within 30 days
To exercise any of these rights, contact us at sagarstudios07@gmail.com.
7a. Deleting Your Account & Data
You can request deletion of your Leoran account and all associated personal data at any time:
- In the app (fastest): Go to Settings → Delete Account, confirm, and your account is deactivated immediately.
- By email: Send a deletion request to sagarstudios07@gmail.com from any address, including your registered phone number in the message so we can verify the account.
- By WhatsApp: Message us at +91 81477 33342 from your registered number with the words "Delete my account".
What happens next: we verify the request, deactivate the account immediately, and permanently delete your profile, portfolio, chats, and personal data within 30 days. Transaction references are retained for 7 years where Indian tax law requires it (see Data Retention above). Deletion is irreversible.
Deleting specific data without deleting your account: you can also request deletion of individual data (for example your chat history, portfolio uploads, posts, or location details) while keeping your Leoran account active — use the same email or WhatsApp channels above and tell us which data to remove. Such requests are completed within 30 days, subject to the same legal retention exceptions.
7c. Reporting Content & Blocking Users
Photos, portfolios, reviews and messages on Leoran are user-generated content, visible to other users of the app. If you come across content that's abusive, illegal, or otherwise violates our Terms of Service:
- Block instantly: use the Block option on any user's profile to immediately stop seeing their content and prevent them from contacting you. This takes effect right away and doesn't require our involvement.
- Report for removal: email sagarstudios07@gmail.com or WhatsApp +91 81477 33342 with a description or screenshot of the content. We review reports as promptly as possible, and aim to act on reports of illegal or clearly abusive content within a few business days.
Uploaded photos also pass through automatic AI moderation at the time of upload to catch policy-violating content before it's published (see Section 2.3).
8. Children's Privacy
Leoran is intended for professional use by individuals 18 years of age and older. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided us with personal information, we will delete it immediately. If you believe a child has provided us data, please contact us at sagarstudios07@gmail.com.
9. Permissions We Request
| Permission | Why It's Needed |
|---|---|
| INTERNET | Required for all app functionality — connecting to Firebase and Razorpay |
| POST_NOTIFICATIONS | To send you push notifications for booking and job updates |
| READ_MEDIA_IMAGES / READ_MEDIA_VIDEO / READ_EXTERNAL_STORAGE | To let you upload portfolio photos/videos, profile photos, and verification documents from your device |
| RECEIVE_SMS / READ_SMS | Used only to auto-fill the one-time login code (OTP) sent by SMS during phone-number sign-in, so you don't have to type it manually. We do not read or store any other SMS on your device. |
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Effective Date" at the top of this page. For significant changes, we will notify you via a push notification or an in-app banner. Continued use of the app after any changes constitutes your acceptance of the updated policy.
11. Grievance Officer
In accordance with the Digital Personal Data Protection Act, 2023 (DPDP Act), we have designated a Grievance Officer to address any concerns regarding the processing of your personal data.
Grievance Officer: Sagar, Founder — sagarstudios07@gmail.com
Response Time: Within 30 days as required under the DPDP Act
12. Contact Us
If you have any questions, concerns or requests regarding this Privacy Policy or how we handle your data, please contact us:
Developer: MR Sagar Photography
App: Leoran (in.bookmyevent)
Email: sagarstudios07@gmail.com
Response Time: Within 48 hours on business days