← Back to STYL
Privacy

Privacy Policy

Last updated: August 2, 2026

1. Who we are

STYL (“STYL,” “we,” “us,” “our”) is a personal AI wardrobe app that helps you catalog your clothing, tag each piece, plan what to wear, and generate weather-aware and style-aware outfit suggestions. STYL is an independent project built and operated by its founder from New Jersey, United States; it is not yet a registered business entity, and a parent or legal guardian of the founder acts as the responsible signatory for any formal registrations. For privacy questions, requests, or complaints, contact us at support@styl.fit — this address is our designated privacy contact (we have not appointed a formal Data Protection Officer).

This policy explains what STYL collects, why, who we share it with, how long we keep it, and the choices and rights you have. It covers the STYL iPhone app and the STYL Mac app, and this marketing website.

2. Information we collect

a. Account information

When you create an account we collect your email address, used to sign you in (via a password, a magic link, or a third-party login such as Continue with Google or Sign in with Apple if you choose them). If you use Google or Apple sign-in, we receive your email and a basic profile identifier from that provider — never your Google or Apple password.

The Mac app also offers a “Use STYL locally — no account” mode. In local mode your closet lives entirely in files on your own Mac, and STYL collects no account or usage data from you at all. (AI tagging and outfit generation are unavailable in local mode, because those run through our cloud when you are signed in.)

b. Your photos and the tags made from them

STYL’s core feature is photographing your clothing. When you are signed in, we store the image and the tags generated from it (category, colors, material, warmth, and similar labels, and any name or notes you add). Your photos are private and, enforced by per-user database access rules, are accessible only to your own account.

On the iPhone, STYL can only access the specific photos you pick from your camera roll — never your whole photo library. Processing steps that don’t need the cloud (downscaling, and optional background removal) happen on your device before anything is uploaded, so the backend never receives your original full-resolution files.

c. Face, appearance, color, and Style DNA data (sensitive, opt-in)

This category is optional. After you choose a portrait, STYL shows a notice before it performs a face scan or uploads anything. The on-device path keeps the portrait on the iPhone. It calculates a color palette and a face profile. The color profile remains on that device. The face profile can include face-shape and facial-structure labels plus numeric measurements such as width-to-height, jaw-to-cheek and forehead-to-cheek ratios, chin taper, jaw angle, cheekbone prominence, and symmetry. That derived face and hair profile is stored in protected app storage and synced to a private Supabase record for your account so it can persist across sessions and devices. It is not a facial-recognition template and STYL does not use it to identify or authenticate you.

If you separately choose cloud-assisted analysis and separately confirm that you are 18 or older, STYL downscales the portrait and sends it once through STYL’s authenticated API to the currently disclosed provider, Google Gemini, to return editable, non-diagnostic observations about visible hair, eyebrows, lighting, and visible skin appearance. STYL does not write the portrait to its database, object storage, logs, or backups. The provider may retain API content for a limited abuse-monitoring window under its terms. STYL stores the returned appearance review in an account-separated, iOS-protected file on the device, excluded from device backups; it is not currently stored in STYL’s cloud database. You can accept, correct, reject, export, or delete each section.

A separate switch controls whether approved derived guidance—not the portrait—is included in a later outfit-generation request. You may also tell STYL, in your own words or by choosing provided options, a self-described body shape or proportions (e.g. “long torso,” “prefer high-waisted” — a description you provide, not a measurement or scan we take), and a style identity or archetype you pick or describe (e.g. “elevated-casual,” “minimalist”). STYL does not infer race, ethnicity, body shape, attractiveness, health conditions, or any protected characteristic from the portrait. Visible-skin observations are cosmetic descriptions, may be wrong, and are not acne diagnoses or medical advice. This data exists only to make outfit, grooming, and color recommendations more relevant to you.

