Legal

Privacy Policy

Last Updated August 19, 2026

Root & Return LLC (“Root & Return,” “we,” “us,” or “our”) operates Rooted Sessions, a client experience platform designed to help photographers manage their businesses and provide a streamlined experience for their clients (“Rooted Sessions” or the “Service”). This Privacy Policy explains how we collect, use, disclose, and protect information when you use Rooted Sessions.

1. Information We Collect

Depending on how you use Rooted Sessions, we may collect the following types of information.

Account Information. When you create an account, we may collect information such as your name, business name, email address, phone number, password, and other information necessary to create and maintain your account.

Client Information. Photographers using Rooted Sessions may enter information about their own clients into the platform. This may include names, email addresses, phone numbers, addresses, event details, questionnaires, contracts, invoices, session information, timelines, preferences, and other information the photographer chooses to collect.

Payment Information. Payments processed through Rooted Sessions may be handled by third-party payment providers, including Stripe. Rooted Sessions does not directly store complete credit card or debit card numbers. Payment providers may collect and process payment information according to their own privacy policies and terms.

Content You Provide. We may collect information, files, documents, images, questionnaires, forms, notes, and other content that you or your clients upload, submit, or otherwise provide through the Service.

Usage and Technical Information. We may automatically collect certain information about how the Service is accessed and used, including IP address, browser type, device information, operating system, pages or features accessed, and general usage information.

2. How We Use Information

We use information collected through Rooted Sessions to:

  • Provide, operate, and maintain the Service
  • Create and manage user accounts
  • Facilitate bookings, contracts, questionnaires, invoices, payments, and client communication
  • Provide client portals and other features requested by photographers
  • Send transactional communications, such as account notifications and booking updates
  • Improve the functionality, security, and performance of the Service
  • Troubleshoot technical issues
  • Detect, prevent, and address fraud, abuse, or security incidents
  • Comply with legal obligations
  • Communicate with users about the Service and important account-related matters

We do not sell personal information. We also do not use client information submitted by photographers for our own independent marketing purposes.

3. Photographer-Controlled Client Information

Rooted Sessions is designed to allow photographers and businesses to manage their own client relationships.

If a photographer enters information about a client into Rooted Sessions, the photographer generally determines what information is collected and how that information is used. In these circumstances, Rooted Sessions acts as a service provider or data processor on behalf of the photographer or business.

Questions about why a photographer collected your information, how they use it, or requests concerning information controlled by a photographer should generally be directed to that photographer first.

We may process this information only as necessary to provide the Service, fulfill our contractual obligations, maintain security, comply with the law, or as otherwise permitted by applicable law.

4. How We Share Information

We may share information with trusted third-party service providers that help us operate Rooted Sessions. These providers may assist with services such as:

  • Payment processing
  • Cloud hosting and data storage
  • Email and communications
  • Authentication and account management
  • Analytics and error monitoring
  • Customer support
  • Security and fraud prevention

These providers are permitted to access information only as reasonably necessary to provide services to us and are expected to handle information in accordance with applicable privacy and security requirements.

We may also disclose information when required by law, legal process, court order, or governmental request, or when reasonably necessary to protect the rights, safety, security, or property of Root & Return, our users, or others.

If Root & Return is involved in a merger, acquisition, financing, reorganization, sale of assets, or similar business transaction, information may be transferred as part of that transaction, subject to applicable law.

5. Stripe and Payments

Rooted Sessions may use Stripe to facilitate payments. When a payment is made through Rooted Sessions, payment information may be collected and processed by Stripe. Stripe's handling of personal information is governed by Stripe's own privacy practices and policies. Rooted Sessions does not have access to or store full payment card numbers.

6. Cookies and Similar Technologies

Rooted Sessions may use cookies, local storage, pixels, and similar technologies to keep users signed in, remember preferences, maintain security, understand how the Service is used, and improve functionality.

You may be able to control cookies through your browser settings. Disabling certain cookies may affect the functionality of the Service.

7. Data Retention

We retain personal information for as long as reasonably necessary to provide the Service, maintain user accounts, fulfill contractual obligations, resolve disputes, comply with legal obligations, enforce our agreements, and protect our legitimate business interests.

Photographers may be able to delete or modify information within their accounts depending on the features available through the Service.

When information is no longer reasonably necessary for these purposes, we may delete, anonymize, or otherwise securely dispose of it, subject to applicable legal and operational requirements.

8. Data Security

We take reasonable administrative, technical, and organizational measures designed to protect personal information from unauthorized access, disclosure, alteration, or destruction.

However, no method of transmitting or storing information electronically is completely secure. We cannot guarantee absolute security of information transmitted to or stored through the Service.

9. Your Privacy Rights

Depending on where you live, you may have certain rights regarding your personal information, including the right to:

  • Request access to personal information we maintain about you
  • Request correction of inaccurate information
  • Request deletion of certain personal information
  • Request information about how your personal information is collected and used
  • Object to or restrict certain processing
  • Request a copy of certain personal information in a portable format
  • Withdraw consent where processing is based on consent

Some rights may be subject to exceptions or limitations under applicable law.

If you are a client of a photographer using Rooted Sessions, certain information may be controlled by that photographer. In those cases, we may direct your request to the applicable photographer or ask you to contact them directly.

To exercise privacy rights that apply to information controlled by Root & Return, please contact us using the information below.

10. Children's Privacy

Rooted Sessions is not intended for children under the age of 13, and we do not knowingly collect personal information from children under 13.

If you believe that a child under 13 has provided personal information through the Service, please contact us so that we can take appropriate steps to remove the information.

11. International Users

Rooted Sessions may be accessed by users located in different countries. If you access the Service from outside the United States, your information may be transferred to, stored, or processed in the United States or other locations where Root & Return or its service providers operate.

By using the Service, you acknowledge that your information may be processed in these locations, subject to applicable privacy laws and protections.

12. Third-Party Links and Services

Rooted Sessions may contain links to third-party websites, services, or integrations. We are not responsible for the privacy practices, content, or security of third-party services.

We encourage you to review the privacy policies of any third-party services you choose to use.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes to Rooted Sessions, our practices, or applicable legal requirements.

When we make material changes, we may provide notice through the Service, by email, or by updating the “Last Updated” date at the top of this Privacy Policy.

Your continued use of Rooted Sessions after an updated Privacy Policy becomes effective constitutes acceptance of the revised policy to the extent permitted by law.

14. Contact Us

If you have questions about this Privacy Policy or our privacy practices, please contact:

Root & Return LLC
Rooted Sessions
Email: rooted.sessions.crm@gmail.com

Questions about any of this? Email rooted.sessions.crm@gmail.com or head back to the homepage.