Privacy Policy
Effective date: July 9, 2026
How Stylr collects, uses, and protects your data.
1. Who we are
Stylr ("Stylr", "we", "us", or "our") provides an AI-powered personal styling and wardrobe-management mobile application (the "App"), operated by Stylr, based in Zagreb, Croatia. The data controller responsible for your information is Stylr (contact: Brandon Carpenter, brandon@stylrapp.io). For any questions about this Privacy Policy or your data, email support@stylrapp.io or use our contact form.
2. Scope of this policy
This Privacy Policy applies to all users of the Stylr mobile application and the stylrapp.io website. It explains what personal data we collect, why we collect it, how it is used, who it is shared with, how long we keep it, and the rights you have over it. By using Stylr, you agree to the collection and use of information in accordance with this Policy. If you do not agree, please do not use the App.
3. Data we collect
3.1 Information you provide directly
- Account information — name, email address, date of birth, and password (or an authentication token if you sign in via a third-party provider).
- Profile information — gender presentation, body measurements or size range, style preferences, and stated goals within the App.
- Photos you upload — photos of yourself (for virtual try-on and body mapping) and photos of your clothing items (for your digital wardrobe).
- Payment information — subscription and in-app purchases are handled by Apple, Google Play and RevenueCat. We do not store your full card details ourselves.
- Communications — messages you send us through support, feedback forms, or surveys.
3.2 Information collected automatically
- Usage data — features used, screens viewed, session length, outfit interactions, and in-app actions.
- Device data — device type, operating system, unique device identifiers, IP address, and general location (city/region level, derived from IP).
- Crash and diagnostic data — error logs and performance data, used solely to fix bugs and improve stability.
3.3 Special category data: your photos
We treat photos of your face and body with particular care. Depending on the technical implementation of our virtual try-on pipeline, this data may constitute biometric data under Article 9 of the GDPR. Where this is the case, we ask for your separate, explicit consent before processing your photos for try-on purposes, distinct from your general acceptance of this Policy or our Terms of Service. In the mobile app, we request this consent before you upload your first photo, and record the version of this Policy you agreed to. You can withdraw this consent at any time in App > Profile > Privacy; withdrawing consent will disable virtual try-on features but will not affect the rest of your account.
What we do with your photos, in plain terms: when you request a try-on, we send your photo (and the garment image) to our AI providers, which return a new, AI-generated image of you appearing to wear that garment. We also send a selfie to recognise you within a photo that contains more than one person, and send garment photos for automatic recognition and labeling. Your photos are processed only to produce the results you ask for.
4. How we use your data
We use the data described above to:
- Create and maintain your account and digital wardrobe.
- Generate AI-powered outfit recommendations tailored to your wardrobe, body shape, and stated preferences.
- Generate virtual try-on previews using our image-processing pipeline.
- Identify wardrobe gaps and surface relevant "Shop the Gap" product recommendations, some of which are affiliate links (see our Affiliate Disclosure).
- Analyze usage patterns to improve the App and fix bugs.
- Communicate with you about your account, updates, and (only with your consent) marketing.
- Comply with legal obligations and enforce our Terms of Service.
4.1 AI training
Stylr does not use your photos to train AI models. Your photos are used only to generate the try-on previews and recommendations you request, and are processed by our image provider for that purpose alone.
4.2 Automated decision-making and profiling
Stylr's recommendation engine uses profiling: it analyzes your wardrobe, body profile, and stated style preferences to automatically generate outfit suggestions and identify "wardrobe gaps" that inform product recommendations. This is a form of automated processing under Article 22 of the GDPR.
- What is profiled — your uploaded wardrobe items, stated size/body profile, and interaction history within the App (outfits liked, saved, or dismissed).
- Logic used — the recommendation engine matches your profile and wardrobe against styling rules and pattern-matching models to suggest compatible outfits and to flag categories of clothing that are missing or underrepresented.
- Significance for you— these recommendations, including "Shop the Gap" suggestions, are advisory only. They do not result in any legal or similarly significant automated decision about you (we do not use this profiling to determine pricing, eligibility, or access to the App).
You can ask us to explain the logic behind a specific recommendation, object to profiling, or turn off personalized recommendations from App > Profile > Privacy. Turning this off will limit the App's core styling features, since they depend on this processing.