We treat the portrait, face geometry, derived appearance profile, and Style DNA as sensitive personal information. Some laws define a scan or record of face geometry as a biometric identifier even when the product does not use it for recognition; other laws apply special-category rules only when biometric data is used to uniquely identify someone. We use the more protective handling described in our Face & Appearance Data Notice:

Style DNA is described here so this policy is complete when the feature is available. If a Style DNA field is not yet offered in your version of STYL, we do not collect that data at all — this section applies only from the moment you can (and choose to) provide it.

d. Profile and social information (if you use Friends)

STYL’s optional social features let you choose a public handle (username), a display name, and an avatar. If you use these features we also store your follow relationships (one-directional) and close-friend relationships (mutual, request-and-accept), and, for any closet item you explicitly mark as shared, a record that the item is shared so your close friends can view it. Sharing is off by default and per item — nothing in your closet is visible to anyone else unless you turn sharing on for that specific piece. See Section 6 for moderation (report/block).

e. Usage and activity data

To operate and improve STYL we record app events such as signing in and out, active time, uploads (count and whether background removal was used), tagging outcomes and timing, outfit generations, saving/planning/wearing fits, and errors — plus server-side technical logs (error messages, request identifiers, storage file paths) used to diagnose problems. We also derive aggregate product statistics from these events; how those aggregates are handled when you delete your account is described in Section 11.

f. Calendar information (only if you connect a calendar)

STYL has a built-in planner: you can pin a saved outfit to a specific day inside the app. That planner data is stored in your STYL account like any other closet content. Separately, if you choose to connect your device or Google calendar, STYL requests calendar access so it can keep your outfit plans and your schedule in sync. What STYL does with that access is described in Section 7.

g. Location (only if you use weather features)

For weather-aware outfits, STYL uses your approximate location to fetch local weather — either a place name you type, or your device location only if you grant the device permission prompt. Coordinates are sent to the weather service (Open-Meteo) to look up the forecast; we do not build a location history from this.

If you turn on the optional weather auto-replan notification (a push telling you your plan needs a second look when the forecast changes), STYL stores a single coarse, rounded (about 1 km) last-known coordinate and a place label in your profile, so our server can fetch a forecast for you without your device being present. Each update overwrites that one coordinate — we never keep a history or trajectory of where you've been. This coordinate stops being written the moment you turn the feature off, and it is erased along with the rest of your account when you delete it.

h. Subscription information

If you purchase a STYL subscription, the payment itself is handled by Apple’s App Store and processed through RevenueCat, our subscription manager. We receive your subscription status (which tier you’re on and whether it’s active) so we can unlock the right features — we do not receive or store your full payment-card details.

i. Technical / device data

Standard data your device sends automatically (IP address, device/app version, timestamps), processed by our infrastructure providers. The optional face and appearance data described in Section 2c may be considered biometric or otherwise sensitive under applicable law. Aside from that opt-in feature and information you voluntarily provide, we do not intentionally collect health data, identity documents, race/ethnicity, or other special-category data; please do not upload photos that reveal such information about yourself or others.

If you sign in on iPhone, STYL also stores an Apple push-notification (APNs) device token per signed-in device, so we can deliver the optional notifications you’ve turned on (outfit ready, a style shift worth a look, unworn-item reminders, and the weather-replan alert in Section 2g). Notifications are controllable in Settings, and your device token is removed when you sign out of that device and when you delete your account.

j. Website visitors and the waitlist (styl.fit)

If you join the waitlist on styl.fit, we collect the email address you enter and use it to confirm or restore your place, send Line/referral and access updates, and tell you about launch and early access (sent via Resend, our email provider — see Section 8). We also store when you joined, your randomly generated referral code, a referring member’s code or record if you used one, email-confirmation status, group/place calculations, and the version and time of your separate age/legal and email choices. Each waitlist message includes a self-service unsubscribe link. When you use it, STYL records the opt-out, revokes outstanding Line email links and browser sessions, and stops future waitlist, referral, launch, and early-access email. Waitlist data is never sold or shared for advertising. You can also request removal by emailing support@styl.fit.

The website also records basic, first-party analytics events (page views, whether the waitlist form was used, coarse campaign tags from the link you arrived on, referrer domain, and viewport size) in our own database. To count visits without identifying you, the site stores a random analytics identifier (styl_install_id) in local storage. If you use the Line portal, local storage may also hold the signup email, join time, referral code, referring code, and an opaque Line-session token so the site can securely restore current status on that browser. These are not cookies; clearing site data removes them. The website sets no advertising or third-party cookies and loads no third-party analytics or tracking scripts.

