FitaFeed

Legal

Privacy Policy

How Fita AI collects, uses, and protects your personal data.

Last updated: 20 May 2026

Short version / TL;DR: We collect only what we need to run the Service. We do not sell your data. Your uploaded photos stay yours. AI providers process your images per-request and do not retain them for training under our agreements. We record anonymised click patterns to improve the product.

1. Who We Are

Fita AI operates fitaai.com — an AI-powered wardrobe management and personal styling service.

Contact: hi@fitaai.com

2. What We Collect

Account data

Name, nickname, email address, phone number, date of birth, gender, profile photo.

Wardrobe & content

Clothing item photos you upload, body silhouette photos used for virtual try-on, generated outfit looks, saved outfits, collections, what-I-wore logs, AI prompt text entered into Ms. Fit chat.

Usage & behavioural data

  • Feature interactions (which AI tools you use, how often, quota usage per bucket)
  • Anonymised click patterns: screen position (as a percentage of viewport, not absolute pixels), UI element labels (e.g. "generate-outfit"), active tab, device type. Stored in our interaction_events system. No personal information is captured in this data.
  • Session identifiers for the above

Social data

Friends connections you initiate, FitCircles you join or create, wardrobe sharing preferences you set (shared only when you enable it).

Inferred data

Style affinities and personalisation scores derived from your interactions with items and outfits.

Payment data

We do not store full payment details. Our payment processor (Razorpay) handles all card/payment data. We store transaction IDs, plan details, and status for your billing history.

Device & technical data

IP address (for security), browser/device type, app version.

3. How We Use It

  • Provide and improve the Service (AI styling, outfit generation, wardrobe management)
  • Personalise AI recommendations
  • Send transactional emails (account, billing)
  • Improve product via anonymised interaction analytics
  • Security and fraud prevention
  • Legal compliance

4. AI Providers — Who Processes Your Data

We use these AI providers to power the Service. Each processes data per-request only; none retain your personal photos or content for their own model training under our API agreements:

  • Google (Gemini AI) — item classification, virtual try-on, silhouette processing, outfit generation, Ms. Fit chat
  • OpenAI (GPT-4o, GPT Image) — item descriptions, studio-quality product images, optional alternative for vision/chat steps

BYOK users: If you are on the Bring Your Own API Key (BYOK) plan, you provide your own API keys for one or more providers. Requests made with your key are subject to that provider's own privacy policy and terms. Fita AI stores your key encrypted and uses it only to route your requests.

5. Payment Processor

Payments are processed by Razorpay. Razorpay's own Privacy Policy and Terms of Use apply to all payment transactions. We may add additional payment gateways in future; their respective policies will apply to transactions processed through them.

6. Data Sharing

We do not sell your data. We share data only with:

  • The AI providers listed above (to perform the requested AI function)
  • Razorpay and future payment gateways (to process payments)
  • Supabase (database, authentication, file storage — your data host)
  • Legal authorities where required by law

7. Data Retention

  • Account + wardrobe data: retained while your account is active
  • Deleted content: removed within 14 days of deletion request
  • Interaction analytics (click patterns): pruned after 90 days
  • Billing records: retained as required by law (typically 7 years)

8. Your Rights (GDPR / CCPA)

  • Access your data
  • Correct inaccurate data
  • Delete your account and all personal data (email hi@fitaai.com)
  • Object to processing
  • Data portability (request export)
  • Opt out of interaction tracking (contact hi@fitaai.com)

To exercise rights: hi@fitaai.com

9. Children

Service not directed to under-16s. We delete any data from under-16s on discovery.

10. Cookies

Session cookies (authentication), preference cookies (theme, language), analytics (anonymised). No advertising cookies.

11. Security

Industry-standard encryption in transit (TLS) and at rest. We notify affected users of breaches as required by law.

12. Contact

hi@fitaai.com