← Back to Home

Privacy Policy and AI Transparency Notice

Last updated: August 6, 2026

Summary. Fashionista processes wardrobe information, account data, optional approximate location, subscription information, and images you choose to provide. Selected images are sent to Google Gemini when you request AI features. Fashionista does not sell personal data, serve third-party ads, use IDFA, or make decisions producing legal or similarly significant effects.

1. Controller and scope

Fashionista is operated by Simone Bilato, Italy (the “Controller”, “Fashionista”, “we”, “us”, or “our”). This notice describes how we process personal data when you use the Fashionista iOS application (the “App”) and contact us about the App.

Privacy contact: bilato.simone1999@gmail.com. No data protection officer has been appointed because one is not currently required for the processing described in this notice.

2. Eligibility and images of other people

Fashionista is intended only for people aged 18 or older. Do not create an account or use AI features if you are under 18. Do not upload images of minors. Upload a photo of another adult only if you have informed them and have a valid right or permission to use their image for the requested feature.

3. Personal data we process

3.1 Account and authentication data

3.2 Wardrobe, outfit, and style data

3.3 AI avatar and virtual try-on data

3.4 Location and weather

3.5 Subscriptions and purchases

3.6 Usage, device, and guest data

3.7 Device permissions, notifications, and support

4. Purposes and legal bases

Purpose Data Legal basis under GDPR
Account, wardrobe, cloud synchronization, AI features, and requested App functions Account, images, wardrobe, style, avatar, and output data Performance of contract or steps requested before contract (Art. 6(1)(b))
Weather-based recommendations and local notifications Approximate location, weather result, notification preference Consent (Art. 6(1)(a)); withdraw through iOS Settings or App settings
Subscriptions, entitlements, and purchase restoration Account or anonymous ID and transaction status Performance of contract (Art. 6(1)(b)); legal obligations where applicable (Art. 6(1)(c))
Plan limits, security, troubleshooting, compatibility, and service reliability Upload, app-open, device, version, and technical data Legitimate interests in operating and protecting the App (Art. 6(1)(f))
Support, legal claims, and compliance Account, correspondence, and relevant service records Contract, legitimate interests, or legal obligations (Art. 6(1)(b), (c), or (f))

Our legitimate interests are preventing abuse, enforcing feature limits, understanding compatibility, keeping the service secure and reliable, responding to requests, and defending legal claims. You may object as described in Section 10.

5. AI transparency and automated processing

6. Recipients and service providers

Recipient Purpose and data More information
Supabase Authentication, database, cloud storage, wardrobe backup, upload logs, daily app-open events, app alerts, password reset, and account deletion Privacy · DPA
Google Gemini Images, garment metadata, prompts, generated images, and technical data needed for AI analysis and generation Privacy · Gemini API terms
RevenueCat Subscription, entitlement, product, transaction-status, restore, and account-linking data Privacy
WeatherAPI.com Approximate coordinates and technical request data used to provide weather Privacy
Apple App distribution, payments, Sign in with Apple, StoreKit, device permissions, and local notifications Privacy

We may also disclose data when required by law, to protect users or the service, to establish or defend legal claims, or as part of a merger or transfer of the App, subject to applicable safeguards. We do not sell personal data or share it with advertising networks for cross-app tracking.

7. International transfers

Some providers may process data outside Italy or the European Economic Area. Where required, transfers rely on an adequacy decision, the European Commission Standard Contractual Clauses, a provider data processing agreement, and supplementary safeguards. Contact us to request information about safeguards applicable to a particular transfer.

8. Storage and retention

Category Retention criterion
Account and cloud wardrobe data While the account is active or until you delete specific content or the account, followed by provider backup and deletion cycles unless retention is legally required
Local wardrobe, avatar, body-position metrics, and try-on cache Until deleted in the App, replaced, cleared on sign-out/account deletion, or removed by uninstalling the App
Raw avatar capture Temporarily in memory for validation and transmission; not intentionally saved as a separate Fashionista file
Upload and app-open events While needed to enforce plan limits, secure and operate the service, understand version compatibility, or resolve disputes; account-linked records are deleted or de-identified when no longer needed or when applicable deletion is completed
Weather cache and notification settings Weather is periodically replaced; settings remain locally until changed, reset, or the App is removed
Subscription and transaction records Under Apple and RevenueCat retention rules and for periods required by tax, accounting, fraud-prevention, and consumer-protection law
Support correspondence and legal records For as long as needed to answer the request and then as required to establish, exercise, or defend legal claims and meet legal obligations

Google and other providers may retain limited service, security, or legal-compliance records under their own terms. Account deletion cannot erase records that Apple or another independent controller must retain by law.

