Photo Delivery for Private and Invite-Only Events
TIME&SPACE · Organiser's Playbook
Some events should never appear in a search result. Delivering photographs from them means separating two things most galleries treat as one: who can reach the page, and who can be found on it.
Photo Delivery for Private and Invite-Only Events
In short: A private event needs a gallery that is unlisted rather than merely quiet. Unlisted means the page exists at a link you control, stays out of search results, and never appears in any public discovery surface. That is a setting, not a habit, and it has to be chosen before the first photograph is uploaded.
A board offsite. A private members' club. A house party. A closed-door investor day. A wedding where the couple want nothing about the day to be findable by name. These events are not unusual, and the photographs from them matter just as much as any other. What changes is the failure mode: for a public festival the worst outcome is that nobody sees the gallery, and for a private event the worst outcome is that the wrong person does.
Most photo delivery is designed for the first case. Pages are indexed, galleries are linked from an organiser profile, event names are made searchable on purpose. All of that is correct for an event that wants an audience, and quietly wrong for one that does not.
Private is not the same as password-protected
There are two separate questions, and treating them as one is where private events usually go wrong.
The first is discovery: can someone who was not invited find that this event happened at all? An indexed page answers yes even if every photograph behind it is locked. The event name, the date, and often the venue are all readable in a search result, and once a page is indexed the record of it can outlive the page itself.
The second is access: can someone who reaches the page see the photographs? This is the part organisers instinctively think about, and it is the easier half to solve.
An unlisted gallery answers the first question properly. The page is live at a link you hold, it carries no search indexing, it is excluded from public listings, and it does not appear on any profile or discovery feed. Nobody arrives at it by browsing. They arrive because you sent them the link, which is what an invite-only event means in practice.
Decide it before the upload, not after
This is the one point worth being firm about. Making an event unlisted after photographs are already public is a cleanup, not a setting. A page can be de-indexed, but a cached copy, a screenshot, or a link already forwarded is not something any platform can retract.
Choose the visibility of the event when you create it, at the same moment you decide the date and the guest count. It costs nothing at that point and cannot be fully undone later.
The same rule applies to the photographer. Their brief should say the event is private and what that means for their own portfolio, which is not automatically covered by the delivery setting. The photographer brief guide covers where that clause belongs. A photographer who posts three frames to their feed has not broken your gallery settings, because your gallery settings never applied to them.
What still works normally
Privacy does not mean a worse experience for the people who were actually there.
Guests still scan a code and find their own photographs by face. Face matching is scoped to the event being searched, so an unlisted event behaves exactly like a public one for the guest holding the link: they see their own photographs and nobody else's. Consent is collected the same way, and the same GDPR obligations apply, unchanged. A private event is not a lighter legal footing, and in a corporate or medical setting it is usually a heavier one.
Downloads, watermarking, and retention windows all work as normal. What is switched off is the part that would advertise the event to people who were not in the room.
The practical checklist
- Set the event to unlisted at creation. Not after the first upload, not after someone notices the page in a search result.
- Control the link like an invitation, because it is one. Send it to the guest list directly. Printed codes at the venue are fine, since everyone reading them is already inside. Where you place those codes matters more when there is no public page to fall back on.
- Write the privacy clause into the photographer's contract. Cover portfolio use, social posting, and client sharing. Delivery settings bind your platform, not their Instagram.
- Agree what happens to a photograph someone wants pulled. Private guests ask more often, and they expect it done quickly. Have the takedown route decided before the day.
- Set the retention window deliberately. Some private events should not have a gallery living for a year. How long photos stay online is a decision, not a default to inherit.
- Tell guests it is private. People behave differently when they know the photographs are not going anywhere public, and the ones who would rather not be photographed deserve to hear it from you rather than assume the worst.
A private event does not need less photography. It needs the delivery to be as closed as the guest list was, decided once, at the start, by someone who knew it mattered.
Founder, TIME&SPACE