StyleWhiz AI — Privacy Policy
Last updated: July 25, 2026 · Applies to the StyleWhiz AI iOS app (bundle ID com.omaymahalabi.stylewhizai)
Section 1 — Overview
StyleWhiz AI is an adults-only personal styling app. We collect only what we need to provide AI styling features and operate your account. We never sell your personal data or use it for advertising or cross-app tracking.
Section 2 — Data We Collect and How We Collect It
We collect the following data through your use of the app and, for subscription status, from Apple:
- Account data — your email address and, if you provide one, display name when you sign up.
- Subscription and transaction data — Apple StoreKit provides signed purchase information. Restricted backend records include the transaction and original-transaction IDs; your account-binding UUID; bundle and product IDs; production or approved-test environment; purchased or family-shared ownership type; purchase, expiry, revocation, signing, and verification dates; a hash of the signed transaction; and verification source. We use these records to unlock StyleWhiz Pro and restore or verify access. Apple processes payment; we do not receive your full payment-card details.
- Style profile — the gender, age range, and style "vibes" you select during onboarding; styling attributes such as skin undertone suggested from a selfie and saved when that requested analysis completes, optional skin tone, and bounded body-shape and undertone values suggested by an optional strict full-body scan and saved to your style profile only after your explicit confirmation; and optional body details you choose to enter (height, weight, preferred fit, top/bottom clothing sizes, and shoe size). This is used only to personalize your styling recommendations and the appearance transfer you request.
- Activity — the items you favorite, the looks you save, and your swipe history, so your recommendations improve and your saved content stays with your account across devices.
- Photos and optional appearance-validation receipt — the selfie and, if you choose clothing analysis or try-on, the full-body photograph you deliberately capture or choose from your photo library. A strict, versioned appearance-transfer scan also creates a server-only receipt tied to that photo’s exact private storage path. When analysis completes, it records the analysis contract version; bounded detected body-shape and undertone values; confidence; face-visible, full-body-visible, and head-to-toe-visible validation results; and analysis time. If you confirm the transfer profile, it also records the bounded values you confirmed and the confirmation time. See Sections 3 and 6.
- Personal wardrobe items — if you choose My Wardrobe, you deliberately select a clothing-item photo that must not contain a person. We store the original image, an optional AI-generated catalog-style derivative, garment category and colour classifications, descriptive styling attributes, quality results, and creation time under your account. See Sections 4–6.
We do not collect location, contacts, browsing history, or advertising identifiers. Except for the Apple-provided subscription status described above, the information in this section comes directly from your activity in the app.
Section 3 — Face Data: What We Collect
StyleWhiz AI collects only the photographs you choose to upload — a standard two-dimensional selfie and, only if you request clothing analysis or try-on, an optional standard two-dimensional full-body photo. The strict appearance-transfer scan checks that the selected photo contains exactly one person, one clear face, and a complete head-to-toe body view; it does not identify who you are. We do not collect facial geometry, face meshes, faceprints, depth maps, embeddings, biometric identifiers, or reusable biometric or appearance templates; derive body measurements from your photos; or perform facial recognition or use your photo to identify you. You may separately choose to enter height, weight, clothing sizes, shoe size, and fit preferences as described in Section 2. A photo is only ever captured or selected by you; the app never collects photos automatically or in the background.
