Introduction
Smart Fashion Visualizer ("the App", "we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Shopify application.
Information We Collect
Store Information
When you install the App, we collect:
- Store Name: Your Shopify store name and domain
- Store Owner Email: For account management and support
- Shop ID: Unique identifier for your Shopify store
Product Data
To provide AI enhancement services, we access:
- Product Images: Images you select for enhancement
- Product Titles: For task organization and labeling
- Product IDs: To attach generated media to correct products
Usage Data
We collect information about how you use the App:
- Task Creation Timestamps: When you create AI generation tasks
- Generation Counts: Number of images/videos generated (for billing)
- Task Status: Processing, completed, or cancelled states
- Subscription Plan: Which billing plan you're subscribed to
How We Use Your Information
- Provide Services: Generate AI-enhanced images and videos, store and retrieve your tasks, attach generated media to your products
- Billing & Account Management: Track monthly usage for billing, enforce subscription plan limits, process payments via Shopify Billing API
- Improve Our Service: Analyze usage patterns to improve features, debug technical issues, optimize AI generation quality
- Support & Communication: Respond to support requests, send important service updates, notify about billing or account issues
Data Storage & Retention
Retention Periods
We retain your data for the following periods:
- Task Data: 30 days after creation, then automatically deleted
- Product Images (Processing): Deleted within 24 hours after AI processing completes
- Feedback Submissions: Retained until resolved or 90 days, whichever is sooner
- Billing Records: Retained as required by law (typically 7 years)
- All App Data: Automatically deleted 48 hours after you uninstall the App
Storage Locations
Firebase Firestore
- Task Metadata: Stored for 30 days, then automatically deleted
- Location: Google Cloud servers (secure, encrypted)
- Access: Server-side only via Firebase Admin SDK
- Security: Client-side access blocked by Firebase security rules
Shopify Files API
- Generated Media: Stored in your Shopify store's file library
- Ownership: You own all generated media
- Control: You can delete media anytime via Shopify admin
Temporary Processing
- Uploaded Images: Stored temporarily during AI processing (deleted within 24 hours)
- No Permanent Storage: We do not permanently store your product images
Data Sharing & Third-Party Services
We use the following third-party services:
AI Processing Services
- PiAPI / Kling AI: AI image and video generation
- Purpose: Generate virtual try-on images and product videos
- Data Shared: Product images (temporarily during processing)
- Data Retention: Images deleted after processing completes
- Privacy Policy: https://piapi.ai/privacy | https://klingai.com/privacy
Firebase (Google Cloud)
- Purpose: Database for task management and feedback storage
- Data Shared: Task metadata, shop domain, task status, feedback submissions
- Data Location: Google Cloud Platform (encrypted at rest and in transit)
- Privacy Policy: https://firebase.google.com/support/privacy
Shopify
- Purpose: Store authentication, product data, billing processing
- Integration: Official Shopify Embedded App
- Privacy Policy: https://www.shopify.com/legal/privacy
We DO NOT:
- ❌ Sell or rent your data to third parties
- ❌ Use your data for advertising
- ❌ Share data with unauthorized parties
- ❌ Store customer personal information (names, emails, addresses)
GDPR Compliance & Your Rights
We are committed to compliance with the General Data Protection Regulation (GDPR) and other privacy laws.
Your Rights Under GDPR
If you are located in the European Economic Area (EEA), you have the following rights:
- Right to Access: Request a copy of your personal data we hold
- Right to Deletion (Right to be Forgotten): Request deletion of your personal data
- Right to Rectification: Request correction of inaccurate or incomplete data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to certain data processing activities
- Right to Restrict Processing: Request limitation of data processing
- Right to Withdraw Consent: Withdraw consent for data processing at any time
How to Exercise Your Rights
Access Your Data:
- View your tasks: Navigate to Task Dashboard in the app
- Request full data export: Contact us at contact@smartfashionvisualizer.com
- Response time: Within 30 days as required by GDPR
Delete Your Data:
- Option 1: Uninstall the App from your Shopify store (all data deleted within 48 hours)
- Option 2: Contact Shopify support to trigger a GDPR deletion request
- Option 3: Email us at contact@smartfashionvisualizer.com to request manual deletion
What Gets Deleted:
- All task data and metadata
- All feedback submissions
- Shop configuration and settings
- Usage history and statistics
- Session data and authentication tokens
What Remains:
- Anonymized aggregate statistics (cannot identify you)
- Billing records (required by law for 7 years)
- Generated media in your Shopify store (you own this)
GDPR Webhooks
We have implemented Shopify's mandatory GDPR webhooks:
- customers/data_request: Provides your data within 30 days
- customers/redact: Deletes customer-specific data on request
- shop/redact: Deletes all shop data 48 hours after uninstall
Legal Basis for Processing
We process your data under the following legal bases:
- Contract Performance: To provide the AI generation services you requested
- Legitimate Interest: To improve our services and provide support
- Legal Obligation: To comply with billing and tax laws
- Consent: For optional features like feedback submission
Data Protection Officer
For GDPR-related inquiries, contact our privacy team:
Email: contact@smartfashionvisualizer.com
Subject Line: "GDPR Request" or "Privacy Inquiry"
Response Time: Within 30 days as required by GDPR
California Privacy Rights (CCPA)
Your Rights Under CCPA
California residents have the following rights:
- Right to Know: What personal information we collect and how we use it
- Right to Delete: Request deletion of your personal information
- Right to Opt-Out: We do not sell personal data, so opt-out is not applicable
- Right to Non-Discrimination: We will not discriminate against you for exercising your rights
Personal Information Categories Collected
Under CCPA, we collect the following categories:
- Identifiers (shop domain, email)
- Commercial information (subscription plan, usage data)
- Internet/network activity (task creation, app usage)
We DO NOT:
- ❌ Sell personal information to third parties
- ❌ Share data for cross-context behavioral advertising
- ❌ Collect sensitive personal information (race, religion, health data, etc.)
International Data Transfers
Your data may be transferred to and processed in countries outside your country of residence, including the United States. We ensure adequate protections through:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Data Processing Agreements with all third-party service providers
- Encryption in transit and at rest
- Regular security audits and compliance reviews
Children's Privacy
Our App is not intended for use by individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately.
Security Measures
We implement industry-standard security measures to protect your data:
- Encryption: All data encrypted in transit (TLS/SSL) and at rest
- Authentication: Shopify OAuth for secure store access
- Access Control: Server-side only data access, no client-side exposure
- Firebase Security Rules: Block all client-side database access
- Regular Audits: Security reviews and vulnerability scanning
- Automatic Deletion: Scheduled cleanup of expired data
Changes to This Policy
We may update this Privacy Policy from time to time. When we make changes:
- We will update the "Last Updated" date at the top
- Significant changes will be communicated via email or in-app notification
- Continued use of the App after changes constitutes acceptance
Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your data:
General Inquiries:
Email: contact@smartfashionvisualizer.com
Response Time: Within 48 hours
GDPR / Privacy Requests:
Email: contact@smartfashionvisualizer.com
Subject: "GDPR Request" or "Privacy Request"
Response Time: Within 30 days (as required by GDPR)
Data Breach Notification:
In the unlikely event of a data breach affecting your personal data, we will notify you within 72 hours as required by GDPR and applicable laws.