This policy describes how STILARO collects, uses and protects the information of both the
merchants who install the app and the shoppers who use the virtual try-on in their stores.
1. Information we collect
Through the Shopify APIs
- Product data: We access the store catalog (name, image,
variants) through the read_products permission solely to display the garments in the virtual
try-on.
- Order and return data: Through the read_orders and read_returns
permissions we access order identifiers, the purchased line items (product and size) and the return
reason or status, solely to measure how our size recommendations affect purchases and returns. We do
not access payment or financial information.
From the Merchant
- Store domain: To identify the account and manage the
configuration.
- Subscription plan: To manage the type of service contracted and
usage limits.
- Anonymous usage data: Metrics on the number of virtual try-ons
performed, without any link to specific users.
From the Buyer
- Uploaded photo: The image that the shopper voluntarily provides to
visualize the garments.
- Email address (optional): Only if the shopper voluntarily enters it
(for example, to receive their virtual try-on result). It is never required to use the tool.
- Pseudonymous interaction metrics: Technical widget events linked to
a random visitor identifier, used for error correction, usage analytics and return attribution. They are
not linked to your name or email.
Important note: Apart from an email address voluntarily provided by the shopper, we do
NOT collect names, postal addresses or any other personally identifiable information from shoppers. We do
not use tracking cookies or tracking technologies in the storefront, we do not sell personal data, and we
do not use it for behavioral advertising or cross-site tracking.
2. How we use the information
- Shopper photos: Used only to generate the virtual try-on image
(try-on process).
- Product data: To integrate the store catalog with the visual
widget.
- Merchant data: To manage the subscription, apply usage limits
and ensure the operation of the service.
- Order and return data: To attribute size recommendations and
measure their effect on returns (pseudonymous analytics).
- Pseudonymous metrics: For technical diagnostics and improvement of
system stability.
- Email address (if provided): Only to send the shopper their
try-on result or the communications they requested.
AI guarantee: We do NOT use users' photos to train Artificial Intelligence
models. Biometric or body data derived from processing is ephemeral and is never used to improve
our algorithms permanently.
3. Data retention
- Shopper photos: Deleted immediately after generating the result.
They are not stored on servers.
- Try-on results: Deleted immediately from the server. They may
persist in the browser's local memory during the session.
- Merchant data: Retained while the app is installed. Deleted after
uninstallation (via the shop/redact webhook).
- Collected email (if any): Retained until the shopper or merchant
requests deletion, or until the app is uninstalled; removed via the customers/redact or shop/redact
webhooks.
- Pseudonymous metrics: Aggregated and not linked to individuals. With
no defined expiration date.
- Return-attribution data: The order and size data used for analytics
is pseudonymous (no name or email). Deleted via customers/redact for the affected orders and via
shop/redact.
4. Who accesses the data
- The store (Merchant) — Data controller: Does NOT have access to
shoppers' photos or results.
- STILARO — Data processor: Processes photos in a transient and
volatile manner, without persistent storage.
- Google (Gemini on Google Cloud) — Subprocessor: Provides the image
AI infrastructure. Processes images transiently without model training.
- fal.ai — Subprocessor: Try-on AI provider used as an alternative or
fallback. Processes images transiently without model training.
- Supabase — Subprocessor: Database and backend infrastructure (EU
region, Paris). Stores the merchant configuration, the pseudonymous metrics and, where applicable, the
voluntarily collected email.
5. International transfers and Security
Data transfers
Photos may be processed by Google and fal.ai on servers located outside the European Economic Area
(EEA), including the United States, under Standard Contractual Clauses (SCCs) approved by the European
Commission. Our database and backend (Supabase) are hosted in the EU (Paris). Image processing is
strictly transient.
Security measures
- End-to-end encrypted communications via HTTPS/TLS.
- HMAC-SHA256 integrity verification on all requests.
- Infrastructure with SOC 2 and ISO 27001 certifications.
- Implementation of Rate Limiting to prevent abuse and attacks.
6. User rights (RGPD / CCPA)
- Right to erasure: For photos it is guaranteed by design, as they
are not stored. For a voluntarily collected email, you may request deletion at any time via our contact
or Shopify's GDPR webhooks.
- Right of access: Shoppers see their images in real time. Merchants
may request their account data through our contact.
- Right to object: The user may choose not to use the widget if
they do not want the transient processing of their image.
- Right to portability: Merchants may request the export of their
usage and subscription data.
7. Compliance webhooks (GDPR)
STILARO strictly complies with Shopify's mandatory webhooks:
- 1. customers/data_request: We return any email we may have
collected for that customer; photos are processed in real time and not stored.
- 2. customers/redact: We delete the customer's collected email and
the return-attribution records for the orders to be redacted.
- 3. shop/redact: We permanently delete all store data when the
app is uninstalled.
8. Contact
If you have questions about this policy or the handling of your data, you may contact us at:
9. Changes to this policy
We may update this Privacy Policy to reflect changes in our practices or for legal reasons. In such
cases we will revise the "last updated" date shown above and, where required, notify merchants.
Continued use of the app after changes constitutes acceptance.