Privacy Policy
Last updated: July 10, 2026
1. Who we are
STYL (“STYL,” “we,” “us,” “our”) is a personal AI wardrobe app that helps you catalog your clothing, tag each piece, plan what to wear, and generate weather-aware and style-aware outfit suggestions. STYL is an independent project built and operated by its founder from New Jersey, United States; it is not yet a registered business entity, and a parent or legal guardian of the founder acts as the responsible signatory for any formal registrations. For privacy questions, requests, or complaints, contact us at support@styl.fit — this address is our designated privacy contact (we have not appointed a formal Data Protection Officer).
This policy explains what STYL collects, why, who we share it with, how long we keep it, and the choices and rights you have. It covers the STYL iPhone app and the STYL Mac app, and this marketing website.
2. Information we collect
a. Account information
When you create an account we collect your email address, used to sign you in (via a password, a magic link, or a third-party login such as Continue with Google or Sign in with Apple if you choose them). If you use Google or Apple sign-in, we receive your email and a basic profile identifier from that provider — never your Google or Apple password.
The Mac app also offers a “Use STYL locally — no account” mode. In local mode your closet lives entirely in files on your own Mac, and STYL collects no account or usage data from you at all. (AI tagging and outfit generation are unavailable in local mode, because those run through our cloud when you are signed in.)
b. Your photos and the tags made from them
STYL’s core feature is photographing your clothing. When you are signed in, we store the image and the tags generated from it (category, colors, material, warmth, and similar labels, and any name or notes you add). Your photos are private and, enforced by per-user database access rules, are accessible only to your own account.
On the iPhone, STYL can only access the specific photos you pick from your camera roll — never your whole photo library. Processing steps that don’t need the cloud (downscaling, and optional background removal) happen on your device before anything is uploaded, so the backend never receives your original full-resolution files.
c. Style DNA — undertone, body self-description, and style identity (sensitive, opt-in)
We treat Style DNA data as sensitive personal information under applicable law (comparable to the way appearance-related self-description is treated under CCPA/CPRA’s “sensitive personal information” category and, where undertone or body description could be linked to protected characteristics, under GDPR Article 9 “special category data”). Because of that:
- Style DNA fields are off by default — you must affirmatively opt in, field by field, to provide them.
- You can view, edit, or clear your Style DNA answers at any time in the app, separately from deleting your whole account.
- Where the law requires explicit consent for sensitive/special-category data (e.g. GDPR Art. 9(2)(a)), providing Style DNA data is our basis for processing it, and you may withdraw that consent at any time without affecting the rest of your account.
- Style DNA text may be sent to our AI providers (Section 4) as part of generating outfit and color recommendations, on the same no-tools basis as your closet tags.
Style DNA is described here so this policy is complete when the feature is available. If a Style DNA field is not yet offered in your version of STYL, we do not collect that data at all — this section applies only from the moment you can (and choose to) provide it.
d. Profile and social information (if you use Friends)
STYL’s optional social features let you choose a public handle (username), a display name, and an avatar. If you use these features we also store your follow relationships (one-directional) and close-friend relationships (mutual, request-and-accept), and, for any closet item you explicitly mark as shared, a record that the item is shared so your close friends can view it. Sharing is off by default and per item — nothing in your closet is visible to anyone else unless you turn sharing on for that specific piece. See Section 6 for moderation (report/block).
e. Usage and activity data
To operate and improve STYL we record app events such as signing in and out, active time, uploads (count and whether background removal was used), tagging outcomes and timing, outfit generations, saving/planning/wearing fits, and errors — plus server-side technical logs (error messages, request identifiers, storage file paths) used to diagnose problems. We also derive aggregate product statistics from these events; how those aggregates are handled when you delete your account is described in Section 11.
f. Calendar information (only if you connect a calendar)
STYL has a built-in planner: you can pin a saved outfit to a specific day inside the app. That planner data is stored in your STYL account like any other closet content. Separately, if you choose to connect your device or Google calendar, STYL requests calendar access so it can keep your outfit plans and your schedule in sync. What STYL does with that access is described in Section 7.
