Effective Date: to be set on launch
Last Updated: to be set on launch
Stylist by Puzzlax ("we," "us," "our") respects your privacy. This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our mobile application Stylist by Puzzlax (the "App").
By using the App, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
1.1 Information You Provide
Account Information. When you create an account, we collect:
- Email address
- Password (stored as a cryptographic hash; we never see your plaintext password)
- Display name (optional)
Wardrobe Data. When you use the App, we collect:
- Photos of clothing items you upload
- AI-generated tags (category, color, material, style attributes)
- Outfit combinations you create
- Wear history (when you mark items as worn)
- Optional notes, brand names, and other metadata you add manually
Brief Inputs. When you request outfit recommendations, we collect:
- Occasion, mood, weather context, and other contextual inputs you provide
- Your selections from suggested outfits
1.2 Information Collected Automatically
- Device Information: Device model, operating system version, app version, language, time zone
- Usage Data: Features used, screens viewed, session duration, error logs
- Approximate Location: Derived from IP address (city-level, used for weather context only — we do NOT collect precise GPS location)
1.3 Information We Do NOT Collect
We do not collect:
- Your contacts, calendar, or other apps' data
- Your browsing history outside the App
- Biometric or health data
- Precise GPS location
2. How We Use Your Information
We use your information to:
- Provide core App functionality (storing your wardrobe, generating recommendations, tracking wear)
- Improve AI recognition accuracy (anonymized, aggregated photo features only — see Section 5)
- Respond to your support requests
- Detect and prevent fraud, abuse, and security threats
- Comply with legal obligations
We do NOT:
- Sell your personal data to third parties
- Share your wardrobe photos with advertisers
- Use your data to target you with third-party advertising
- Train commercial AI models on your photos
3. Third-Party Services We Use
We rely on the following third-party services to operate the App:
OpenAI (GPT-4o-mini) — for clothing item recognition. When you upload a photo, the photo is sent to OpenAI's API for AI tagging. OpenAI does not retain photos for training. See OpenAI's privacy policy: https://openai.com/policies/privacy-policy
Cloudinary — for image storage and delivery. Photos are stored on Cloudinary's secure infrastructure. See: https://cloudinary.com/privacy
Railway (Postgres database) — for storing your account data, wardrobe metadata, and app state. See: https://railway.com/legal/privacy
Apple App Store / Google Play — for app distribution. Subject to their respective privacy policies.
We have data processing agreements (or equivalent commitments) with these providers.
4. Data Storage and Security
- All data is transmitted over encrypted connections (HTTPS/TLS 1.2+)
- Passwords are hashed using bcrypt
- Photos are stored with access controls limiting visibility to your account only
- We retain backups for disaster recovery (up to 30 days)
While we apply industry-standard security measures, no system is 100% secure. We cannot guarantee absolute security but commit to promptly notifying you of any data breach affecting your account, in accordance with applicable law.
5. AI Training and Improvement
We may use anonymized, aggregated features of clothing photos (such as dominant colors, category labels, generic shape descriptors) to improve our AI recognition models. We do NOT:
- Use your photos for training commercial third-party AI models
- Associate aggregated training data with your identity
- Retain identifiable photos in our training datasets
You can opt out of contributing to AI improvement at any time via App Settings.
6. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access your personal data
- Correct inaccurate data
- Delete your account and all associated data
- Export your data in a portable format
- Object to certain processing activities
- Withdraw consent where processing is based on consent
To exercise these rights, contact us at ilan@puzzlax.com. We respond within 30 days.
Specific Regional Rights
European Economic Area (GDPR): You have rights under the General Data Protection Regulation. Our legal basis for processing is contract performance (Article 6(1)(b)) and legitimate interests (Article 6(1)(f)) for security and improvement.
California (CCPA/CPRA): California residents have rights under the California Consumer Privacy Act. We do not sell personal information.
7. Account Deletion
You can delete your account at any time:
- In the App: Settings → Account → Delete Account
- By email: ilan@puzzlax.com
Upon deletion, we permanently remove your data within 30 days, except where retention is required by law (e.g., financial records for tax compliance).
8. Children's Privacy
The App is not intended for users under 13 years of age (or 16 in the EEA). We do not knowingly collect data from children. If you believe a child has provided us data, contact us immediately at ilan@puzzlax.com.
9. International Data Transfers
Your data may be processed in the United States, European Union, or other countries where our service providers operate. We rely on standard contractual clauses or equivalent safeguards for transfers outside your jurisdiction.
10. Changes to This Policy
We may update this Privacy Policy. Significant changes will be notified via in-app notice or email at least 7 days before taking effect. The "Last Updated" date at the top reflects the most recent revision.
11. Contact Us
For privacy questions or to exercise your rights:
Email: ilan@puzzlax.com
Postal: Puzzlax Ltd., Sahlav 6A, Haifa 3479006, Israel