ISO100
Legal

Privacy Policy

ISO100 keeps public portfolio analytics lightweight and uses security data for service protection, abuse prevention, and support.

Last updated August 23, 2026

Operator

ISO100 is operated by Alias Labs Pty Ltd. Alias Labs Pty Ltd is responsible for the ISO100 account, portfolio, support, security, abuse, and public analytics data described in this policy. Alias Labs' company website is https://alias.io.

Information we collect

  • Account information, such as email address, profile details, and authentication records.
  • Portfolio content, including photographs, display names, galleries, captions, alt text, links, rights notices, and publish metadata.
  • AI-assisted photo metadata and internal curation signals, including generated alt text suggestions, broad subject categories, visible artistic and technical qualities, snapshot likelihood, assessment confidence, whether a person may be under 18 or their age is unclear, model and prompt versions, and your edits or choices about suggestions.
  • Discovery and featuring choices, including whether a portfolio may appear in an ISO100 discovery feature, whether individual photos are excluded, and whether ISO100 may feature public portfolios or galleries.
  • Moderation and publishing records, including upload status, automated moderation results, sensitive-content flags, manual markings, report history, enforcement decisions, and restricted operational notes.
  • Technical records, such as IP address, user agent, request path, timestamps, rate-limit decisions, and security events.
  • Support messages and operational correspondence you send to ISO100.

Automated photo analysis

When you select a photo in Studio, ISO100 may send a smaller JPEG preview to Amazon Web Services for automated analysis. The analysis drafts alt text and broad categories. It is separate from the automated moderation check performed on the accepted original upload.

The same analysis may create internal curation signals about visible artistic intent, technical quality, snapshot likelihood, assessment confidence, and whether a person may be under 18 or their age is unclear. ISO100 staff may use these signals to shortlist public work for possible featuring.

AI suggestions and curation signals can be incomplete or wrong. You can edit or ignore metadata suggestions, and a late alt text suggestion does not replace text you entered or become public automatically. Curation scores do not decide whether a photo can be uploaded, published, discovered, pass moderation, or be featured. Staff review any shortlisted work before featuring it. ISO100 stores analysis results and technical provenance with the photo so the service can avoid repeating the same work.

Discovery choices

New portfolios have discovery enabled by default. You can turn it off at any time and exclude individual photos while it is enabled. The setting prepares eligible public photos for future discovery features and does not mean a public discovery feature is currently available.

When discovery is enabled, ISO100 may use processed public display photos and public metadata, including titles, captions, alt text, and broad categories, to index, categorize, rank, and display photos in ISO100-owned discovery features. A photo must still be public, approved by moderation, and otherwise eligible before it can appear in discovery.

ISO100 may create and keep broad photo categories even when discovery is off. The categories support portfolio management and allow a later opt-in without analyzing every photo again. Turning discovery off stops discovery eligibility but does not delete stored analysis results or categories.

Featuring choices

Featuring is separate from discovery. If you enable Allow ISO100 to feature this portfolio, ISO100 may use eligible public portfolio or gallery content and public metadata in ISO100 marketing, email, social posts, App Store previews, and product showcase pages. Turning the setting off does not unpublish your portfolio or change the public license or rights notice attached to a photo.

After you turn featuring off, ISO100 will stop new featuring and remove the portfolio from active showcase surfaces within a reasonable operational period. Already-sent emails and previously published posts may remain. Backups and cached copies are removed under normal retention and expiry practices.

Public portfolio analytics

Public portfolio pages may send no-cookie analytics events such as portfolio views and gallery views. These events are used for aggregate reporting and service health. ISO100 does not use public portfolio analytics to build a cross-site visitor identity graph.

Marketing and Studio measurement

ISO100 uses Google Analytics and linked Google Ads measurement on the ISO100 Marketing site and in Studio. These services may use first-party cookies or similar browser storage and receive page, campaign, device, and conversion measurement needed to understand advertising performance. ISO100 does not send account email addresses or photograph contents as analytics event properties.

You can control or block Marketing-site and Studio storage and scripts through your browser settings or content-blocking tools.

Support chat

ISO100 uses Crisp for live support chat. Marketing chat loads with the Marketing site. In Studio, support chat loads only when you choose to open it and may receive the signed-in email address so support can identify the account. Email support remains available without opening Studio chat.

IP addresses and abuse controls

ISO100 may process IP addresses and user agents for security, abuse prevention, bot filtering, rate limiting, troubleshooting, and legal compliance. Raw IP access is restricted and should be retained only for the short operational period needed for those purposes, normally 30 to 90 days unless a longer retention period is required for an active abuse, security, support, or legal matter.

How we use information

  • Operate, publish, render, secure, and support ISO100 portfolios.
  • Process photos into public display variants while keeping originals private by default.
  • Create and improve optional AI-assisted alt text drafts and broad photo categories.
  • Create internal curation signals to help staff review eligible public work for possible featuring.
  • Build and operate ISO100 discovery features when discovery is enabled.
  • Feature eligible public portfolios and galleries when the showcase setting allows it.
  • Review, classify, restrict, blur, remove, or preserve content when needed to enforce the Terms, Content Policy, copyright process, abuse controls, or legal obligations.
  • Respond to privacy, copyright, abuse, support, and security requests.
  • Maintain service logs, audit records, reliability metrics, and aggregate analytics.

Service providers

ISO100 uses infrastructure and operational service providers to host the site, store data, authenticate users, process photos, monitor reliability, and deliver support. These providers may process data only as needed to provide their services to ISO100.

Reports, safety, and legal preservation

When ISO100 receives a report or detects a serious safety, exploitation, copyright, security, or legal concern, we may restrict public access while reviewing the issue, keep records needed to investigate or document the matter, and escalate to appropriate parties where required or appropriate.

Suspected child sexual exploitation, non-consensual intimate imagery, threats, or other illegal content may require longer retention and restricted handling even after an account is deleted.

Your choices

You can update portfolio content, unpublish public pages, turn discovery and featuring on or off, exclude individual photos from discovery, control Marketing-site and Studio storage through your browser, request access or deletion, and contact ISO100 about privacy concerns. Some records may be retained where needed for security, abuse prevention, legal compliance, or transaction integrity.

Contact

Privacy requests: privacy@iso100.app

Legal notices: legal@iso100.app

Abuse reports: abuse@iso100.app