Privacy Policy

Privacy Policy

DressYou

Last updated: April 24, 2026

1. Introduction

Welcome to DressYou ("we," "our," or "us"). We are committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application DressYou (the "App") and our website (collectively, the "Services").

By using our Services, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with our policies, please do not use our Services.

2. Information We Collect

2.1 Information You Provide

Data Type

Description

Purpose

Account Information

Email address, username, password

Account creation and authentication

Profile Information

Display name, profile picture (optional)

Personalization

Wardrobe Data

Photos of clothing items you upload

Core app functionality (AI categorization)

Avatar Photo

Optional one-time full-body photo

AI outfit visualization on your own avatar (opt-in)

Style Preferences

Preferred styles, colors, occasions

AI outfit recommendations

User Content

Outfit combinations, suitcase packing lists

App features

2.2 Information Collected Automatically

Data Type

Description

Purpose

Device Information

Device type, operating system, unique device identifiers

App optimization, troubleshooting

Advertising Identifier (IDFA)

Apple Advertising Identifier, collected only with your consent via the App Tracking Transparency prompt

Advertising attribution and measurement

Usage Data

Features used, time spent, interactions

Improve user experience

Log Data

IP address, access times, app crashes

Security, debugging

Analytics Data

Aggregated usage statistics

Product improvement

2.3 Information from Third Parties

Authentication Providers: If you sign in via Apple or Google, we receive basic profile information (email, name) as permitted by you.

Payment Processors: We receive confirmation of subscription status but do NOT receive or store your payment card details.

3. How We Use Your Information

We use your information for the following purposes:

Service Delivery

  • Provide, maintain, and improve our Services

  • Process your clothing photos using AI to analyze and categorize items

  • Generate personalized outfit recommendations and AI outfit visualizations

  • Enable wardrobe organization and tracking features

  • Process subscriptions and manage your account

Communication

  • Send service-related notifications (e.g., account verification, updates)

  • Respond to your inquiries and support requests

  • Send promotional communications (only with your consent)

Improvement & Analytics

  • Analyze usage patterns to improve our Services

  • Develop new features and functionality

  • Conduct research and analytics

Advertising & Attribution (with your consent)

  • Measure the effectiveness of our advertising campaigns

  • Attribute app installs and in-app events to advertising sources

  • These activities only occur if you grant permission via the App Tracking Transparency prompt

Legal & Security

  • Detect, prevent, and address fraud or security issues

  • Comply with legal obligations

  • Enforce our Terms of Service

4. How We Share Your Information

We do NOT sell your personal data. We may share your information with the following parties:

4.1 Service Providers

Provider

Purpose

Data Shared

Supabase

Database & authentication

Account data, wardrobe data

Anthropic (Claude API)

AI clothing categorization (item type, color, category)

Wardrobe images. Per Anthropic's commercial API terms, inputs are not used to train models and are not retained beyond processing the request.

Google (Gemini API)

AI outfit visualization on user avatar

Wardrobe images and optional Avatar photo. Per Google's commercial API terms, inputs are not used to train models and are not retained beyond processing the request.

RevenueCat

Subscription management

User ID, subscription status

AppsFlyer

Mobile attribution and analytics

Device identifiers, IDFA (only with ATT consent), install and in-app event data

Meta

Advertising attribution and measurement

Conversion events and hashed identifiers transmitted via AppsFlyer postbacks (only with ATT consent)

PostHog

Product analytics

Anonymized usage data, device information

Apple App Store / Google Play

Payment processing

Payment handled entirely by the platform

4.2 Other Disclosures

We may disclose your information:

  • With your consent: When you explicitly agree to sharing

  • For legal reasons: To comply with laws, regulations, legal processes, or government requests

  • For protection: To protect the rights, property, or safety of DressYou, our users, or others

  • Business transfers: In connection with a merger, acquisition, or sale of assets (you will be notified)

5. Your Rights and Choices

5.1 All Users

You have the right to:

  • Access: View the personal data we hold about you

  • Export: Download your data in a portable format

  • Correction: Update or correct inaccurate information

  • Deletion: Request deletion of your account and associated data

  • Opt-out: Unsubscribe from marketing communications

  • Tracking choice (iOS): Decline or revoke tracking consent at any time via your device's Settings > Privacy & Security > Tracking

You can exercise these rights directly in the App under Settings > Privacy or by contacting us.

