Picture day event management — scheduling, roster, check-in, retakes
The event management engine schedules picture day sessions with photographer assignments, locations, and timing. Roster-driven check-in tracks which students have arrived and been photographed; unmatched students are flagged at the end of the session, not discovered weeks later when the parent calls. Retake management runs a second round against the same roster, with original-session records preserved. The school admin dashboard shows real-time attendance and fulfillment status without calling the photographer. Picture day event management, roster-driven check-in, and retake management are built and production-ready.
Event management built · production-ready
Two-layer consent — depiction consent per student, marketing opt-in per family
The consent substrate captures and enforces two distinct consent layers in the same intake flow. The first layer is depiction consent: the guardian’s decision about whether their child’s photo may appear in the school yearbook, parent store, or other shared surfaces. The second layer is marketing opt-in: the family’s decision about whether to receive picture day order reminders and proof-ready notifications. A student whose depiction consent is absent is excluded from every shared surface — not by a manual filter the photographer applies after the fact, but by the engine. Consent is opt-in, per-event, granular, and revocable. Revocation is immediate: a photo becomes invisible the moment the guardian withdraws consent. This picture-day flow organises photos by QR or barcode matched to the roster at capture — it runs no biometric processing and no face-match to sort or identify a student. The consent substrate, the depiction layer, the marketing opt-in layer, and the revocation engine are built and production-ready.
Consent substrate built · production-ready
Parent proof gallery — private per-family proofs, no social sharing
Each family sees only their own child’s photos, inside a private per-family account, before placing any order. There are no class galleries, no school social feeds, no “best of” shared albums. A family that has not opted in to marketing does not receive a proof-gallery notification — which means they also do not receive a surprise email about their child’s photos. Proof galleries stay live for the duration of the order window, then expire. The proof gallery engine and the per-family access model are built and production-ready.
Proof gallery built · production-ready
Print & digital fulfillment — branded parent store, per-item pricing, on-demand
The branded parent store presents each print product with a transparent, per-item price and a plain breakdown of where each dollar goes. A family sees exactly what they are paying for and how the order settles: the print/lab cost and card processing come off first, then the photographer’s and the school’s fundraising legs are set shares of what remains, and the platform keeps the residual on the same order — a named leg in the split, not a separate surcharge added on top. Fulfillment routes through the PhotoLabProvider seam to on-demand commercial print production. The store substrate, the per-item pricing engine, the PhotoLabProvider seam, and the PSPA/SPOA export are built and production-ready. The charge rail that moves money — the part that accepts a family’s payment and routes it to the photographer and the school fund — is honest-off: present in the platform, not enabled for live transactions today.
Store substrate built · charge rail honest-off
Photographer workflow — check-in, upload pipeline, earnings ledger
The photographer arrives with the roster on a device: each student scanned by QR code or barcode, matched to their roster record at capture. The proof upload pipeline batches photos from the shoot directly into the family proof galleries. Red-flag detection surfaces students whose photos did not match — so the photographer resolves mismatches the same day, before leaving the building. The earnings ledger tracks each photographer’s gross proceeds, the lab and card costs, the school’s fundraising leg and the platform’s residual leg, and the photographer’s net payout, per event, in real time — no markup games, no opaque deductions. The photographer workflow tools (check-in, QR/barcode matching, upload pipeline, red-flag detection, PSPA/SPOA export) and the earnings ledger substrate are built and production-ready. The charge rail that pays the photographer is honest-off: the ledger records it; the live payout is honest-off pending charge-rail enablement.
Workflow tools built · live payout honest-off