clientgallery.io

Guide

A Private Client Gallery for Boudoir Photographers

A boudoir client is trusting you with images she may never show anyone. This guide covers what a gallery can do to honour that, the settings to choose for each delivery, and the limits no software can remove.

Updated September 2026

Privacy in boudoir delivery is not one feature. It is a set of small decisions, most of them yours, that together decide who could ever see the photographs. The gallery handles some of those decisions. Your naming, your contract and your conversation with the client handle the rest.

This page is written for studios that deliver intimate portrait work and want to be precise about it. It says what clientgallery.io does, what it does not do, and where a promise would be dishonest from any platform. If a claim is not on this page, do not repeat it to a client on our behalf.

What privacy means to a boudoir client

Ask a boudoir client what worries her and the answers are practical. She does not want the gallery to be findable. She does not want a partner, a colleague or a child to open it on a shared tablet. She does not want an email subject or a page title to announce what the session was. She does not want to be sold prints next to her own photographs. The table maps each worry to what the gallery actually does.

The client's concernWhat the gallery does
Someone else opening itAn optional password per gallery. Without it, the gallery does not open.
Platform names on the pageNo platform branding on client-facing pages. Your studio has its own subdomain for gallery links.
Being sold toNo print store and no commission, so no product prompts sit beside the images.
An account to createNone. The client opens a link and, if you set one, types the password.
Her face being searchableFace Search is off by default and is enabled per gallery only if you switch it on.
A partial share going too farA section share link is view-only: no ZIP, no full-resolution download, no picks, no face search, and no link back to the full gallery.

What the password gates

Before the password is entered, the client sees a simple gate page. It shows your studio name, the gallery title and one password field. No photographs appear on it.

Behind the password, on the server, sit the gallery page itself, the download of all photos as one ZIP, the full-resolution download, the face search index and gallery comments. A section share link does not get around it. A section resolves to its parent gallery, and the parent's password applies.

Two details matter for boudoir specifically. First, the gate page shows the gallery title before anyone types anything, so the title must be discreet (more on that below). Second, once the password is entered, that browser stays unlocked for 30 days. If your client opens the gallery on a shared family tablet, the next person to pick up that tablet may not see a password prompt. Tell her to open it on her own device.

The full walkthrough of setting a password, including from Lightroom, is in the password guide.

What no software can do

Be plain with your client about this, because it protects both of you.

A password is a gate, not a guarantee of intent. Whoever knows the password can open the gallery. If the client shares the link and the password, the gallery opens for that person. No platform can tell a trusted partner from anyone else holding the same two things.

Nothing stops a screenshot. Any image shown on a screen can be captured by that screen's owner. Disabling downloads removes a convenient button. It does not make an image uncapturable, and a studio that implies otherwise is making a promise it cannot keep.

Nothing stops forwarding. A link can be pasted anywhere. The answer on link sharing goes through this in detail, and the private sharing answer covers what a password stops across the wider category.

The honest framing for a client is this: the gallery keeps the photographs away from anyone who has not been given access, and what happens after access is given is a matter of trust and agreement, not technology.

Delivery choices, gallery by gallery

These are the settings and habits that do the most work. Decide them once as a studio policy, then apply them to every boudoir gallery.

Title the gallery so it reveals nothing. The title appears on the gate page and in the client's browser. Use a first name and a month, or a neutral session code. Avoid the word boudoir, avoid surnames, and avoid anything that would read badly on a lock screen. Apply the same rule to the subject line of your delivery email.

Always set a password, and send it separately. Put the link in one message and the password in another, ideally through a different channel the client chose. A single forwarded email then carries only half of what is needed.

Decide on downloads deliberately. You can switch downloads off for a gallery. For a proofing round, that is often the right call: the client chooses, you retouch, and nothing leaves until the finals are ready. For final delivery, the client usually expects her files. Full-resolution delivery is a ZIP that stays live for 3 days per handoff and can be re-uploaded when needed, so the high-resolution set is not left sitting online indefinitely.

Leave Face Search off. It is off by default, and a gallery for one client gains nothing from it. It exists for weddings and events where many guests look for themselves. The face recognition privacy answer explains how it works for studios that do use it.

Keep the extras off unless you need them. Per-photo comments and colour labels are opt-in per gallery and off by default. Picks can be switched off entirely for a delivery-only gallery. When a client does send picks, she is asked for a name and an email address, so tell her in advance what to expect.

Think before creating a section link. Sections have no password of their own. Anyone you send a section link to must also be given the gallery password. If a client wants to share a small, tasteful selection with someone, a separate gallery with its own password keeps that person away from the full set more cleanly.