9. Data security

We use iOS data protection, encrypted network transport, provider access controls, account authentication, and separation of account storage paths. No system is completely secure. Keep your device and account credentials protected and contact us if you suspect unauthorized access.

10. Your rights and choices

Subject to applicable law, you may:

Manage Camera, Photos, Location, and Notifications permissions in iOS Settings. Manage or cancel subscriptions in your Apple App Store account. Contact us to exercise a privacy right. We may request reasonable information to verify your identity.

Italian authority: Garante per la protezione dei dati personali.

11. Deletion and guest mode

12. Required and optional data

Account and authentication data are required for account-based cloud sync. Images and wardrobe details are required only for the features you choose to use. Approximate location, notifications, avatar, and AI Try-On are optional. Refusing optional data disables only the related feature. You can use guest mode for supported local features, subject to its limits.

13. Changes to this notice

We may update this notice when the App, providers, or law changes. We will update the date above and, where required, provide an in-App or other prominent notice before material changes take effect.

14. Contact

Controller: Simone Bilato, Italy
Email: bilato.simone1999@gmail.com

Informativa Privacy e Trasparenza AI

Ultimo aggiornamento: 6 agosto 2026

In sintesi. Fashionista tratta informazioni sul guardaroba, dati account, posizione approssimativa facoltativa, informazioni sugli abbonamenti e immagini scelte dall’utente. Alcune immagini vengono inviate a Google Gemini quando l’utente richiede funzioni AI. Fashionista non vende dati personali, non mostra pubblicità di terze parti, non usa IDFA e non adotta decisioni con effetti giuridici o analogamente significativi.

1. Titolare e ambito

Fashionista è gestita da Simone Bilato, Italia (il “Titolare”, “Fashionista”, “noi” o “nostro”). Questa informativa descrive il trattamento dei dati personali durante l’uso dell’applicazione Fashionista per iOS (l’“App”) e nei contatti relativi all’App.

Contatto privacy: bilato.simone1999@gmail.com. Non è stato nominato un responsabile della protezione dei dati perché, allo stato, non risulta obbligatorio per i trattamenti descritti.

2. Età e immagini di altre persone

Fashionista è destinata esclusivamente a persone di almeno 18 anni. Chi ha meno di 18 anni non deve creare un account o usare le funzioni AI. Non caricare immagini di minori. Carica la foto di un altro adulto solo dopo averlo informato e se disponi di un valido diritto o permesso per usarla nella funzione richiesta.

3. Dati personali trattati

3.1 Account e autenticazione

3.2 Guardaroba, outfit e stile

3.3 Avatar AI e prova virtuale

3.4 Posizione e meteo

3.5 Abbonamenti e acquisti

3.6 Utilizzo, dispositivo e modalità ospite

3.7 Permessi, notifiche e supporto

4. Finalità e basi giuridiche

Finalità Dati Base giuridica GDPR
Account, guardaroba, sincronizzazione cloud, AI e funzioni richieste Account, immagini, guardaroba, stile, avatar e risultati Esecuzione del contratto o misure precontrattuali richieste (Art. 6(1)(b))
Suggerimenti meteo e notifiche locali Posizione approssimativa, meteo e preferenze notifiche Consenso (Art. 6(1)(a)); revocabile dalle impostazioni iOS o App
Abbonamenti, diritti e ripristino acquisti ID account o anonimo e stato transazioni Contratto (Art. 6(1)(b)); obbligo legale ove applicabile (Art. 6(1)(c))
Limiti piano, sicurezza, diagnosi, compatibilità e affidabilità Upload, aperture, dispositivo, versione e dati tecnici Legittimo interesse a gestire e proteggere l’App (Art. 6(1)(f))
Supporto, controversie e adempimenti Account, corrispondenza e registri pertinenti Contratto, legittimo interesse o obbligo legale (Art. 6(1)(b), (c) o (f))

I legittimi interessi comprendono prevenzione abusi, applicazione limiti, compatibilità, sicurezza e affidabilità, risposta alle richieste e difesa di diritti. È possibile opporsi come indicato nella Sezione 10.

