生物识别 / 人脸查找器通知
通知:为方便起见,此消息以您选择的语言显示。所有 InstaGet 法律文件仅以英文发布,英文版本为具有法律约束力的正式版本。
如提供任何非英语译文,仅为方便起见,不会修改英文条款。
需要帮助或无障碍格式?请使用“联系我们”页面。
Effective Date: 2026-09-04
Last Updated: 2026-09-04
Policy ID: BIOMETRIC_FACEFINDER-InstaGet-v1.0
Current availability: Face Finder is disabled on the public production Service. It may be enabled only in an approved local runtime for a manually provisioned Premium Pro user. It is not available through the public website, public API, or MCP.
1) What the restricted local feature does
In an approved local deployment, Face Finder lets you provide a photo of yourself and compare it against an access-controlled reference photo index to surface possible matches. It may process the self-photo, reference photos, detected face boxes, thumbnails, face embeddings/templates, similarity scores, match results, and audit/security logs. No face embedding or match result is part of the public people catalog.
2) Legal status and consent
Some jurisdictions treat face geometry, face templates, faceprints, or embeddings as biometric identifiers, biometric information, or special-category data. Before any local deployment is enabled, the operator must separately assess the jurisdiction, purpose, provenance and permitted use of the reference index, lawful basis, any special-category condition, required notice or express consent, retention, deletion, and access controls.
Accepting the Terms, acknowledging this notice, or choosing cookies is not biometric consent. A user request, self-search restriction, upload representation, user ID, or description of storage as hosting or cloud storage does not make the reference index lawful or grant copyright, privacy, publicity, or biometric rights.
3) Restricted local feature rules
- Upload only a photo of yourself. Do not upload or search for another person, even if you believe that person gave permission.
- No stalking, harassment, doxxing, intimidation, exploitation, or attempts to identify private people in unsafe contexts.
- No law-enforcement, immigration, intelligence, private-investigator, employment, credit, housing, insurance, education, benefits, eligibility, surveillance, or other third-party identification use.
- No building competing face datasets, scraping face results, reverse engineering embeddings, re-identifying suppressed people, or using results for AI/model training.
- No images of minors, intimate images, surveillance images, or images obtained unlawfully or deceptively.
4) Retention and deletion
The public production Service does not accept Face Finder uploads. Any approved local deployment must adopt a documented, purpose-specific schedule before processing begins and cover uploaded originals, reference images, crops, thumbnails, embeddings, results, logs, derivatives, backups, and deletion propagation. Approved deletion may leave only a minimal suppression marker when justified and permitted.
5) Safeguards
An approved local deployment must use access controls, manual provisioning, rate limits, abuse detection, audit logging, region policies, deletion/suppression workflows, and human review. Face photos, thumbnails, embeddings, and match results must not be published in galleries or returned by the public website, public API, or MCP.
6) Accuracy and no guarantees
Face matches are probabilistic and can be inaccurate. A match does not prove identity, relationship, wrongdoing, location, intent, or current status. Users must not rely on Face Finder for consequential decisions or public accusations.
7) Requests and objections
You may request access, deletion, suppression, restriction, objection, or appeal through the Privacy Request & Opt-Out Center. For People Search context, see the People Data Notice and Privacy Policy.