Every photo your camera takes carries a hidden passenger: a block of metadata called EXIF, recording the camera, lens, exposure settings, the date and time, and — if location services were on — the GPS coordinates of where the shot was taken. For a photographer this data is useful, even valuable. But there is a version of it that should make you careful: the wedding or family photos you deliver may contain the GPS coordinates of the client’s home, riding along in every copy they share. EXIF is a tool and a liability at once, and knowing which is which is a small piece of professionalism that protects your clients.
This covers what EXIF actually contains, the one privacy rule that matters most, when showing camera settings helps you, and how to handle it in practice. It is a focused piece within the photographer workflows cluster.
What EXIF actually contains
EXIF (and its cousins IPTC and XMP) is metadata embedded in the image file itself. The useful parts for a photographer are the technical ones: camera body, lens, focal length, aperture, shutter speed, ISO, and the timestamp. The sensitive part is location — if your camera or phone recorded GPS, the file knows precisely where the photo was taken, to within a few metres. There can also be device identifiers, the software used to edit, and embedded thumbnails. Most of this is invisible to a casual viewer, which is exactly why it is easy to forget it is there.
The one rule: strip GPS before delivery and before publishing
If you take one thing from this article, it is this. The GPS coordinates in a photo taken at a client’s home — a newborn session, a family shoot, a boudoir set — pinpoint where that family lives. When you deliver those files, or publish them in a portfolio, the coordinates travel with every copy unless you remove them. A photo shared on a forum, sent to a relative, or posted by the client themselves can quietly broadcast their home address to anyone who knows how to read EXIF. That is a genuine safety issue, not a theoretical one, and it is entirely on the photographer to prevent because the client will never think to.
So the rule is: strip GPS from any image taken at a private location before you deliver it or publish it. You do not necessarily strip all EXIF — the camera settings are harmless and sometimes useful — but the location data should come off anything shot somewhere private. For images taken at public venues (a wedding at a known hall, a portrait in a public park), GPS is far less sensitive, but stripping it costs nothing and removing it by default is the safer habit.
Warning. Social platforms strip EXIF on upload, which lulls people into thinking it is handled — but the files you deliver directly to clients (download links, USBs, shared drives) keep their full EXIF, including GPS. The risk is in the originals you hand over, not the versions you post to Instagram. Handle it at delivery, not by assuming the platforms do it for you.
When to show camera settings
The flip side: the technical EXIF — camera, lens, aperture, shutter, ISO — is something some photographers deliberately show, and there are good reasons to. On a portfolio aimed at other photographers or the gear-interested, displaying the settings is a trust signal and a teaching aid: it says “here is exactly how this shot was made,” which fellow photographers appreciate and which adds a layer of credibility. For an educational blog or a behind-the-scenes section, the settings are part of the content. So the decision is contextual: strip GPS always for private locations, but consider showing camera settings where your audience values the craft detail.
For a client-facing wedding or family gallery, the settings are usually irrelevant to the audience — the couple does not care what ISO you used — so there is no strong reason to show them, and a clean image without a settings overlay is the better look. Match the choice to who is looking.
Selective stripping: the practical middle
The nuanced approach most professionals settle on is selective: keep the harmless technical EXIF where it adds value, remove the sensitive location data everywhere it could expose a client. That means preserving camera/lens/exposure on portfolio pieces where you want to show the craft, and stripping GPS, device identifiers, and editing-software traces from anything client-facing or shot at a private location. It is not all-or-nothing — “strip everything” loses the useful settings, “strip nothing” leaks home addresses. Selective stripping gets both right.
Do this now. Check one file you recently delivered from a home session — open its properties or run it through an EXIF viewer and look for GPS coordinates. If they are there, they are in every copy your client has and shares. Build a step into your export: strip GPS (at minimum) from anything shot at a private location, before it leaves your hands. Decide separately whether your portfolio shows camera settings, based on who your audience is.
Handling EXIF in your gallery
How you manage EXIF depends partly on your tools. Your editing software (Lightroom, Capture One) can strip metadata on export, which is the cleanest place to handle the strip-GPS-before-delivery rule. On the display side, your gallery decides whether camera settings appear to viewers. In FotoGrids, EXIF display is a free-tier feature — camera, lens, aperture, shutter, ISO, and GPS shown on hover and in the lightbox — so you can surface settings on a craft-focused portfolio without extra tools. Editing EXIF, including removing GPS for client privacy or anonymising commercial work, is a Pro Starter feature. The two halves map onto the two decisions: display (free) for what you want viewers to see, editing (Pro) for what you need to remove.
One SEO footnote, since EXIF touches it: the surrounding page context and captions matter far more to search than EXIF does, so do not strip metadata expecting a ranking change either way — strip GPS for privacy, show settings for your audience, and let image SEO happen through alt text, captions, and the other layers.
Key takeaways
- EXIF carries camera settings (useful) and GPS location (a privacy liability) in every file.
- The one rule: strip GPS from anything shot at a private location before delivering or publishing.
- Social platforms strip EXIF; the files you hand clients directly do not — handle it at delivery.
- Show camera settings where your audience values craft; strip location everywhere it could expose a client.
Why is GPS data in photos a privacy risk?
If location services were on when the photo was taken, the file records the exact coordinates — and a photo shot at a client’s home pinpoints where they live. Those coordinates travel in every copy the client shares unless you strip them, so a delivered file can quietly broadcast a home address. Always remove GPS from images taken at private locations before delivery.
Does removing EXIF data affect SEO?
No meaningfully. Search engines rely on alt text, captions, and page context far more than EXIF. Strip GPS for privacy and show or hide camera settings based on your audience, but do not expect either choice to move your rankings — image SEO happens through the visible and markup layers, not metadata.
Should I show camera settings on my portfolio?
It depends on your audience. For a portfolio aimed at other photographers or gear enthusiasts, showing camera, lens, and exposure is a trust signal and a teaching aid. For a client-facing wedding or family gallery, the settings are irrelevant to the couple, so a clean image without a settings overlay is usually the better look.
Do social media platforms remove EXIF automatically?
Most do strip EXIF on upload, which is why posted images are generally safe. The risk is in the files you deliver directly to clients — download links, USBs, shared drives — which keep their full EXIF including GPS. Handle stripping at your delivery step rather than assuming the platforms cover you.