The Right to Privacy in Photos and Video: What Portrait Rights Law Actually Protects [2026]
The right to privacy protects people from being photographed and posted online without consent. Here's how portrait rights and privacy protection actually work, and how to stay compliant with face blur before you publish.

Most people assume that if they're standing in a public place, anyone can photograph or film them and post the result online without asking. That assumption is wrong in more places than you'd think, and getting it wrong can mean a deletion demand, a damages claim, or worse. The right to privacy isn't just a courtesy — in many jurisdictions it's an enforceable personal right that exists independently of where the photo was taken.
This guide breaks down what the right to privacy actually covers, how it shows up in real portrait-rights law, and the practical step — face blur — that lets you publish photos and video without putting bystanders' personal privacy at risk.
What the Right to Privacy Actually Means for Photos and Video
Privacy protection in the context of photography usually splits into two related ideas. The first is whether someone is identifiable in the image — can a viewer recognize their face, their license plate, or another unique feature? The second is whether that identifiable image was captured and used with the person's consent.
A case explaining Korea's approach frames this clearly: the "Right to Privacy" concerns whether the individual photographed is discernible, while a related "Right of Publicity" governs whether their image is used in an authorized way — most relevant for public figures whose likeness carries commercial value. For the average person, it's the first category — discernibility — that creates legal exposure, because it applies even to photos taken in ordinary public spaces.
This is the part creators, dashcam owners, and everyday photographers tend to miss. Being in public doesn't automatically mean someone consented to appear in your content. If their face is clearly visible and identifiable, publishing that image can still cross a legal line.
Portrait Rights Law: How the Right to Privacy Gets Enforced
Some countries don't have a single, standalone "privacy law" — instead, courts build protection through personal-rights doctrine over years of rulings. South Korea is a good example. Portrait rights, known locally as "초상권," aren't written into one dedicated statute, but Korean courts have consistently treated a person's face as a form of personal privacy that can't be captured or published without consent.
Coverage of this doctrine points out that accidentally catching someone in the background of a photo isn't automatically illegal — but intentionally photographing and keeping a clearly identifiable face can still count as a violation, even when the photo was taken in a public place. Posting that face on social media raises the stakes further: the subject can demand deletion, and if the photographer refuses, they may face a claim for damages. If the content generates revenue, publicity rights can add another layer of liability on top.
Other jurisdictions formalize the same underlying idea through statute instead of case law. A personal information protection act — the kind of legislation found across the EU and South Korea, and a growing list of other countries — treats a person's face, voice, and license plate as regulated personal data, with its own rules for consent, storage, and deletion requests. For the EU framework, our GDPR video content and license plate blurring compliance guide breaks down the six lawful bases for publishing identifiable footage, and for Korea's own statute, our South Korea PIPA video privacy compliance guide covers face blurring, license plate anonymization, and PIPC enforcement risk in detail. Whether the protection comes from a court precedent or a named act, the practical result for anyone publishing photos or video is the same: identifiable people need either consent or privacy protection applied before the content goes live.
When Does a Photo Cross the Line?
The clearest way to think about this is a simple test: could a viewer identify this specific person from the image? A few patterns show up consistently across guidance on this topic:
Generally lower risk:
- Wide shots where no one's face is recognizable
- Crowd photos showing only the backs of people's heads
- Building exteriors, street scenes, food, or product photography
Even a "lower risk" shot can turn into a higher-risk one the moment someone recognizable steps into frame. Rather than reshooting or deleting the content, use BGBlur to blur out identities in seconds and keep the rest of the shot intact.
Generally higher risk:
- One or two people with clearly visible faces
- Photos or video of children or students
- Footage of identifiable employees or staff inside a business
- Indoor shots where customers' faces are visible
A recurring point across privacy guidance is that the location doesn't neutralize the risk. Courts have found that identifiable faces used for commercial or intentional purposes can still violate portrait rights even when the footage came from a public street — so "I filmed it in public" isn't the blanket defense many creators assume it is.
AI and Privacy: Why This Problem Is Getting Bigger, Not Smaller
AI and privacy concerns compound this issue in two directions at once. On one hand, AI-powered facial recognition and identity-matching tools mean an identifiable face in a photo can now be linked back to a real name, workplace, or social profile far faster than a person browsing manually could ever manage. A single clear photo can be enough to trace someone's identity across platforms.