g. Location (only if you use weather features)
For weather-aware outfits, STYL uses your approximate location to fetch local weather — either a place name you type, or your device location only if you grant the device permission prompt. Coordinates are sent to the weather service (Open-Meteo) to look up the forecast; we do not build a location history from this.
h. Subscription information
If you purchase a STYL subscription, the payment itself is handled by Apple’s App Store and processed through RevenueCat, our subscription manager. We receive your subscription status (which tier you’re on and whether it’s active) so we can unlock the right features — we do not receive or store your full payment-card details.
i. Technical / device data
Standard data your device sends automatically (IP address, device/app version, timestamps), processed by our infrastructure providers. Aside from Style DNA (Section 2c, which you provide voluntarily), we do not intentionally collect special-category data (health, biometric, precise identity documents, race/ethnicity, etc.); please don’t upload photos that reveal such information about yourself or others.
j. Website visitors and the waitlist (styl.fit)
If you join the waitlist on styl.fit, we collect the email address you enter and use it for exactly two things: one confirmation email when you join (sent via Resend, our email provider — see Section 8) and letting you know when STYL launches. Waitlist emails are not used for any other marketing, are never sold or shared for advertising, and you can be removed at any time by emailing support@styl.fit.
The website also records basic, first-party analytics events (page views, whether the
waitlist form was used, coarse campaign tags from the link you arrived on, referrer domain, and
viewport size) in our own database. To count visits without identifying you, the site stores a
single random identifier (styl_install_id) in your browser’s local storage — it is
not a cookie, it contains no personal information, it is never shared with third parties, and
clearing your browser data removes it. The website sets no advertising or third-party cookies
and loads no third-party analytics or tracking scripts.
3. Why we process your data, and our legal bases (GDPR)
| Purpose | Data used | GDPR legal basis |
|---|---|---|
| Provide the core service (closet, tagging, planning, outfits) | Account, photos, tags, usage | Performance of a contract (Art. 6(1)(b)) |
| Authenticate you and secure your account | Account, technical/device data | Performance of a contract; legitimate interests (Art. 6(1)(b), 6(1)(f)) |
| Style DNA-based color/fit/style recommendations | Undertone, body self-description, style identity (Section 2c) | Explicit consent (Art. 6(1)(a), Art. 9(2)(a) as applicable) — opt-in, withdrawable |
| Optional Friends / social features | Handle, avatar, follow/close-friend graph, shared items | Consent — you choose to enable these features (Art. 6(1)(a)) |
| Weather-aware outfits | Approximate location | Consent — device location requires your permission grant (Art. 6(1)(a)) |
| Calendar sync | Calendar events | Consent — you choose to connect a calendar (Art. 6(1)(a)) |
| Subscriptions and entitlements | Subscription status, store identifier | Performance of a contract (Art. 6(1)(b)) |
| Product debugging, abuse prevention, security | Usage/error logs, technical data | Legitimate interests (Art. 6(1)(f)) |
| Aggregate, non-identifying product analytics | De-identified event aggregates | Legitimate interests (Art. 6(1)(f)); anonymous data falls outside GDPR once de-identified |
| Legal compliance | As required | Legal obligation (Art. 6(1)(c)) |
- To provide the service: store your closet, tag your photos, plan and generate outfits.
- To authenticate you and keep your account secure.
- To power optional features you turn on — Style DNA, Friends, calendar sync, and weather.
- To operate, debug, and improve the app, and to understand product usage in aggregate.
- To communicate about your account (e.g., the sign-in email).
- To enforce usage limits and subscription entitlements, and to prevent abuse.
We do not sell your personal information, we do not use your photos or Style DNA for advertising, and we do not use your photos or Style DNA to train our own or third parties’ AI models.
4. AI analysis of your photos, closet, and Style DNA
To tag your clothing, STYL sends the photo to an AI vision provider — Google Gemini as the primary tagger, with Anthropic Claude as a fallback. To generate outfit suggestions, STYL sends the text tags of your own closet (never the images) — and, if you’ve opted in to Style DNA, your undertone/body/style-identity text — to the same provider.
