Privacy Policy
Effective Date: December 15, 2024
This Privacy Policy describes how FitSnap ("we," "our," or "us") collects, uses, and protects your personal information when you use our website, Chrome extension, and services (collectively, the "Service"). By using FitSnap, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
1.1 Account Information
When you create an account, we collect:
- Email address (required for authentication)
- Display name (optional)
- Authentication credentials managed by Supabase
- Profile photo URL (if you upload one)
1.2 Reference Photos
When you upload reference photos for virtual try-on, we store these images in our secure Supabase storage bucket ("reference-photos"). These photos are used solely to generate outfit previews and are not shared with third parties except as necessary for AI processing (see Section 3).
1.3 Product Information
When you use our Chrome extension to try on outfits, we may collect:
- Screenshots of product pages you capture
- Product URLs and metadata
- Generated outfit images stored in our "generated-outfits" storage bucket
1.4 Usage Data
We automatically collect:
- FitPoints credit usage and generation history
- Subscription status and billing information (processed by Stripe)
- Browser type, device information, and IP address (for security, fraud prevention, and service reliability)
- Cloudflare Turnstile verification tokens (for bot protection)
1.5 Data Collection Preference
You can control certain data collection preferences through your account settings. We respect your choices and will honor opt-out requests where applicable.
2. How We Use Your Information
We use the collected information for:
- Providing and improving the Service, including AI-powered outfit generation
- Managing your account, FitPoints credits, and subscriptions
- Processing payments securely through Stripe
- Preventing fraud and abuse via Cloudflare Turnstile
- Communicating with you about your account, support requests, or important updates
- Complying with legal obligations and protecting our rights
3. Third-Party Services and Data Sharing
3.1 Supabase
We use Supabase for authentication, database storage, and file storage. Your account data and uploaded photos are stored securely in Supabase's infrastructure. Supabase's privacy policy applies to their handling of your data: https://supabase.com/privacy
3.2 AI Image Generation Services
FitSnap uses third-party AI services to process outfit generation requests. When you request an AI-generated outfit preview, your reference photo and product information are transmitted to third-party AI service providers' servers for processing. By using FitSnap's AI features, you acknowledge that:
- Your images and product information will be processed by third-party AI services and are subject to those services' terms of service and privacy policies
- We do not control third-party AI service providers' data processing practices, retention policies, or security measures
- AI-generated outputs may contain errors, artifacts, or unexpected results, and we do not guarantee accuracy or quality
- You are responsible for reviewing all AI-generated outputs before making any purchasing decisions
We select AI service providers that maintain industry-standard data protection practices, but we cannot guarantee their specific data handling procedures.
3.3 Stripe
Payment processing is handled by Stripe. We do not store your full payment card details; Stripe processes all payment information securely. Stripe's privacy policy applies: https://stripe.com/privacy
3.4 Cloudflare Turnstile
We use Cloudflare Turnstile to protect against bots and abuse. Turnstile may collect certain browser and device information. Cloudflare's privacy policy applies: https://www.cloudflare.com/privacy/
3.5 No Sale of Data
We do not sell, rent, or trade your personal information to third parties for marketing purposes. We only share data as necessary to provide the Service or as required by law.
4. Data Retention
We retain your account information and uploaded photos for as long as your account is active or as needed to provide the Service. Generated outfit images are stored until you delete them or your account is terminated. You can delete your account and associated data at any time through your account settings. Some information may be retained for legal or business purposes (e.g., transaction records for tax compliance) even after account deletion.
5. Your Rights (GDPR and Other Privacy Laws)
Depending on your location, you may have the following rights:
- Access: Request a copy of the personal data we hold about you
- Rectification: Correct inaccurate or incomplete data
- Erasure: Request deletion of your personal data ("right to be forgotten")
- Restriction: Request limitation of processing in certain circumstances
- Data Portability: Receive your data in a structured, commonly used format
- Objection: Object to processing based on legitimate interests
- Withdraw Consent: Withdraw consent where processing is based on consent
To exercise these rights, please contact us at tzepchris@gmail.com. We will respond to your request within 30 days.
6. Security
We implement industry-standard security measures to protect your data, including encryption in transit and at rest, secure authentication via Supabase, and ongoing security monitoring and improvements. However, no method of transmission over the Internet or electronic storage is 100% secure, and we cannot guarantee absolute security.
7. Children's Privacy
FitSnap is not intended for users under the age of 13 (or 16 in the EU). We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately and we will delete it.
8. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. By using FitSnap, you consent to the transfer of your information to these countries. We ensure appropriate safeguards are in place, including standard contractual clauses where applicable.
9. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Effective Date" at the top. Your continued use of the Service after changes become effective constitutes acceptance of the updated policy.
10. Contact Us
If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact us: