Privacy Policy
WearWhat (穿什么) ("we", "us", "our") provides an AI-powered virtual try-on and digital wardrobe app (the "App"). This Privacy Policy explains what information we collect, how we use it, and the choices you have. By using the App you agree to this Policy.
1. Information we collect
- Account information — when you create an email/password account or sign in with Google or Apple, we receive your email address, display name, and provider user identifier, managed through Google Firebase Authentication.
- Photos you provide — full-body photos of yourself and photos of clothing/garments that you choose to upload to use the try-on and wardrobe features.
- AI-generated images — virtual try-on images created from the photos you provide.
- Profile details you optionally provide — such as gender, body type, height, and style preferences, used to improve try-on results.
- Subscription information — your subscription status, processed through RevenueCat. We do not receive or store your full payment card details; payments are handled by Google Play or the Apple App Store.
- Diagnostics and usage data — crash reports (via Sentry) and pseudonymous product-analytics events such as "opened paywall" or "completed try-on" (via PostHog). These are tied to a random user identifier and never include your photos.
2. How we use your information
- To provide the core service: generate virtual try-on images, store your wardrobe and saved looks, and sync them across your devices.
- To process and manage your subscription.
- To diagnose crashes, prevent abuse, and improve the App.
- To communicate with you about support requests.
3. AI processing and third-party service providers
To create try-on images, the photos you provide are sent to Google's Vertex AI and Gemini image-processing services. We do not use your photos to train general-purpose AI models, and we do not sell your personal information. We rely on the following sub-processors, each under their own privacy terms:
- Google Firebase — authentication, database, file storage, and hosting.
- Google Cloud (Vertex AI / Gemini) — AI image processing.
- RevenueCat — subscription management.
- PostHog — product analytics.
- Sentry — crash and error reporting.
4. Storage and retention
Your data is stored on Google Cloud infrastructure (United States). We retain your information for as long as your account is active. When you delete an individual wardrobe item or saved look, a restricted deletion record may retain its media references and pseudonymous cleanup metadata only until automated cleanup succeeds or a failed cleanup is manually resolved. Completed records have their media references erased, and account deletion removes the records. A cleanup cursor containing no photos or media URLs may retain a truncated one-way owner digest and lease metadata; it is set to expire 24 hours after its last refresh and is subsequently removed asynchronously by managed TTL. After an in-app account deletion successfully completes, your account and active copies of associated photos, wardrobe data, saved looks, AI results, and profile data are removed. Whenever active Cloud Storage media is deleted—whether after an individual item or look deletion or an account deletion—an access-restricted soft-deleted recovery copy may remain for up to 7 days before automatic permanent deletion. A technical deletion lock containing the Firebase uid and one-way recovery digests, but no photos or user content, is used solely to block or clean up delayed uploads. After deletion completes, the lock expires 14 days later and is subsequently removed asynchronously by managed TTL; while deletion remains incomplete, the lock is retained until a retry succeeds or manual handling resolves it. To let an offline or delayed device confirm completion and erase its local copies, we retain without expiration a separate minimal, unenumerable, opaque deletion-recovery proof. It contains no raw identifier, email address, photo, user content, or raw recovery key and is used only for deletion recovery. Subscription, purchase, and pseudonymous diagnostics records may also be retained as described on our data deletion page.
5. Your rights and choices
- Access & correction — you can view and edit your wardrobe, looks, and profile in the App.
- Deletion — you can permanently delete your account and associated data at any time via Profile → Delete account.
- Depending on your location, you may have additional rights under laws such as the GDPR or CCPA. To exercise them, contact us at the email below.
6. Data security
We use encryption in transit, authenticated access, and per-user data isolation so that each user can only access their own data. No method of transmission or storage is 100% secure, but we work to protect your information.
7. Children's privacy
The App is not directed to children under 13 (or under 16 in the EEA/UK). We do not knowingly collect personal information from children. If you believe a child has provided us information, contact us and we will delete it.
8. International users
By using the App, you understand that your information will be processed in the United States and other countries where our service providers operate, which may have different data-protection laws than your country.
9. Changes to this Policy
We may update this Policy from time to time. We will revise the "Last updated" date above and, for material changes, provide notice within the App.
10. Contact us
Questions or requests about your privacy: wearwhatclothes@gmail.com