We use Google’s paid Gemini API tier; under Google’s API terms for paid services, content you submit is not used to train Google’s models. Anthropic likewise does not train on API inputs by default. Both providers may retain content for a limited period for abuse monitoring under their own API terms.
5. Friends, sharing, and what other people can see
By default, no other user can see anything in your closet, and Style DNA data is never shared with other users under any circumstance. When you use the optional Friends features:
- Your handle, display name, and avatar are public identity — other users can find you by handle and see these.
- Follows are one-directional and grant no access to your closet.
- Close friends are mutual (both people accept). A close friend can view only the individual items you have marked as shared, and only a limited, safe set of fields for those items (the photo, name, category, and colors) — never your credits, plan, email, Style DNA, or anything you didn’t share.
- When you unshare an item or delete your account, that access is removed.
6. Reporting and blocking (moderation)
Because Friends is user-generated social content, STYL gives you tools to stay safe:
- Report a user or their content. A report files a moderation record we can review; it does not tell the other person.
- Block a user. A block immediately severs any follow or close-friend connection in both directions and makes the two of you invisible to each other in search, friend requests, and shared closets, until you lift the block.
7. Calendar access (Apple Calendar & Google Calendar)
Calendar sync is optional and only happens if you connect a calendar. When you do, STYL asks for calendar permission and uses it as follows:
- What STYL writes: your outfit plans. When you plan a fit for a day, STYL can add or update a corresponding event on your calendar so your plan shows up alongside the rest of your day.
- What STYL reads: your existing events for the days you’re planning, so it can tell when you already have something scheduled or are traveling and keep your outfit plans aligned with your real schedule.
On iPhone this uses Apple’s EventKit and the calendar-access permission prompt. If you
connect a Google Calendar, STYL requests the Google Calendar events scope
(calendar.events), which covers reading and writing calendar events. STYL only reads
and writes calendar data to power outfit planning — it does not use your calendar for any other
purpose, and you can revoke calendar access at any time in your device or Google account
settings.
8. Third parties we share data with (sub-processors)
User photos, tags, and (where you opt in) Style DNA text are sent to the AI providers below to generate tags and recommendations.
| Provider | What they process | Why |
|---|---|---|
| Supabase | Account data, photos, tags, Style DNA (if provided), closet/social data, logs | Database, authentication, file storage, backend hosting |
| Google (Gemini API) | The content of the photos you upload, the text tags of your closet, and Style DNA text (if provided) | AI analysis to tag garments and suggest outfits |
| Anthropic (Claude API) | Photo content, closet tags, and Style DNA text (if provided), only when used as a fallback | Backup AI analysis |
| Google (Sign-In & Calendar) | Email + basic profile (if you use Google sign-in); calendar events (if you connect Google Calendar) | Authentication and optional calendar sync |
| Apple | Sign-in identifier (if you use Sign in with Apple); subscription purchases | Authentication and App Store billing |
| RevenueCat | Your subscription status and a store identifier | Managing subscriptions and entitlements |
| Resend | Your email address | Sending sign-in, account, and waitlist confirmation emails |
| Open-Meteo | Approximate location (only if you use weather) | Local weather lookup |
We may also disclose information if required by law, to protect our rights or users’ safety, or in a future business transfer — with notice where required. A current, itemized subprocessor list is available on request at support@styl.fit.
9. Where your data is stored and how we protect it
Data is stored with Supabase in the United States (AWS us-west-2, Oregon). Our
security measures include:
- Encryption in transit (HTTPS) for all client-server traffic.
- Row-level security (RLS) on every table holding your data, scoped by your authenticated user ID, so the database itself — not just the app — enforces that you can only access your own closet and Style DNA data.
- Key separation: the publishable “anon” API key shipped in the app is safe for client use because RLS constrains what it can do; the privileged “service-role” key that can bypass RLS is used only in our server-side backend functions and is never shipped to any client app.
- Private storage buckets — your photos are not publicly listable or guessable.
We do not currently claim end-to-end encryption (a state in which even STYL’s own servers cannot read your data) — data is encrypted in transit and access-controlled at the database layer, but our backend can technically access stored content as needed to operate the service (e.g., to run AI tagging). No system is perfectly secure, but these protections are the backbone of how STYL keeps your data yours.