Section 4 — Photo Data: How We Use It
Your selected photos are used solely to:
- Generate and quality-check AI virtual try-on images — for clothing with an approved, rights-cleared single-adult on-model catalog scene, the catalog image supplies the clothes, pose, camera, crop and framing, lighting, background, and outfit arrangement. Your single validated full-body photo supplies your visible face, hair, skin appearance, build, body shape, continuous body and limb proportions, and other visible appearance. The AI removes the catalog model’s identity and body rather than pasting your face onto the catalog body. Your confirmed bounded body-shape and undertone values are used as preservation constraints, but the selected photo remains the visual authority and the labels must not be used to stereotype or exaggerate you. No separate selfie image is sent during try-on. Product-only clothing references and makeup, accessory, and Mix & Match requests instead keep your photo’s composition. The result is AI-generated and may not exactly match your appearance, proportions, garment details, or real-world fit. The same-request quality check compares the candidate with your photo and confirmed constraints for visible appearance, skin-undertone, body-shape, and proportion consistency and with the approved catalog scene for composition and garment fidelity; it does not identify you or create or compare biometric templates; and
- Suggest styling attributes for your review — skin undertone from a selfie for colour analysis and, only when you separately opt into the strict full-body scan, bounded body-shape and undertone suggestions. The selfie undertone is saved to your style profile when that requested analysis completes. The strict scan must detect exactly one person, one clear face, the full body from head to toe, and sufficient confidence. Its detected values and validation results are stored in the private validation receipt when analysis completes. You may adjust either strict-scan suggestion; neither value is promoted to your style profile or authorized for appearance transfer until you confirm both against that exact photo; and
- Create and classify an optional personal wardrobe item — when you select a clothing-only photo in My Wardrobe, the service attempts to create a clean catalog-style image of that exact item and classify its garment category, colours, and styling attributes. A same-request quality check compares the candidate with your original item and may reject the derivative; if that happens, the original is used instead. The item can then be included in your private wardrobe and Mix & Match suggestions. Do not upload a wardrobe photo containing any person, minor, or explicit content.
There are no other product uses. Your photos are never sold, shared with data brokers, or used for advertising, cross-app tracking, or identification. As described below, paid Gemini API content is not used to improve or train Google’s general-purpose products or models. Google retains prompts, contextual information, and outputs for 55 days for abuse prevention, service safety and security, and required legal or regulatory disclosures.
Section 5 — Face Data: Sharing With Third Parties and Where It Is Stored
After you give explicit permission in the app (see Section 8), your photo is processed by the following service providers:
- Supabase (United States) — your account and styling data are stored in our managed PostgreSQL database. Source photos, generated try-on results, and personal-wardrobe originals and derivatives are stored in private, access-controlled Storage buckets under your account. Temporary signed links are used to access those files.
- Google’s paid Gemini API — for photo analysis, only the photo you choose is sent. For try-on generation, your chosen person photo, selected catalog reference image or images, the server-resolved composition mode, and the item’s non-personal name, category, subcategory, and description are sent. For eligible approved-scene appearance transfer, the bounded body-shape and undertone values you confirmed are also sent as generation and same-request visual-quality constraints; no separate selfie is sent. Visual quality analysis also receives the original person photo, catalog references, and candidate result. If the first candidate fails, one bounded text list of visible defects is sent with the single retry. For My Wardrobe, Google receives the clothing-only photo you select, a request to create a faithful item-only catalog image, and the original plus candidate for garment classification and same-request quality analysis. The same-request comparisons do not identify you or create or compare biometric templates. Google does not use paid API prompts, files, or responses to improve or train its general-purpose products or models. Google retains prompts, contextual information, and outputs for 55 days solely to detect and prevent prohibited use, maintain service safety and security, and make required legal or regulatory disclosures. Content flagged by safety or abuse-detection systems may be assessed by authorized Google employees. Abuse-monitoring data is not used to train or fine-tune AI/ML models other than models used specifically for policy enforcement. These records may be stored transiently or cached in countries where Google or its agents maintain facilities.
- Legacy Amazon Web Services S3 migration or deletion only — new uploads do not use AWS. Only if an account has a verified photo reference from the service’s pre-migration storage may the service retrieve it to migrate it into private Supabase Storage and delete the AWS copy, or contact legacy AWS S3 solely to delete it during photo removal or account deletion.
We do not disclose your photo or face data to other third parties. If you deliberately export or share a generated result through the iOS Share Sheet, the people and services you select receive that result under their own privacy terms. Exported and shared generated images include a visible “AI-generated” label in the image pixels.