On the other hand, the same AI that makes identification faster also makes privacy protection far more practical than it used to be. Manually blurring a moving face frame-by-frame in a video used to take hours of editing work. AI-based detection now finds every face in a frame, tracks it as the person moves through the shot, and applies a consistent blur automatically — turning a privacy safeguard that used to be a professional editing task into something any creator can do before publishing.
How to Apply Privacy Protection Before You Publish
If your photos or video include identifiable people — bystanders, employees, dashcam footage with faces or plates, drone footage over public spaces — the safest and most practical fix is face blur applied before the content goes live, not after someone complains.
Step 1: Upload Your Photo or Video
Go to BGBlur and upload the file — photos or video, no manual masking required.
Step 2: Let AI Detect and Blur Every Face
BGBlur's face blur tool automatically detects every identifiable face and tracks it across the frame, so a bystander who walks through a video shot stays covered for the entire clip, not just the moment they were first spotted. For static images, the same detection works through face blur in photos.
Step 3: Choose Blur or Full Redaction
Depending on your use case, you can soften a face with a blur or fully obscure it with a solid box using redact faces — useful when compliance requirements call for redaction rather than a reversible blur, an approach also covered under face anonymization for teams handling footage at volume.
Step 4: Don't Forget License Plates
Vehicle license plates carry the same identifiability problem as faces and are covered under the same personal information protection act frameworks. BGBlur's license plate blur and redact license plate tools handle this automatically — particularly relevant for anyone publishing dashcam footage, where plates and pedestrian faces both appear constantly.
Step 5: Export and Publish
Once faces and plates are blurred or redacted, export and publish with the bystander-identifiability problem already handled — not something you're hoping no one notices.
Manual Editing vs. AI Blur Privacy Tools
| Factor | Manual Frame-by-Frame Editing | BGBlur (AI Privacy Protection) |
|---|---|---|
| Time per video | Hours of manual masking | Minutes, fully automated |
| Consistency | Prone to missed frames as people move | Motion-tracked across the whole clip |
| Covers faces and plates | Requires separate manual work for each | Built-in tools for both |
| Choice of blur or redaction | Manual only | One click between blur and redact |
| Who needs editing skill | You | No editing skill required |
The Bottom Line
The right to privacy in photos and video isn't a fringe legal theory — it's an active, enforceable protection in portrait-rights jurisdictions like Korea and in statutory frameworks like GDPR and other personal information protection acts around the world. Being in public doesn't erase someone's personal privacy, and AI-driven identification is only making an identifiable face easier to trace back to a real person.
The fix isn't hoping no one in your footage notices or complains. It's applying privacy protection — face blur, redaction, or license plate blur — before the content ever goes live. Blur faces and plates with BGBlur before you publish, and the identifiability problem is solved before it becomes a legal one.
Frequently Asked Questions
What is the right to privacy in photography? It's the legal protection that governs whether an identifiable person — someone whose face, or another unique feature, can be recognized in a photo or video — can be photographed and have that image published without their consent. It applies even to photos taken in public places if the person is clearly identifiable.
Is it illegal to photograph someone in public without asking? It depends on the jurisdiction, but simply being in public doesn't automatically mean consent to publish. In portrait-rights jurisdictions, intentionally capturing and keeping a clearly identifiable face — and especially posting it — can still be treated as a privacy violation, even from a public street.
What is a personal information protection act? It's legislation that regulates how personal data — including a person's face, voice, and license plate — can be collected, stored, used, and deleted. GDPR in the EU and PIPA in South Korea are two well-known examples, and both require safeguards like blurring or redaction when identifiable personal data is published without consent.
How does AI affect privacy in photos and video? AI cuts both ways. Facial recognition and identity-matching tools make it faster to trace an identifiable face back to a real person, raising the stakes for publishing unblurred footage. At the same time, AI-based face blur tools make privacy protection dramatically faster to apply, automatically detecting and tracking every face in a photo or video.
What's the difference between blurring a face and redacting it? Blurring softens the face so it's no longer clearly identifiable while keeping the underlying image visible. Redaction fully covers the face with a solid box, which some compliance standards specifically require instead of a blur. BGBlur supports both through its face blur and redact face tools.
Do license plates need the same privacy protection as faces? Yes. License plates are identifiable personal data in the same way faces are, and many personal information protection frameworks treat them identically. BGBlur's license plate blur and redact license plate tools apply the same automatic detection to vehicle plates as to faces.