10. How long we keep your data
- Account, photos, tags, closet, fits, Style DNA, social data: until you delete the item, clear the field, or delete your account (see Section 11).
- Usage/error logs: up to 90 days, then deleted or anonymized.
- Waitlist emails (styl.fit): until we send the launch announcement or you ask to be removed, whichever comes first (see Section 2j).
- Aggregate statistics: retained indefinitely in non-identifying form (see Section 11).
11. Analytics retention and what happens when you delete your account
This is the part we most want to be transparent about.
When you delete your account, STYL permanently deletes all of your personal data and content — your photos and their files, your tags, your Style DNA data, your closet, saved and planned fits, folders, your profile and handle, your friendships, and your account itself. This is a real, irreversible hard-delete, not a “deactivate.”
What survives deletion is only non-identifying, aggregate product statistics — counts, sums, and histograms that are never tied to your user identity. Before your account is erased, STYL folds your lifetime activity into anonymous running totals and distributions, for example:
- cumulative totals such as “total photos ever tagged” or “total outfits ever generated”;
- daily aggregate metrics (e.g. how many uploads or generations happened on a given day);
- bucketed distributions such as “how many accounts had 0 / 1 / 2 / 3+ close friends,” or how long accounts tended to stay active — expressed only as counts within ranges.
You can start deletion yourself, in-app, from the Account menu (Delete Account), or by emailing support@styl.fit.
12. Children’s and teens’ privacy (COPPA, GDPR-K, and age gating)
STYL is built and used by teenagers as well as adults, and we take that seriously. STYL is intended for users aged 13 and older, and account creation requires confirming you meet the applicable minimum age at sign-up (age gating). We do not knowingly collect personal information from children under 13, and we do not knowingly permit anyone under 13 to create an account, consistent with the U.S. Children’s Online Privacy Protection Act (COPPA). If you believe a child under 13 has provided us personal information, contact support@styl.fit and we will investigate and delete it.
If you are in the EEA or UK and under the age of digital consent in your country (which can be up to 16 under GDPR Article 8, sometimes called “GDPR-K”), please use STYL only with a parent or guardian’s verifiable consent. Parents/guardians of a minor user may contact us at support@styl.fit to review, request deletion of, or ask questions about their child’s data. Style DNA fields are opt-in for all users, including minors, and we recommend minors complete them with a parent or guardian if their household prefers. We keep the data STYL collects from teens to what the app needs to work, and we don’t use it for advertising or profiling.
13. Your rights and choices (GDPR, CCPA/CPRA, and beyond)
Depending on where you live, you have some or all of the following rights over your personal information:
- Access — request a copy of the personal information we hold about you.
- Correction / rectification — fix inaccurate data (e.g., edit a tag, or clear/update Style DNA fields directly in the app).
- Deletion / erasure — delete individual photos or your entire account in-app (Account menu → Delete Account), which permanently removes your data as described in Section 11.
- Portability — request a copy of the personal data you have provided to us in a structured, commonly used, machine-readable format (for example, your tags and closet metadata as JSON alongside your image files), so you can keep it or move it to another service. Email support@styl.fit to request an export.
- Objection / restriction — object to certain processing based on legitimate interests, or ask us to restrict processing.
- Withdraw consent — for anything based on consent (Style DNA, Friends, weather location, calendar sync), withdraw at any time by turning the feature off or clearing the field in-app, without affecting the lawfulness of processing before withdrawal.
- California (CCPA/CPRA) rights — if you are a California resident, see Section 14 for a full statement of your rights and how to exercise them.
- Non-discrimination — we won’t discriminate against you for exercising any of these rights.
To exercise any of these rights, use the in-app controls where available, or email support@styl.fit. We may need to verify your identity before fulfilling a request. You also have the right to lodge a complaint with your local data protection authority (in the EU/UK) or the California Attorney General / California Privacy Protection Agency, as applicable.
14. Your California Privacy Rights (CCPA/CPRA)
This section applies to California residents and supplements the rest of this policy, as required by the California Consumer Privacy Act as amended by the California Privacy Rights Act (together, “CCPA/CPRA”).
Categories of personal information we collect
In the 12 months preceding the date above, STYL has collected the following categories of personal information, as described in Section 2. We collect each category directly from you (or from your device, with your permission), and we use and disclose it only for the purposes described in Sections 3, 4, and 8:
| CCPA/CPRA category | What STYL collects |
|---|---|
| Identifiers | Email address, account identifier, and — if you use Friends — your chosen handle, display name, and avatar |
| Audio, electronic, or visual information (photos) | The clothing photos you choose to upload, and the tags generated from them |
| Commercial information | Subscription tier and status (payment itself is handled by Apple and RevenueCat; we never receive your full card details) |
| Internet or other electronic network activity | App usage events (sign-ins, uploads, outfit generations, errors) and server-side technical logs |
| Geolocation data (approximate) | Approximate location, only if you use weather features and only with your permission — never a location history |
| Sensitive personal information | Style DNA self-descriptions (undertone, body self-description, style identity) — opt-in only, field by field, as described in Section 2c |
Your rights
- Right to know — request what personal information we have collected about you, the categories of sources, our purposes, and the categories of third parties we disclose it to (the tables in Sections 3 and 8, and the categories above, are our standing answer).
- Right to delete — request deletion of your personal information. In-app account deletion (Section 11) is the fastest way; only identity-free aggregate statistics survive.
- Right to correct — request correction of inaccurate personal information (most fields are directly editable in the app).
- Right to opt out of sale or sharing — we do not sell or share personal information, so there is nothing to opt out of; you may still submit a request and we will confirm this in writing.
- Right to limit use of sensitive personal information — we already limit it: Style DNA data is used solely to power the recommendations you opted into, never for advertising or profiling, and you can clear it in-app at any time.
- Right to non-discrimination — we will never deny you the service, charge you a different price, or degrade your experience for exercising any CCPA/CPRA right.
How to exercise these rights
Email support@styl.fit with your request, or use the in-app controls (Account menu → Delete Account for deletion; in-app editing for correction). We will verify your identity — usually by confirming control of the email address on your account — and respond within 45 days of receiving a verifiable request (extendable once by a further 45 days where reasonably necessary, in which case we will tell you why). An authorized agent may submit a request on your behalf if the agent provides your signed written permission and we can verify your identity; we may also ask you to confirm the request with us directly.
15. Apple App Store requirements
Consistent with Apple App Store requirements, you can delete your account entirely from within the app (Account menu → Delete Account) — deletion is not limited to a website form. Our declared data collection and tracking status is published in the app’s Apple “Privacy Nutrition Label” (App Privacy details on the App Store product page) and in the app’s privacy manifest, both of which are kept aligned with this policy; see Section 20 for how we handle that alignment.
16. International users and data transfers
Your information is processed in the United States (Section 9), which may have different data-protection laws than your home country. Where GDPR or UK GDPR requires a safeguard for transferring personal data outside the EEA/UK, we rely on appropriate safeguards such as Standard Contractual Clauses or an equivalent lawful transfer mechanism entered into with our subprocessors, where applicable.
17. Changes to this policy
We may update this policy as STYL evolves; we’ll post the new version here and update the date above. Material changes (such as adding a new data category, a new subprocessor, or a new purpose) will be communicated by email or an in-app notice before or at the time they take effect.
18. Contact
Questions or requests: support@styl.fit.
19. Governing law
This policy is governed by the laws of the State of New Jersey, United States, without prejudice to any mandatory data-protection rights you have under the laws of your own country of residence.
20. Keeping this policy, the App Store privacy label, and the privacy manifest in sync
STYL publishes three descriptions of its data practices that must agree: (1) this Privacy
Policy, (2) the app’s PrivacyInfo.xcprivacy manifest bundled with the iOS app, and
(3) the “App Privacy” nutrition-label answers entered in App Store Connect. Whenever a new data
type is collected, a new purpose is added, or a new “required reason” API is adopted, all three
must be updated together, before the corresponding app build is submitted for review.