Section 6 — Face Data: Retention and Deletion
Your source photos remain in private account storage until you replace or remove them, or delete your account. Replacing or removing a full-body photo deletes its validation receipt as well as the prior stored file. Looks you deliberately save remain available until you delete the look or your account. Personal-wardrobe originals and any generated derivatives remain until you delete that wardrobe item or your account. Unsaved generated try-on results may persist in private storage and are removed opportunistically during later service activity; no fixed deletion window is promised. Deleting your account in Profile → Delete Account permanently removes your account, profile and styling data (email, optional name, verified subscription status, style profile, favorites, saved looks, wardrobe records, and swipe history), private source and wardrobe photos, the appearance-validation receipt, and all remaining private generated-result files. Deleting your StyleWhiz AI account does not cancel an Apple subscription or remove transaction records Apple is required to retain; manage or cancel the subscription separately in your App Store account settings.
Each personal-wardrobe create or delete creates or updates a restricted UUID-linked storage-cleanup receipt. It contains the account and item identifiers, expected object count, creation/completion/next-attempt and optional last-attempt times, a bounded attempt count, an optional bounded error code, and a completion reason. Exact storage paths are cleared when cleanup completes. The remaining receipt is used only to retry exact cleanup and audit whether the item committed or its private storage was removed while your account exists; deleting your account deletes these wardrobe cleanup receipts.
After account deletion, we may retain narrowly restricted technical records outside user-facing app data: a UUID-keyed deletion-control record with deletion status, timestamps, attempt count, and any failure stage; and, only after an ambiguous storage upload requires exceptional manual reconciliation, a UUID-keyed record of the affected operation and storage path, timing, cleanup confirmation, and operator evidence. These records contain no photo bytes, are not used for personalization, and are accessible only to restricted backend or database operators. No fixed retention period is promised for these deletion-control or exceptional reconciliation records.
App-storage deletion does not shorten Google’s separate 55-day abuse-monitoring retention. Google may retain the paid Gemini API inputs, contextual information, and outputs described in Section 5 after you remove a photo or delete your StyleWhiz AI account, solely for the safety, prohibited-use prevention, and legal or regulatory purposes described above.
Section 7 — Storage and Security
All data is transmitted over HTTPS (TLS). Your account and style-profile data (email, display name, style preferences, styling attributes, body details, favorites, saved looks, personal wardrobe, and swipe history) are stored in our managed PostgreSQL database hosted by Supabase. Source photos, wardrobe photos, wardrobe derivatives, and generated try-on images are stored in private Supabase Storage buckets. Row-level and object-level access controls restrict each account to its own records and files, and temporary signed links limit file access.
Section 8 — Your Explicit Permission and Your Choices
StyleWhiz AI never uploads or processes your photo without asking first. The in-app permission screen explains what is processed, who receives it (Supabase and Google’s paid Gemini API), why it is processed, how long it is kept, the conditional catalog and user image roles, My Wardrobe processing, the strict appearance-validation receipt, and AI variability. It requires confirmation that you are 18 or older; a pledge to use only self-photos for person-based styling and only clothing-item photos with no people for My Wardrobe; and acknowledgement of the appearance-transfer roles described in Section 4. Nothing is uploaded if you decline. If you allow, the consent version, time, adult confirmation, and required acknowledgements are saved to your account. Consent version 5 identifies this July 20 disclosure and acknowledgement set and is required for My Wardrobe. Earlier grants remain valid only within their original disclosure scope in older app versions; a current client asks you to renew before using the newly disclosed AI photo purposes. A grant applies to later requests within its disclosed scope until you disable AI, so the app does not technically re-confirm consent for every photo. A further material photo-purpose change requires renewed consent.
You can turn off AI processing in Profile to prevent future AI requests, remove or replace a source photo, delete personal-wardrobe items or saved looks, or delete your account. Withdrawing permission does not undo processing already completed or shorten Google’s limited retention described in Section 5.
Section 9 — Children’s Privacy
StyleWhiz AI is intended only for adults age 18 or older. You must be at least 18 to use the service, and you must not upload a photo of any other person or a minor. If we learn that a minor’s data has been uploaded, we will delete it.
Section 10 — Changes to This Policy
If we change how we handle your data, we will update this policy and the in-app copy, and material changes to photo handling will require your renewed permission in the app.
Section 11 — Contact
Questions or data requests: omaima.rh@gmail.com