Agree a removal date. Hosted galleries do not expire and there is no expiry date to set. A gallery stays live until you delete it. For boudoir work, agree with the client how long the gallery stays up, write it down, and put the deletion in your own calendar.

Portfolio use, consent and your contract

Whether a boudoir image ever appears in your portfolio is decided by your agreement with the client, not by your gallery software. That responsibility is yours. This section is practical guidance, not legal advice, and the rules that apply to you depend on where you work. Have a lawyer who knows your jurisdiction review your contract.

Points worth covering explicitly in writing:

  • Portfolio use as a separate choice, off unless the client opts in, never bundled into the session fee.
  • Scope: website, social media, printed samples, advertising or competitions, each named rather than implied.
  • Degree of identification: full images, cropped images with no face, or detail shots only.
  • Whether her name, location or any caption may ever accompany an image.
  • How she withdraws consent later, and what you will do with material already published.
  • How long her gallery stays online and how long you keep her files after delivery.

Record her choice next to the booking, and check it before any image leaves your studio. A client who sees you take this seriously is more likely to say yes when the request is modest, and more likely to refer friends either way.

When a boudoir studio should use something else

This product is a proofing and delivery gallery. Some boudoir studios need more than that, and they should choose accordingly.

If you sell products inside the gallery. Some boudoir studios sell albums, prints and wall art after the reveal. There is no print store here. If in-gallery sales are central to your business, a platform built around a store will serve you better.

If you want a client login portal. There are no client accounts. Access is a link plus an optional password. A studio that wants each client to sign in with her own credentials needs a different product.

If you need a team account. There is one login per account and no per-assistant roles. A studio with several staff members sharing client work should weigh that.

If none of those apply, and the job is to show a client her photographs discreetly, collect her choices and hand over the finals under your own name, the white-label gallery guide shows what the client sees.

Sources

This page makes no competitor claims and quotes no external figures. Every product statement was checked against the running clientgallery.io product on 15 September 2026.

  • clientgallery.io gallery password: per-gallery and optional; gate page shows studio name, gallery title and one field; gates the gallery page, all-photos ZIP, full-resolution download, face search index and comments; section links resolve to the parent password; unlock lasts 30 days in that browser. Checked 15 September 2026, https://clientgallery.io/
  • clientgallery.io client-facing pages: no platform branding, studio subdomain, no print store, no commission, no client accounts. Checked 15 September 2026, https://clientgallery.io/
  • clientgallery.io delivery settings: downloads toggle per gallery; full-resolution ZIP live 3 days per handoff and re-uploadable; Face Search off by default and enabled per gallery; comments and colour labels opt-in, off by default; picks can be switched off; section share links view-only; no gallery expiry setting. Checked 15 September 2026, https://clientgallery.io/

Frequently asked

Is a password-protected gallery private enough for boudoir photos?

It keeps the gallery closed to anyone who has not been given the password, which is the right baseline. It cannot stop someone who has the link and the password from opening it, and nothing can stop a screenshot. Pair it with discreet titles, a separate channel for the password and a clear agreement with the client.

Will the gallery page show the name of the gallery platform?

No. Client-facing pages carry no platform branding, and your studio has its own subdomain for gallery links. The password page shows your studio name and the gallery title, so choose a title that reveals nothing about the session.

Should I let boudoir clients download their photos?

That is your call per gallery, because downloads can be switched off. Many studios keep them off during proofing and turn them on for final delivery. The full-resolution ZIP stays live for 3 days per handoff and can be re-uploaded, so the high-resolution set is not left online indefinitely.

Is Face Search turned on for my galleries?

Not unless you switch it on. It is off by default and enabled one gallery at a time. A single-client boudoir gallery has no need for it.

Can my client share only some of the photos with a partner?

A section share link is view-only, with no downloads, no picks and no link back to the full gallery. It has no password of its own, though, so the recipient also needs the gallery password. A separate gallery with its own password is the cleaner option for a small selection.

Does the gallery handle model releases or portfolio consent?

No. Consent to portfolio use belongs in your contract and your booking records, and it is the photographer's responsibility. Have a lawyer familiar with your jurisdiction review the wording.

Do boudoir clients need to create an account?

No. There are no client accounts. The client opens the link and types the password if you set one. Studios that want a client login portal should use a different product.

Your client galleries, under your name

Unlimited galleries, your branding, one-click Pixieset import, and a Lightroom plugin, all on a flat 10 $/month with everything included. Your first gallery is free.

Start with one free gallery

Related guides

Private Client Gallery for Boudoir Photographers (2026)