生物辨識/人臉搜尋通知

通知:為方便您閱讀,此訊息會以您選擇的語言顯示。所有 InstaGet 法律文件僅以英文發布,且英文版本為具控制力及法律約束力的版本。

如提供任何非英文翻譯,僅為方便起見,且不會修改英文條款。

需要協助或無障礙格式嗎?請使用「聯絡我們」頁面。

Effective Date: 2026-09-04

Last Updated: 2026-09-04

Policy ID: BIOMETRIC_FACEFINDER-InstaGet-v1.0

Current availability: Face Finder is disabled on the public production Service. It may be enabled only in an approved local runtime for a manually provisioned Premium Pro user. It is not available through the public website, public API, or MCP.

1) What the restricted local feature does

In an approved local deployment, Face Finder lets you provide a photo of yourself and compare it against an access-controlled reference photo index to surface possible matches. It may process the self-photo, reference photos, detected face boxes, thumbnails, face embeddings/templates, similarity scores, match results, and audit/security logs. No face embedding or match result is part of the public people catalog.

2) Legal status and consent

Some jurisdictions treat face geometry, face templates, faceprints, or embeddings as biometric identifiers, biometric information, or special-category data. Before any local deployment is enabled, the operator must separately assess the jurisdiction, purpose, provenance and permitted use of the reference index, lawful basis, any special-category condition, required notice or express consent, retention, deletion, and access controls.

Accepting the Terms, acknowledging this notice, or choosing cookies is not biometric consent. A user request, self-search restriction, upload representation, user ID, or description of storage as hosting or cloud storage does not make the reference index lawful or grant copyright, privacy, publicity, or biometric rights.

3) Restricted local feature rules

  • Upload only a photo of yourself. Do not upload or search for another person, even if you believe that person gave permission.
  • No stalking, harassment, doxxing, intimidation, exploitation, or attempts to identify private people in unsafe contexts.
  • No law-enforcement, immigration, intelligence, private-investigator, employment, credit, housing, insurance, education, benefits, eligibility, surveillance, or other third-party identification use.
  • No building competing face datasets, scraping face results, reverse engineering embeddings, re-identifying suppressed people, or using results for AI/model training.
  • No images of minors, intimate images, surveillance images, or images obtained unlawfully or deceptively.

4) Retention and deletion

The public production Service does not accept Face Finder uploads. Any approved local deployment must adopt a documented, purpose-specific schedule before processing begins and cover uploaded originals, reference images, crops, thumbnails, embeddings, results, logs, derivatives, backups, and deletion propagation. Approved deletion may leave only a minimal suppression marker when justified and permitted.

5) Safeguards

An approved local deployment must use access controls, manual provisioning, rate limits, abuse detection, audit logging, region policies, deletion/suppression workflows, and human review. Face photos, thumbnails, embeddings, and match results must not be published in galleries or returned by the public website, public API, or MCP.

6) Accuracy and no guarantees

Face matches are probabilistic and can be inaccurate. A match does not prove identity, relationship, wrongdoing, location, intent, or current status. Users must not rely on Face Finder for consequential decisions or public accusations.

7) Requests and objections

You may request access, deletion, suppression, restriction, objection, or appeal through the Privacy Request & Opt-Out Center. For People Search context, see the People Data Notice and Privacy Policy.