3. Why we process your data, and our legal bases (GDPR)

PurposeData usedGDPR legal basis
Provide the core service (closet, tagging, planning, outfits) Account, photos, tags, usage Performance of a contract (Art. 6(1)(b))
Authenticate you and secure your account Account, technical/device data Performance of a contract; legitimate interests (Art. 6(1)(b), 6(1)(f))
Optional face, appearance, color, and Style DNA features Portrait during processing; derived face geometry, color, hair/appearance profile, body self-description, and style identity (Section 2c) Explicit consent (Art. 6(1)(a), Art. 9(2)(a) as applicable) — opt-in, withdrawable
Waitlist, Line, referral, launch, and early-access communications Email, consent/age attestation, referral and Line status Consent (Art. 6(1)(a)); steps requested before a future service (Art. 6(1)(b))
Optional Friends / social features Handle, avatar, follow/close-friend graph, shared items Consent — you choose to enable these features (Art. 6(1)(a))
Weather-aware outfits Approximate location Consent — device location requires your permission grant (Art. 6(1)(a))
Calendar sync Calendar events Consent — you choose to connect a calendar (Art. 6(1)(a))
Subscriptions and entitlements Subscription status, store identifier Performance of a contract (Art. 6(1)(b))
Product debugging, abuse prevention, security Usage/error logs, technical data Legitimate interests (Art. 6(1)(f))
Aggregate, non-identifying product analytics De-identified event aggregates Legitimate interests (Art. 6(1)(f)); anonymous data falls outside GDPR once de-identified
Legal compliance As required Legal obligation (Art. 6(1)(c))

We do not sell your personal information, we do not use your photos or Style DNA for advertising, and we do not use your photos or Style DNA to train our own or third parties’ AI models.

4. AI analysis of your photos, closet, and Style DNA

To tag your clothing, STYL sends the photo to an AI vision provider — Google Gemini as the primary tagger, with Anthropic Claude as a fallback. If you separately approve cloud appearance analysis, STYL sends one downscaled portrait to Google Gemini and does not store that portrait in STYL’s database, file storage, logs, or backups. The portrait is separate from the derived face profile calculated on the iPhone and synced to Supabase as described in Section 2c. To generate outfit suggestions, STYL sends the text tags of your own closet (never the images) — and, if you’ve opted in to Style DNA, your undertone/body/style-identity text — to the same provider.

A deliberate safety choice. Every AI call STYL makes is issued with no tools or functions attached. Because a garment photo is fully controlled by whoever took it, granting the model tools could let a maliciously-crafted image try to reach other data. Removing all tools closes that door: the model can only look at the one image (or the one text list) and return labels or suggestions — it has no ability to access anything else.

We use Google’s paid Gemini API tier; under Google’s current API terms for paid services, content you submit is not used to train Google’s models. Anthropic likewise does not train on commercial API inputs by default. Providers may retain content for a limited period for abuse monitoring under their own API terms. Provider terms can also impose age or eligibility restrictions; STYL must not make an affected AI feature available where those terms do not permit it. See the Face & Appearance Data Notice for the portrait-specific path and retention schedule.

The optional “ideas inspired by a close friend” feature works the same way, in one direction: when you ask for it, STYL sends the text tags (name, category, colors — never photos) of your own closet, alongside the already-shared item tags of the close friend you picked, to the same AI provider, under the same no-tools policy described above. A friend’s items are only ever included if you’ve marked them shared under Section 5, and the model is never given anything beyond those bounded text fields.

5. Friends, sharing, and what other people can see

By default, no other user can see anything in your closet, and Style DNA data is never shared with other users under any circumstance. When you use the optional Friends features:

6. Reporting and blocking (moderation)

Because Friends is user-generated social content, STYL gives you tools to stay safe:

7. Calendar access (Apple Calendar & Google Calendar)

Calendar sync is optional and only happens if you connect a calendar. When you do, STYL asks for calendar permission and uses it as follows:

On iPhone this uses Apple’s EventKit and the calendar-access permission prompt. If you connect a Google Calendar, STYL requests the Google Calendar events scope (calendar.events), which covers reading and writing calendar events. STYL only reads and writes calendar data to power outfit planning — it does not use your calendar for any other purpose, and you can revoke calendar access at any time in your device or Google account settings.

8. Third parties we share data with (sub-processors)

User photos, optional appearance-analysis portraits, tags, optional Your Style text, and optional bounded Apple Calendar agenda context are sent to the processors below only as needed to provide the selected feature.