5.2 European Users (GDPR)

If you are in the European Economic Area (EEA), UK, or Switzerland, you have additional rights under GDPR:

  • Right to Access (Art. 15): Obtain confirmation and a copy of your personal data

  • Right to Rectification (Art. 16): Correct inaccurate personal data

  • Right to Erasure (Art. 17): Request deletion ("right to be forgotten")

  • Right to Restriction (Art. 18): Restrict processing under certain conditions

  • Right to Data Portability (Art. 20): Receive your data in a machine-readable format

  • Right to Object (Art. 21): Object to processing based on legitimate interests

  • Right to Withdraw Consent (Art. 7): Withdraw consent at any time

Legal Basis for Processing:

  • Contract: To provide our Services to you

  • Consent: For marketing communications, advertising attribution (ATT), and optional features

  • Legitimate Interests: For analytics, security, and service improvement

You may lodge a complaint with your local Data Protection Authority.

5.3 California Users (CCPA/CPRA)

If you are a California resident, you have the following rights:

  • Right to Know: What personal information we collect, use, and disclose

  • Right to Delete: Request deletion of your personal information

  • Right to Opt-Out: Opt out of the sale of personal information (we do NOT sell your data)

  • Right to Non-Discrimination: We will not discriminate against you for exercising your rights

  • Right to Correct: Correct inaccurate personal information

Categories of Personal Information Collected:

  • Identifiers (email, username, device ID, advertising identifier with consent)

  • Photos (clothing images and optional avatar photo you upload)

  • Commercial information (subscription history)

  • Usage data (app interactions)

To exercise your rights, contact us at privacy@dressyou.app or use the in-app privacy settings.

6. Data Security

We implement appropriate technical and organizational measures to protect your personal data:

  • Encryption: Data is encrypted in transit (TLS/SSL) and at rest

  • Secure Authentication: Passwords are hashed and salted; we support secure sign-in via Apple and Google

  • Access Controls: Limited employee access to personal data on a need-to-know basis

  • Infrastructure: Data hosted on secure, SOC 2 compliant cloud infrastructure

  • Regular Audits: Periodic security assessments and vulnerability testing

While we strive to protect your information, no method of transmission or storage is 100% secure. If you become aware of any security issues, please contact us immediately.

7. Data Retention

We retain your personal data for as long as your account is active, needed to provide our Services, or required by law or for legitimate business purposes.

Retention periods:

Data Type

Retention Period

Account data

Until account deletion + 30 days

Wardrobe images

Until deleted by you or account deletion

Avatar photo

Until deleted by you or account deletion

Usage analytics

24 months (anonymized)

Attribution data

24 months

Support communications

3 years

Upon account deletion, we will delete or anonymize your personal data within 30 days, except where retention is required by law.

8. Children's Privacy

Our Services are not intended for children under 13 years of age (or 16 in the EEA). We do not knowingly collect personal information from children under these ages.

If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. If we become aware that we have collected personal data from a child without parental consent, we will take steps to delete that information.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence, including the United States, where our servers and service providers are located.

For transfers from the EEA, UK, or Switzerland, we rely on:

  • Standard Contractual Clauses (SCCs) approved by the European Commission

  • Adequacy decisions where applicable

  • Your explicit consent where required

10. Third-Party Links

Our Services may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to read their privacy policies.

11. Push Notifications

With your consent, we may send push notifications about:

  • Outfit suggestions

  • Style tips and reminders

  • App updates and new features

  • Promotional offers (Pro subscription)

You can disable push notifications in your device settings at any time.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by:

  • Posting the new Privacy Policy in the App

  • Updating the "Last updated" date

  • Sending you a notification (for significant changes)

Your continued use of the Services after changes constitutes acceptance of the updated Privacy Policy.

13. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:

DressYou — operated by Heiyu Global Limited (BRN: 78282931) Email: privacy@dressyou.app Address: Flat 5, 4/F, Won Hing Building, 74–78 Stanley Street, Central, Hong Kong

For GDPR inquiries (EU users): Data Protection Officer: dpo@dressyou.app

14. App Store Specific Disclosures

Apple App Store (iOS)

In accordance with Apple's App Store Guidelines, we disclose:

  • Data Used to Track You (collected only if you grant consent via the App Tracking Transparency prompt):

    • Device ID / Advertising Identifier (IDFA)

    • Product Interaction data

    • Purchases

    • These data points are used for advertising attribution via AppsFlyer and Meta. If you decline the ATT prompt, we do not track your activity across other apps or websites for advertising purposes.

  • Data Linked to You:

    • Email, photos (wardrobe and optional avatar), user content, purchases, usage data, device identifiers

  • Data Not Linked to You:

    • Crash data, performance data, anonymized analytics

Google Play Store (Android)

In accordance with Google Play's Data Safety requirements:

  • Data shared: None sold to third parties

  • Data collected: Email, photos, app interactions, purchase history

  • Security practices: Data encrypted in transit, you can request deletion