1. Introduction
Welcome to Stylica. We respect your privacy and are committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our virtual try-on service.
2. Information We Collect
2.1 Information You Provide
Account Information
- Email address
- Name (optional)
- Password (encrypted)
- Profile information
User Content
- Photographs you upload
- Style descriptions and preferences
- Generated images
Communications
- Support requests
- Feedback and correspondence
2.2 Information Collected Automatically
Technical Data
- IP address
- Browser type and version
- Device information
- Operating system
- Time zone settings
Usage Data
- Features used
- Generation history
- Interaction patterns
- Performance metrics
Cookies and Tracking
- Session cookies
- Authentication tokens
- Analytics data (if applicable)
3. How We Use Your Information
3.1 Service Provision
- Process your photos through AI models
- Generate virtual try-on results
- Manage your account
- Provide customer support
3.2 Service Improvement
- Enhance AI model performance
- Develop new features
- Fix bugs and issues
- Optimize user experience
3.3 Legal and Safety
- Comply with legal obligations
- Enforce our Terms and Conditions
- Protect against fraud and abuse
- Ensure platform security
3.4 Communications
- Send service updates
- Respond to inquiries
- Provide technical notices
- Send marketing (with consent)
4. Data Processing and Storage
4.1 AI Processing
- Images are processed using third-party AI models (Replicate's Nano Banana)
- Processing occurs on secure servers
- Temporary copies may be created during processing
4.2 Data Storage
- Account data stored in Supabase databases
- Images stored temporarily during processing
- Generated content may be cached temporarily
- We do not guarantee permanent storage of generated images
4.3 Data Retention
- Account information: Until account deletion
- Uploaded images: Deleted after processing (typically within 24 hours)
- Generated images: User responsibility to download
- Logs and analytics: 90 days
5. Data Sharing and Disclosure
5.1 Service Providers
We share data with:
- Supabase (authentication and database)
- Replicate (AI processing)
- Hosting providers
- Analytics services (if applicable)
5.2 Legal Requirements
We may disclose information:
- To comply with legal obligations
- To respond to legal requests
- To protect our rights and property
- To prevent illegal activities
5.3 Business Transfers
In case of merger, acquisition, or sale, your data may be transferred to the new entity.
5.4 Your Consent
We share information with your explicit consent.
6. Data Security
6.1 Security Measures
- Encryption in transit (HTTPS)
- Encrypted password storage
- Secure API authentication
- Regular security updates
- Access controls and monitoring
6.2 Data Breaches
In case of a data breach:
- We will notify affected users within 72 hours
- We will take immediate remedial action
- We will cooperate with authorities as required
6.3 User Responsibilities
- Keep your password secure
- Use strong, unique passwords
- Report suspicious activity immediately
- Log out from shared devices
7. Your Rights and Choices
7.1 Access and Portability
You have the right to:
- Access your personal data
- Receive your data in a portable format
- Know how your data is used
7.2 Correction and Deletion
You can:
- Update your account information
- Request correction of inaccurate data
- Delete your account and associated data
7.3 Opt-Out Rights
You may opt out of:
- Marketing communications
- Non-essential cookies
- Analytics tracking
7.4 Restriction and Objection
You can:
- Restrict processing of your data
- Object to certain uses of your data
- Withdraw consent at any time
8. Children's Privacy
- Our Service is not intended for users under 13
- We do not knowingly collect data from children under 13
- If we discover underage users, we immediately delete their data
- Parents may contact us to remove their child's information
9. International Data Transfers
- Data may be processed in different countries
- We ensure appropriate safeguards for international transfers
- By using our Service, you consent to these transfers
10. Third-Party Services
10.1 AI Processing
- Replicate processes images on our behalf
- They have their own privacy policy
- We are not responsible for their practices
10.2 Authentication
- Supabase handles authentication
- Google OAuth (if enabled) follows Google's privacy practices
10.3 External Links
Our Service may contain links to third-party sites. We are not responsible for their privacy practices.
11. Cookies Policy
11.1 Essential Cookies
- Authentication tokens
- Session management
- Security features
11.2 Functional Cookies
- User preferences
- Language settings
- Feature toggles
11.3 Analytics Cookies (if applicable)
- Usage patterns
- Performance metrics
- Error tracking
12. California Privacy Rights (CCPA)
California residents have additional rights:
- Right to know what personal information is collected
- Right to know if information is sold or disclosed
- Right to opt-out of sale (we do not sell personal information)
- Right to non-discrimination
13. European Privacy Rights (GDPR)
EU residents have additional rights:
- Legal basis for processing
- Data protection officer contact (if applicable)
- Supervisory authority complaints
- Automated decision-making information
14. Marketing and Communications
14.1 Marketing Emails
- Only sent with explicit consent
- Easy unsubscribe option
- Preference management available
14.2 Service Communications
- Essential service updates
- Security notifications
- Account-related messages
15. Data Minimization
We follow the principle of data minimization:
- Collect only necessary data
- Delete data when no longer needed
- Anonymize data where possible
16. Privacy by Design
Our Service incorporates privacy by design:
- Privacy considered at every stage
- Default privacy settings are protective
- Transparent data practices
17. Changes to This Policy
- We may update this Privacy Policy periodically
- Material changes will be notified via email or Service notice
- Continued use after changes constitutes acceptance
19. Complaints
If you have concerns about our privacy practices:
- Contact us directly
- File a complaint with your local data protection authority
- Seek legal remedies as available
20. Transparency Reports
We may publish transparency reports detailing:
- Government data requests
- Content removal requests
- Privacy metrics
21. Special Provisions
21.1 Biometric Data
- Facial features may be analyzed for try-on functionality
- Data is not stored permanently
- Not used for identification purposes
21.2 Sensitive Data
- We do not intentionally collect sensitive personal data
- Do not upload medical or health-related images
21.3 Do Not Track
We currently do not respond to Do Not Track browser signals.
22. Legal Basis for Processing
We process your data based on:
- Contract performance (providing services)
- Legal obligations
- Legitimate interests
- Your consent
By using Stylica, you acknowledge that you have read and understood this Privacy Policy and agree to the collection, use, and disclosure of your information as described herein.