ProviderWhat they processWhy
SupabaseAccount data, photos, tags, Your Style data (if provided), the derived face/hair profile including face-geometry measurements, waitlist/referral data, closet/social data, and logsDatabase, authentication, file storage, backend hosting
Google (Gemini API)The content of the photos you upload, a downscaled portrait when you explicitly approve cloud appearance analysis, closet text tags, Your Style text (if provided), and bounded Apple Calendar titles/times (when connected and relevant)AI analysis to tag garments, return optional non-diagnostic appearance observations, and suggest outfits
Anthropic (Claude API)Photo content, closet tags, Your Style text (if provided), and bounded Apple Calendar titles/times (when connected and relevant), only when used as a fallbackBackup AI analysis
Google (Sign-In & Calendar)Email + basic profile (if you use Google sign-in); calendar events (if you connect Google Calendar)Authentication and optional calendar sync
AppleSign-in identifier (if you use Sign in with Apple); subscription purchasesAuthentication and App Store billing
RevenueCatYour subscription status and a store identifierManaging subscriptions and entitlements
ResendYour email address and message-delivery metadataSending sign-in, account, waitlist, Line/referral, launch, and early-access emails
Open-MeteoApproximate location (only if you use weather)Local weather lookup

We may also disclose information if required by law, to protect our rights or users’ safety, or in a future business transfer — with notice where required. A current, itemized subprocessor list is available on request at support@styl.fit.

9. Where your data is stored and how we protect it

Data is stored with Supabase in the United States (AWS us-west-2, Oregon). Our security measures include:

We do not currently claim end-to-end encryption (a state in which even STYL’s own servers cannot read your data) — data is encrypted in transit and access-controlled at the database layer, but our backend can technically access stored content as needed to operate the service (e.g., to run AI tagging). No system is perfectly secure, but these protections are the backbone of how STYL keeps your data yours.

If we become aware of a security incident that affects your personal information, we will notify affected users, and any regulators required by applicable law, without undue delay.

10. How long we keep your data

11. Analytics retention and what happens when you delete your account

This is the part we most want to be transparent about.

When you delete your account, STYL permanently deletes all of your personal data and content — your photos and their files, your tags, your Style DNA data, your closet, saved and planned fits, folders, your local and cloud-synced derived appearance profile, your profile and handle, your friendships, and your account itself. This is a real, irreversible hard-delete from STYL’s live systems, not a “deactivate.” Provider abuse-monitoring copies and disaster-recovery backups age out under the limits described in Sections 4 and 10.

What survives deletion is only non-identifying, aggregate product statistics — counts, sums, and histograms that are never tied to your user identity. Before your account is erased, STYL folds your lifetime activity into anonymous running totals and distributions, for example:

Why this is not personal data. These aggregates are pure counts and sums. They contain no photos, no handle, no email, no Style DNA content, and no user identifier — nothing in them points back to you, and they cannot be re-identified. Adding your lifetime numbers into a running total is like adding your vote to an anonymous tally: once counted, there is no way to pull your individual contribution back out. We keep these aggregates to understand how STYL is used overall; we do not keep, and cannot reconstruct, anything about you as an individual after you delete.

You can start deletion yourself, in-app, from the Account menu (Delete Account), or by emailing support@styl.fit.

12. Children’s and teens’ privacy (COPPA, GDPR-K, and age gating)

STYL is built and used by teenagers as well as adults, and we take that seriously. STYL is intended for users aged 13 and older, and account creation requires confirming you meet the applicable minimum age at sign-up (age gating). We do not knowingly collect personal information from children under 13, and we do not knowingly permit anyone under 13 to create an account, consistent with the U.S. Children’s Online Privacy Protection Act (COPPA). If you believe a child under 13 has provided us personal information, contact support@styl.fit and we will investigate and delete it.

If you are in the EEA or UK and under the age of digital consent in your country (which can be up to 16 under GDPR Article 8, sometimes called “GDPR-K”), please use STYL only with a parent or guardian’s verifiable consent. Parents/guardians of a minor user may contact us at support@styl.fit to review, request deletion of, or ask questions about their child’s data. Style DNA fields are opt-in for all users, including minors, and we recommend minors complete them with a parent or guardian if their household prefers. We keep the data STYL collects from teens to what the app needs to work, and we don’t use it for advertising or behavioral profiling. The optional appearance scan is never available to anyone who tells us they are under 13; eligible minors should use it only with a parent or guardian’s involvement and consent where required. Provider rules may require a higher age for particular AI features.

