Privacy

Privacy notice

This explains what Cerita Moment stores about couples and their guests, who can see it, and how it is removed. Sections marked "Owner review needed" require the platform owner's own business and legal details before launch.

What we store

For couples: the email address used to sign in, your names, wedding details (date, times, venue, map link, schedule, welcome message), your chosen theme and wedding link, and your privacy settings.

For guests: the name and phone number the couple entered, which events they were invited to, how many seats they were allocated, their RSVP and attendee details, any private notes the couple wrote about them, and the photos, videos and captions they upload.

Technical records needed to keep accounts safe, such as one-time verification codes (stored only as hashes), session records and timestamps.

Who can see what

A couple can only ever see their own wedding: their guest list, phone numbers, notes, uploads and settings. Couples cannot see any other couple's data.

Guests never see the guest list, other guests' phone numbers, or the couple's private notes. They see their own invitation, their own RSVP, and — where the couple allows it — the shared memory album and their own table.

Platform administrators can see the minimum needed to support couples and handle abuse reports: wedding titles and status, account emails, enquiries and reported content. Administrators do not browse private guest photos routinely.

Phone numbers and verification codes

Phone numbers are used to identify guests and to send one-time verification codes for the private memory space. They are not used for marketing.

Verification codes are stored only as hashes, expire shortly after they are created, and are limited in both attempts and how often new codes can be requested.

Photos and videos

Uploads are held in private storage and are never publicly readable. They are shown through short-lived links to the couple and to verified guests with permission to view.

The couple can hide or permanently delete any contribution. A contributor can delete their own upload.

Wedding and memory pages are excluded from search engine indexing.

Retention and deletion

Wedding data is kept while the couple's account is active. Archiving a wedding closes guest access but preserves the album for the couple.

Couples can export their guest, RSVP and seating data and download their memories at full resolution, and can request deletion of a wedding and all of its uploads.

Verification codes and guest sessions are short-lived and are removed after they expire.

Service providers

We use third-party infrastructure to host the application, database and private media storage, and an SMS provider to deliver verification codes. These providers process data only to deliver the service.

Owner review needed: the specific provider names, their locations, and the legal entity details for this notice must be confirmed by the platform owner before launch.

Contact

For privacy questions, data exports or deletion requests, use the contact form on this site.

Owner review needed: a contact email address, postal address and the applicable Brunei data protection references should be added here before launch.