Privacy Policy

Last Updated: January 2025

1. Introduction

Welcome to Dress Social. We are committed to protecting your privacy and ensuring you have a positive experience using our virtual fitting room Chrome extension and web application. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our services.

By using Dress Social, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Email address, username, and password (encrypted) when you create an account
  • User Photos: Photos you upload for virtual try-on features
  • Clipped Items: Clothing item images, names, and URLs you clip from ecommerce websites
  • Outfit Data: Outfit combinations you create and save
  • Social Interactions: Friend connections, outfit shares, and comments you make

2.2 Automatically Collected Information

  • Usage Data: Features you use, interactions within the extension, and time spent
  • Device Information: Browser type, operating system, and extension version
  • Technical Data: Error logs and performance metrics to improve our service

2.3 Information from Third Parties

  • Ecommerce Sites: Product images and metadata (name, URL, price) when you clip items - we do not collect personal information from these sites
  • Authentication Provider: Amazon Cognito handles user authentication securely

3. How We Use Your Information

We use your information to:

  • Provide and maintain the Dress Social service
  • Generate AI-powered virtual try-on images using your photos and clipped clothing items
  • Store your wardrobe, outfits, and photos for quick access
  • Enable social features like friend connections and outfit sharing
  • Sync your data across devices
  • Send notifications about outfit shares and friend activity
  • Improve our service through analytics and error monitoring
  • Respond to your support requests and provide customer service
  • Ensure security and prevent fraud or abuse

4. Data Storage and Security

4.1 Where We Store Your Data

  • Chrome Local Storage: Temporary caching of items and preferences in your browser
  • AWS Infrastructure: Secure cloud storage using Amazon DynamoDB (database), S3 (images), and CloudFront (CDN)
  • Region: US East (Ohio) data center

4.2 How We Protect Your Data

  • Encryption in transit (HTTPS/TLS) and at rest (AES-256)
  • Secure authentication using Amazon Cognito with JWT tokens
  • Access controls and least-privilege principles
  • Regular security audits and monitoring
  • Passwords are hashed and never stored in plain text

Note: No method of transmission over the internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your data, we cannot guarantee absolute security.

5. Data Sharing and Disclosure

5.1 We DO NOT Sell Your Data

Dress Social does not sell, rent, or trade your personal information to third parties for marketing purposes.

5.2 When We Share Your Data

We may share your information only in the following limited circumstances:

  • With Your Friends: When you explicitly share outfits with connected friends
  • Service Providers: AWS (hosting), Google Nanobanna (image processing) - only to provide services to you
  • Legal Requirements: If required by law, court order, or government regulation
  • Business Transfers: In the event of a merger, acquisition, or sale of assets (you will be notified)
  • With Your Consent: Any other sharing will require your explicit permission

6. Your Privacy Rights

You have the right to:

  • Access Your Data: Request a copy of all personal information we hold about you
  • Correct Your Data: Update or correct inaccurate information through your account settings
  • Delete Your Data: Request deletion of your account and all associated data
  • Export Your Data: Download your wardrobe, outfits, and photos in a portable format
  • Opt-Out: Unsubscribe from notifications or disable specific features
  • Object to Processing: Request we stop processing your data for specific purposes

To exercise these rights, contact us at privacy@dress-social.com

7. Data Retention

  • Active Accounts: We retain your data as long as your account is active
  • Deleted Accounts: Data is permanently deleted within 30 days of account deletion
  • Backups: Backup copies are retained for up to 90 days for disaster recovery
  • Legal Requirements: Some data may be retained longer if required by law

8. Chrome Extension Specific Practices

8.1 Permissions Explained

  • Host Permissions (https://*/*): Required to clip clothing images from any ecommerce website when you trigger Cmd+Shift+Click
  • Storage & Unlimited Storage: Stores clipped items and photos locally for offline access
  • Active Tab: Detects which page you're clipping from (only when you click)
  • Notifications: Alerts you when operations complete
  • Side Panel: Displays the main extension UI

8.2 What We DON'T Do

  • ❌ We do not track your browsing history
  • ❌ We do not collect data from pages unless you explicitly clip items
  • ❌ We do not inject ads or modify web pages
  • ❌ We do not sell your data to advertisers
  • ❌ We do not use remote code or third-party analytics trackers

9. Cookies and Tracking

Our web application uses cookies for:

  • Authentication: Keeping you logged in (session cookies)
  • Preferences: Remembering your settings
  • Security: CSRF protection tokens

We do not use third-party advertising cookies or cross-site tracking.

10. Children's Privacy

Dress Social is not intended for users under 13 years old. We do not knowingly collect information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately and we will delete it.

11. International Users

Dress Social is based in the United States. If you access our service from outside the US, your information will be transferred to, stored, and processed in the US. By using our service, you consent to this transfer.

We comply with applicable data protection laws including GDPR (for EU users) and CCPA (for California residents).

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by:

  • Posting the new Privacy Policy on this page
  • Updating the "Last Updated" date
  • Sending an email notification (for material changes)
  • Showing an in-app notification

We encourage you to review this Privacy Policy periodically for any changes.

13. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

Privacy Policy Summary

  • ✅ We collect only data necessary to provide our service
  • ✅ We do NOT sell your data to third parties
  • ✅ We use industry-standard security measures
  • ✅ You control your data and can delete it anytime
  • ✅ We're transparent about how we use your information