Legal
Privacy Policy
Effective July 23, 2026
WooChim handles sensitive information — your photos and body measurements. This policy explains what we collect, how we use it, who processes it, and the control you have. In short: we use your data only to run the Service for you, we never train AI models on it, and we never sell it.
1. What we collect
- Account data — your name, email, and a securely hashed password. If you complete a public profile, the username and bio you choose (these are shown publicly when you post a look).
- Body measurements — the figures you type in (height, weight, chest, waist, hips, and similar), your chosen body type, and skin tone. We do not derive measurements from your photos; body-landmark detection that helps estimate measurements from a photo runs entirely on your own device (see Section 3).
- Photos, including images of your face and body — body and face photos you upload or capture, and garment/product photos you add or import. Face photos may be used to place your likeness on your try-on model. Because some features render an image of you, these photos can constitute sensitive personal information.
- Garments & analyses — the items you save and the fit results, size recommendations, and try-on renders generated for you.
- Usage & event data — a record of actions you take in the app and in the in-store widget (for example: opening the widget, choosing new vs. returning, starting and completing a body profile, generating a try-on, viewing a size recommendation, clicking add-to-cart, and checkout redirects), with timestamps, the page or store context, and device, session, and — when you are signed in — account identifiers.
- Technical & device data — limited logs (approximate region derived from IP, browser/device type, and error/performance/diagnostic data) needed to operate, secure, and debug the Service.
- Billing data — if you buy a plan or credits, our payment processor (Stripe) handles your card details; we receive only a customer/subscription reference and its status — we never see or store full card numbers.
- Waitlist and email consent data — your email address, shopper or retailer audience, signup source, consent version and time, unsubscribe status, and limited delivery history so we can honour and prove your choice.
2. How we use it
- To compute fit scores and size guidance from your measurements and garment data.
- To generate AI virtual try-on images and face-on-model renders from your photos.
- To save your profiles, garments, and history so you can return to them, and to send you service emails (such as a welcome message).
- To measure and improve the Service — understanding which steps people complete or drop at, how accurate size guidance turns out to be, and how features perform. This uses the usage & event data above, both in aggregate and (for signed-in users) at the account level.
- To secure the Service, prevent abuse, and provide support.
- To send launch and product updates when you separately opt in. You can unsubscribe at any time.
We do not use your photos or measurements to train AI models, and we do not sell your personal information to anyone.
3. Who processes your data (sub-processors)
To run WooChim we share specific data with the third-party providers listed below. Each acts as our processor / service provider — they process the data only to provide their service to us, not for their own purposes, and we share only what each one needs. Several are located in the United States, so using WooChim involves transferring your data (including, for the AI providers, images of you) outside your country. By using the Service and uploading content, you consent to these transfers.
- Supabase (database, authentication & file storage) — stores your account, measurements, garments, photos (including face/body images), avatars, try-on renders, saved outfits, legacy media you previously shared, and usage events. Data is protected by row-level security so each account can only access its own data. See supabase.com/privacy.
- Replicate (US — AI model / GPU provider) — to produce a virtual try-on or a face-on-model avatar, your selected body and/or face photo and the garment image are sent to Replicate, processed to create the render, and returned. See replicate.com/privacy.
- Stripe (payments) — handles plan and credit purchases and stores your billing details on its own PCI-compliant systems, not ours. See stripe.com/privacy.
- Resend (US — email delivery) — receives your email address and the message content needed to send account, service, and opted-in waitlist emails. See resend.com/legal/privacy-policy.
- Vercel (US — application hosting & privacy-friendly product analytics) — serves the application and records aggregate, cookie-light page analytics. See vercel.com/legal/privacy-policy.
- Meta, TikTok, and Google (optional advertising measurement) — load only after you choose “Allow.” They receive page-view and conversion events needed to measure ads, but we exclude your photos, measurements, name, and email. Their own privacy policies govern their use of those events.
- Sentry (US — error & performance monitoring) — receives diagnostic error, performance, and technical/device data so we can find and fix problems. We have configured it not to attach personal identifiers, and session-replay diagnostics are set to mask all text and block all images so your photos, measurements, and contact details are not captured. See sentry.io/privacy.
- On-device processing (Google MediaPipe) — body/pose-landmark detection runs in your browser on your device; the photos used for that are not uploaded to Google for it. Only the model/runtime files are downloaded from a public CDN (jsDelivr).
- Have I Been Pwned (password safety check) — when you choose a password we check whether it appears in known data breaches by sending only a short, irreversible hash prefix (k-anonymity); your actual password never leaves your device.
We keep a current list of sub-processors here and will update this policy before adding a new category of provider that materially changes how your data is handled.
4. The in-store widget & shopper data
WooChim is also offered as a widget that retailers embed on their own product pages. When you use it there:
- The measurements you enter and the last photo you used are stored in your own browser (local storage on that device), so the widget can recognise you on return visits. They are not sent to a WooChim account unless you choose “Sync from my account.”
- If you render a try-on in the widget, your photo is sent to our AI render provider (Replicate, US) to create that single image and is not stored on our servers.
- We log the widget's usage & event data (opens, fit checks, renders, size selections) tied to the retailer's store and to a device/session identifier, to operate the widget and produce the analytics described in the next section.
- You can clear this any time using “Forget my saved photo” in the widget, or by clearing your browser storage.
5. Information shared with our business customers (retailers)
Retailers that use WooChim on their stores receive aggregated and de-identifiedanalytics — for example conversion lift, try-on engagement, size-recommendation accuracy, and return-risk indicators for their own products. They do not receive your name, email, photos, or raw measurements through these reports. Where a purchase is attributed to a try-on, only the retailer's own order/transaction data (which it already holds) is matched — we do not disclose your WooChim account to them.
6. Legal basis & consent
Where required, our basis for processing is your consent (which you give at sign-up and by uploading content) and the performance of our contract with you (these Terms). You can withdraw consent by deleting your content or account.
Optional advertising measurement from Meta, TikTok, and Google loads only after you choose “Allow.” It receives page and conversion events, never your photos, measurements, name, or email. You can change that choice at any time.
Waitlist updates use a separate, affirmative opt-in that is not pre-selected or bundled with an account. We record when and how you consented. You can withdraw that consent using the unsubscribe link in any waitlist email or by contacting us.
7. Retention & deletion
- We keep your data while your account is active.
- You can delete individual photos, garments, and analyses at any time in the app.
- You can delete your entire account; we then remove your personal data from active systems, except where we must retain limited records to meet legal obligations. Backups age out on a rolling basis.
- Waitlist entries are kept while the private launch is active and for a reasonable period afterward. If you unsubscribe, we retain the minimum suppression record needed to ensure we do not contact you again unless you later opt in.
8. Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, and to object to or restrict certain processing. Most of these you can do directly in the app; for anything else, contact us at hello@woochim.com and we will respond within a reasonable time.
You may withdraw marketing-email consent at any time using the unsubscribe link in each message. This does not affect essential service messages for an account you separately create.
9. Security
Passwords are hashed, data is transmitted over encrypted connections, and database access is restricted by row-level security so one account cannot read another's data. No system is perfectly secure, but we take reasonable measures to protect your information.
10. Children
WooChim is not intended for anyone under 16. We do not knowingly collect data from children. If you believe a child has provided us data, contact us and we will delete it.
11. Changes
We may update this policy. Material changes will be reflected in the effective date and, where appropriate, we will ask you to review the update.
12. Contact
For privacy questions or requests, email hello@woochim.com.
