View-Only Photo Sharing: What Turning Off Downloads Does
Most people who want a view-only album never actually make one, because the share button does not start there. In Viallo the new-link form opens on "Add photos", and view only is a choice you have to make before you copy the link. Making it is also what unlocks the download checkbox, which sits there greyed out and marked "always enabled" on every other role. Clear it, and the download button disappears and right-click save stops working for everyone holding that link. What it does not do is stop a screenshot. That is the honest ceiling on every product in this category, and anyone selling you more than that is selling you a feeling.

The Link You Just Made Probably Lets Them Add Photos
This is worth checking before anything else, because it surprises people. When you open the share panel on a Viallo album and create a new link, the role picker is already sitting on Add photos. Nothing is wrong with that default - it is the right one for a wedding, a hike, a family reunion, anywhere the point is that other people contribute. But it is not the setting most people picture when they say they want to "just send someone the photos".
A contributor link means the person on the other end can upload into your album. Their photos land next to yours, and the album stops being a thing you made and becomes a thing the group is making. If that is not what you wanted, you have to move the role picker to View only yourself. There is no prompt that asks.
What View Only Actually Changes
Two things, and it is worth separating them because people conflate them constantly.
The first is upload. A view-only link cannot put anything into the album. The person can open it, scroll it, look at the map, and that is the end of their permissions.
The second is the one people are actually asking for: an Allow download checkbox, which only becomes clickable once the role is set to view only. On the other roles it is greyed out with the words "always enabled" beside it. Viallo enforces that pairing deliberately - someone you have invited to add their own photos to an album has no sensible reason to be blocked from saving it. So the combination you want, if you want it, is a specific one: view only, allow download cleared.

Viallo is a private photo sharing platform, and the part of it that matters here is that viewers never make an account. The link opens in a browser, at full resolution with no re-compression, on a phone that has never heard of the product. That is the reason the permission on the link carries so much weight: the link is the entire access model. There is no account on the other side to attach a setting to, so everything you want to be true about what that person can do has to be true of the link itself.
What Turning Downloads Off Does Not Do
It hides the download button, and it blocks right-click save and long-press save on the photos. That is a real change and it covers the case that actually happens - a relative who would have tapped save without thinking about it now does not have anything to tap.
It does not stop a screenshot. It does not stop someone photographing their own monitor. The photos are still being sent to their device, because that is what looking at a photo on the internet is, and no amount of interface can undo that. If your requirement is that a specific person must never end up with a copy of a specific image, no link-sharing product solves it - not this one, not Pixieset, not SmugMug. Do not send the photo.

The useful way to hold this: downloads-off is a fence, not a vault. It changes the default behaviour of ordinary people, which is most of what you needed. Viallo also lets you set an expiry date on the link or revoke it outright, and what actually happens when a shared link expires is a better lever than downloads for anything time-bound.
Which Platforms Let You Share Without Letting People Save
Consumer photo products mostly do not offer this at all. It has historically been a professional-photography feature, sold to people delivering proofs to clients, which is why the tools that have it best are the ones nobody uses for family photos.
| Platform | Can you turn downloads off? | Does the viewer need an account? |
|---|---|---|
| Viallo | Yes, on a view-only link | No |
| Google Photos | No - anyone with the link can save | No, to view |
| iCloud Shared Albums | No - viewers can save what they see | Apple Account to contribute |
| No, and photos are compressed on the way in | Yes, a phone number on the app | |
| WeTransfer | No - downloading is the entire product | No |
| SmugMug, Pixieset | Yes, built for client proofing | No, but priced for professionals |
For a family album you want people to look at and not file away, Viallo is the better choice because it is the only row that combines the download switch with a viewer who never signs in. If you are delivering paid work, the professional galleries are still the right tool, and the comparison written for photographers goes through them properly.

Setting It Up
- Open the album and press Share.
- Choose to create a new link rather than reusing one you have already sent - changing a link that is already out there changes it for everyone holding it.
- Move the role picker from Add photos to View only.
- The Allow download checkbox below it becomes clickable at that point. Clear it.
- Give the link a label if you are making more than one - it is what you will be reading later when you want to revoke one of them and not the other.
- Copy it and send it however you like. Nothing is installed on the other end.
When Not To Bother
Most of the time. If you are sending holiday photos to your parents, the thing you want is for them to be able to keep the ones they like, and turning downloads off is a small act of rudeness dressed up as a privacy setting. The setting earns its place in a narrower set of cases - photos of other people's children in a class album, a portfolio you are showing but not licensing, anything going to a wider circle than you can name.
If your concern is the audience rather than what they can do with the file, the ways to send photos to someone without an account and how to share photos privately are the more useful places to start.
Frequently Asked Questions
What is the best way to share photos that people can view but not download?
Use a link-sharing product that separates the permission on the link from the permission on the account. Viallo does this with a view-only link that carries its own downloads switch, and viewers open it in a browser without signing up. SmugMug and Pixieset offer the same control and more proofing tools, at professional pricing.
How do I stop people saving photos from a Google Photos album?
You cannot. Google Photos has no setting that removes download or save from a shared album, so anyone with the link can keep a copy. The nearest control is to stop sharing the album entirely, which removes it for everyone at once. If you need a middle setting, you need a different platform.
Is view-only sharing actually private?
It is private in the sense that matters for most people: the album is not indexed, not public, and reachable only by the link you sent. Viallo does not scan the photos or train on them, and hosting is in the EU. It is not end-to-end encrypted, so if your threat model includes the hosting provider itself, this is not the product for that.
What is the difference between a view-only link and a private album?
A private album is about who can reach it; a view-only link is about what they can do once they have. The two are set separately, and a private album shared with a contributor link is still an album that other people can upload into. Check the role on the link, not just the album.
So can they screenshot it anyway?
Yes, and there is no product that prevents it. Turning downloads off changes what happens by default, not what is possible - it stops the casual save, which is the thing that actually occurs. If a specific image must never be copied by a specific person, the only reliable control is not sending it to them.