5. Legal basis for processing (GDPR)
For users in the European Economic Area, we process your personal data on the following legal bases:
- Consent — for processing your photos, biometric-adjacent data, and for marketing communications.
- Contract— to provide the App's core functionality that you have signed up for.
- Legitimate interest — for analytics, fraud prevention, and improving the App, balanced against your rights.
- Legal obligation — where we are required to retain or disclose data by law.
5.1 Is providing your data required?
Creating an account requires your email and basic profile information; without it, we cannot provide the Service. Uploading photos is optional, but declining to provide them means you will not be able to use virtual try-on or AI-generated outfit recommendations, since those features depend on this data. You can still use basic wardrobe cataloging without uploading photos of yourself.
6. Our data protection contact
Given the scale and nature of the photo and profiling data Stylr processes, we have designated a privacy lead responsible for data protection. You can contact our privacy lead through our contact form.
7. Third parties we share data with
We share limited personal data with the following categories of service providers, each bound by a data processing agreement:
- Alibaba Cloud (DashScope) — processes uploaded photos to generate virtual try-on images and clean garment extractions.
- OpenAI — processes garment images for recognition and structured auto-labeling.
- SerpApi— retrieves shoppable product matches for "Shop the Gap".
- Clerk — handles authentication and account sessions.
- RevenueCat — processes subscription and purchase data.
- Mixpanel — processes usage and behavioral analytics data.
- Sentry — processes technical error and crash data.
- Awin (and other affiliate networks)— receives anonymized click and conversion data when you interact with a "Shop the Gap" recommendation, to attribute referred purchases.
We do not sell your personal data. We do not share your photos with affiliate partners, advertisers, or any third party for their own marketing purposes.
8. International data transfers
Some of our service providers process data outside the European Economic Area. Where this occurs, we rely on Standard Contractual Clauses (or an applicable adequacy decision) to ensure your data receives an equivalent level of protection. A list of current sub-processors and their locations is available on request.
9. Data retention
- Account data — retained while your account is active, plus 30 days after deletion to allow for account recovery, unless you request immediate erasure.
- Photos uploaded for try-on — retained only as long as needed to generate your result and are deleted shortly afterwards, or immediately on request.
- Wardrobe item photos — retained while the item remains in your digital wardrobe, and deleted within 30 days of removal or account deletion.
- Analytics and diagnostic data — retained for up to 14 months, generally in aggregated or pseudonymized form after that period.
10. Your rights
If you are located in the European Economic Area or Croatia specifically, you have the right to:
- Access the personal data we hold about you.
- Correct inaccurate or incomplete data.
- Request erasure of your data ("right to be forgotten").
- Request a portable copy of your data in a machine-readable format.
- Object to or restrict certain processing, including profiling used for recommendations.
- Withdraw consent at any time, without affecting the lawfulness of processing before withdrawal.
To exercise any of these rights, reach us through our contact form. We will respond within one month as required by GDPR. You also have the right to lodge a complaint with the Croatian Personal Data Protection Agency (AZOP), the supervisory authority for data protection in Croatia, at azop.hr.
11. Data security
We use industry-standard technical and organizational measures to protect your data, in line with Articles 25 and 32 of the GDPR, including:
- Encryption of data in transit and at rest.
- Pseudonymization or encryption of special category data, particularly photos, wherever technically feasible.
- Access controls: personal data is only accessible to authorized personnel via authenticated accounts, on a need-to-know basis.
- Logging of access to sensitive data stores.
- Confidentiality undertakings signed by any staff or contractor with access to data.
- Regular security review of our third-party processors and their safeguards.
No system is completely secure, and we cannot guarantee absolute security, but we are committed to promptly investigating and addressing any suspected breach. In the event of a data breach affecting your personal data, we will notify AZOP within 72 hours as required by law and notify affected users without undue delay where the breach is likely to result in a risk to your rights and freedoms.
12. Children's privacy
Stylr is not intended for use by anyone under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child without appropriate consent, we will delete it promptly.
13. Cookies and tracking
Our website and app use cookies and similar tracking technologies. Details are set out in our separate Cookie Policy.
14. Changes to this policy
We may update this Privacy Policy from time to time. We will notify you of material changes via the App or by email, and will update the "Effective date" above. Continued use of Stylr after changes take effect constitutes acceptance of the revised Policy.
15. Contact us
If you have questions about this Privacy Policy or how we handle your data, contact us through our contact form.