13. Your rights and choices (GDPR, CCPA/CPRA, and beyond)

Depending on where you live, you have some or all of the following rights over your personal information:

To exercise any of these rights, use the in-app controls where available, or email support@styl.fit. We may need to verify your identity before fulfilling a request. You also have the right to lodge a complaint with your local data protection authority (in the EU/UK) or the California Attorney General / California Privacy Protection Agency, as applicable.

14. Your California Privacy Rights (CCPA/CPRA)

This section applies to California residents and supplements the rest of this policy, as required by the California Consumer Privacy Act as amended by the California Privacy Rights Act (together, “CCPA/CPRA”).

Categories of personal information we collect

In the 12 months preceding the date above, STYL has collected the following categories of personal information, as described in Section 2. We collect each category directly from you (or from your device, with your permission), and we use and disclose it only for the purposes described in Sections 3, 4, and 8:

CCPA/CPRA categoryWhat STYL collects
IdentifiersEmail address, account identifier, and — if you use Friends — your chosen handle, display name, and avatar
Audio, electronic, or visual information (photos)The clothing photos you choose to upload and, during optional appearance processing, the portrait you choose; plus the tags and observations generated from them
Commercial informationSubscription tier and status (payment itself is handled by Apple and RevenueCat; we never receive your full card details)
Internet or other electronic network activityApp usage events (sign-ins, uploads, outfit generations, errors) and server-side technical logs
Geolocation data (approximate)Approximate location, only if you use weather features and only with your permission — never a location history
Sensitive personal informationStyle DNA self-descriptions (undertone, body self-description, style identity) and, where applicable, face geometry used for the optional appearance feature — opt-in only, as described in Section 2c
Biometric information where applicableDerived measurements and labels from an on-device scan of face geometry. STYL does not use them to identify or authenticate you.
We do not sell or share your personal information. STYL does not sell personal information, and does not share personal information for cross-context behavioral advertising — for any user of any age. We have no advertising partners, and we have not sold or shared personal information in the preceding 12 months. Because we do not sell or share, there is no “Do Not Sell or Share My Personal Information” toggle to set — that is already how STYL works. We also do not use or disclose sensitive personal information for any purpose other than providing the feature you opted into.

Your rights

How to exercise these rights

Email support@styl.fit with your request, or use the in-app controls (Account menu → Delete Account for deletion; in-app editing for correction). We will verify your identity — usually by confirming control of the email address on your account — and respond within 45 days of receiving a verifiable request (extendable once by a further 45 days where reasonably necessary, in which case we will tell you why). An authorized agent may submit a request on your behalf if the agent provides your signed written permission and we can verify your identity; we may also ask you to confirm the request with us directly.

15. Apple App Store requirements

Consistent with Apple App Store requirements, you can delete your account entirely from within the app (Account menu → Delete Account) — deletion is not limited to a website form. Our declared data collection and tracking status is published in the app’s Apple “Privacy Nutrition Label” (App Privacy details on the App Store product page) and in the app’s privacy manifest, both of which are kept aligned with this policy; see Section 20 for how we handle that alignment.

16. International users and data transfers

Your information is processed in the United States (Section 9), which may have different data-protection laws than your home country. Where GDPR or UK GDPR requires a safeguard for transferring personal data outside the EEA/UK, we rely on appropriate safeguards such as Standard Contractual Clauses or an equivalent lawful transfer mechanism entered into with our subprocessors, where applicable.

17. Changes to this policy

We may update this policy as STYL evolves; we’ll post the new version here and update the date above. Material changes (such as adding a new data category, a new subprocessor, or a new purpose) will be communicated by email or an in-app notice before or at the time they take effect.

18. Contact

Questions or requests: support@styl.fit.

19. Governing law

This policy is governed by the laws of the State of New Jersey, United States, without prejudice to any mandatory data-protection rights you have under the laws of your own country of residence.

20. Keeping this policy, the App Store privacy label, and the privacy manifest in sync

STYL publishes three descriptions of its data practices that must agree: (1) this Privacy Policy, (2) the app’s PrivacyInfo.xcprivacy manifest bundled with the iOS app, and (3) the “App Privacy” nutrition-label answers entered in App Store Connect. Whenever a new data type is collected, a new purpose is added, or a new “required reason” API is adopted, all three must be updated together, before the corresponding app build is submitted for review.