5. Trasparenza AI e trattamenti automatizzati

6. Destinatari e fornitori

Destinatario Finalità e dati Informazioni
Supabase Autenticazione, database, cloud, backup guardaroba, log upload, aperture giornaliere, avvisi, reset password e cancellazione account Privacy · DPA
Google Gemini Immagini, metadati capi, prompt, immagini generate e dati tecnici necessari per analisi e generazione AI Privacy · Termini Gemini API
RevenueCat Abbonamenti, diritti, prodotti, stato transazioni, ripristini e collegamento account Privacy
WeatherAPI.com Coordinate approssimative e dati tecnici necessari a fornire il meteo Privacy
Apple Distribuzione App, pagamenti, Accedi con Apple, StoreKit, permessi e notifiche locali Privacy

Possiamo comunicare dati quando richiesto dalla legge, per proteggere utenti o servizio, accertare o difendere diritti, oppure in una fusione o trasferimento dell’App, con le garanzie applicabili. Non vendiamo dati personali e non li condividiamo con reti pubblicitarie per tracciamento tra app.

7. Trasferimenti internazionali

Alcuni fornitori possono trattare dati fuori dall’Italia o dallo Spazio Economico Europeo. Quando richiesto, i trasferimenti si basano su decisione di adeguatezza, Clausole Contrattuali Standard della Commissione europea, accordi sul trattamento e misure supplementari. Contattaci per informazioni sulle garanzie applicabili a uno specifico trasferimento.

8. Conservazione

Categoria Criterio di conservazione
Account e guardaroba cloud Finché l’account è attivo o fino alla cancellazione del contenuto/account, seguita dai cicli tecnici di backup e rimozione del fornitore, salvo obblighi legali
Guardaroba locale, avatar, metriche corpo e cache try-on Fino alla cancellazione nell’App, sostituzione, pulizia con logout/cancellazione account o disinstallazione
Scatto avatar sorgente Temporaneamente in memoria per verifica e trasmissione; non salvato intenzionalmente come file Fashionista separato
Eventi upload e apertura App Finché necessari per limiti piano, sicurezza, funzionamento, compatibilità o controversie; i dati collegati all’account vengono eliminati o de-identificati quando non più necessari o completata la cancellazione applicabile
Cache meteo e notifiche Il meteo viene sostituito periodicamente; le impostazioni restano finché modificate, azzerate o l’App viene rimossa
Abbonamenti e transazioni Secondo regole Apple e RevenueCat e per periodi richiesti da norme fiscali, contabili, antifrode e tutela consumatori
Supporto e registri legali Per rispondere alla richiesta e poi quanto necessario per accertare, esercitare o difendere diritti e adempiere obblighi

Google e altri fornitori possono conservare registri limitati per sicurezza, servizio o legge secondo i propri termini. La cancellazione account non può eliminare registri che Apple o altro titolare autonomo debba conservare per legge.

9. Sicurezza

Usiamo protezione dati iOS, trasporto di rete cifrato, controlli di accesso dei fornitori, autenticazione e separazione dei percorsi cloud per account. Nessun sistema è totalmente sicuro. Proteggi dispositivo e credenziali e contattaci se sospetti accessi non autorizzati.

10. Diritti e scelte

Nei limiti della legge applicabile, puoi:

Gestisci Fotocamera, Foto, Posizione e Notifiche nelle impostazioni iOS. Gestisci o annulla abbonamenti dall’account Apple App Store. Contattaci per esercitare un diritto. Potremo chiedere informazioni ragionevoli per verificare l’identità.

Autorità italiana: Garante per la protezione dei dati personali.

11. Cancellazione e modalità ospite

12. Dati necessari e facoltativi

Account e autenticazione sono necessari per sincronizzazione cloud con account. Immagini e dettagli guardaroba servono solo alle funzioni scelte. Posizione, notifiche, avatar e AI Try-On sono facoltativi. Rifiutare dati facoltativi disabilita solo la relativa funzione. La modalità ospite consente le funzioni locali supportate, con i relativi limiti.

13. Modifiche

Possiamo aggiornare l’informativa quando cambiano App, fornitori o legge. Aggiorneremo la data e, quando richiesto, mostreremo un avviso nell’App o altro avviso evidente prima di modifiche sostanziali.

14. Contatti

Titolare: Simone Bilato, Italia
Email: bilato.simone1999@gmail.com