Legal
Privacy Policy
Last updated: 9 April 2026
The short version: Fashoma is built on a foundation of privacy. Your body scan photographs never leave your device. We do not upload, store, or share your biometric data. Ever. The 3D measurements used to build your Body Twin are processed entirely on-device and are never transmitted to our servers.
1. Who We Are
Fashoma is operated by Fashoma Ltd, a company registered in England and Wales. Our registered address is available on request at privacy@fashoma.com. We are the data controller for personal data processed through our website at fashoma.com and our iOS application ("the App").
2. The Fashoma Privacy Commitment
Fashoma was designed from day one with privacy as a non-negotiable principle. Our Body Twin technology is fundamentally different from other body-scanning or try-on solutions:
- All photographs stay on your device. The camera captures used to create your Body Twin are processed locally using on-device computer vision. No photographs are uploaded to Fashoma servers at any point.
- No biometric data is transmitted. Your body measurements, 3D model data, and scan results are stored locally in your device's secure storage. We have no technical ability to access this data.
- No third-party AI or cloud processing of your body data. We do not send your images or body data to any third-party AI service, cloud platform, or external processor.
- You own your data completely. Deleting the App removes all Body Twin data from your device permanently. There is no copy on our servers to delete.
3. Data We Do Collect
While your body data stays on-device, we do collect limited data to operate the service:
Account Data
- Email address and name (when you create an account)
- Authentication tokens (stored securely on your device)
- Account preferences and settings
Usage Data
- App feature interactions (aggregated and anonymised)
- Crash reports and error logs (no personally identifiable information)
- Session duration and general usage patterns
Wardrobe and Style Data
- Items you save to your wardrobe (stored in your account)
- Style preferences and outfit combinations you create
- Products you view or purchase through the App
Website Data
- IP address and browser information (standard web server logs)
- Pages visited and time on site
- Cookies (see our Cookie Policy)
4. How We Use Your Data
- To provide and improve the Fashoma service
- To send you account notifications and service updates
- To provide AI style advice (processed via secure API, no body data included)
- To facilitate affiliate transactions when you purchase through the App
- To comply with legal obligations
- To prevent fraud and ensure platform security
5. Legal Basis for Processing (UK GDPR)
- Contract performance: Processing necessary to provide the Fashoma service you have signed up for
- Legitimate interests: Service improvement, security, fraud prevention
- Consent: Marketing communications (you can withdraw at any time)
- Legal obligation: Where required by applicable law
6. Body Scan Data — Technical Detail
When you use the Body Twin capture feature, the App uses your device camera to take a series of photographs. These photographs are:
- Stored temporarily in your device's local cache during the scan session
- Processed entirely on-device using computer vision algorithms
- Used to generate body measurements and a 3D model stored in your device's local secure storage
- Permanently deleted from the temporary cache after processing completes
The resulting measurements (height, chest, waist, hips, etc.) are stored locally and, if you choose to sync your account, are associated with your account in encrypted form. We cannot use these measurements to reconstruct photographs of you or identify you biometrically.
7. Data Sharing
We do not sell your personal data. We share data only in the following circumstances:
- Retail partners (affiliate transactions): When you click through to purchase a product, we share a transaction reference with our affiliate network partners (currently Rakuten Advertising). No body data is shared.
- Service providers: We use Supabase for account data storage (EU/UK based infrastructure). All processors are bound by data processing agreements meeting UK GDPR requirements.
- Legal requirements: Where required by law, court order, or to protect our legal rights
8. Data Retention
- Account data: retained while your account is active, plus 30 days after deletion request
- Body scan photographs: never retained — processed and deleted on-device in real time
- Body measurements: retained locally on your device until you delete the App or request deletion
- Usage analytics: retained in anonymised form for up to 24 months
9. Your Rights Under UK GDPR
You have the right to:
- Access the personal data we hold about you
- Rectification of inaccurate data
- Erasure ("right to be forgotten")
- Restriction of processing in certain circumstances
- Data portability — receive your data in a machine-readable format
- Object to processing based on legitimate interests
- Withdraw consent at any time where processing is based on consent
To exercise any of these rights, contact us at privacy@fashoma.com. We will respond within 30 days. You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk.
10. Security
We implement appropriate technical and organisational measures to protect your data, including encryption in transit and at rest, access controls, and regular security reviews. Given that body scan data never leaves your device, the highest-sensitivity data in our system is never exposed to network-level security risks.
11. Children
Fashoma is not directed at children under 13. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us at privacy@fashoma.com.
12. Changes to This Policy
We may update this policy from time to time. We will notify you of material changes via email or in-app notification. The "Last updated" date at the top reflects the most recent revision.
13. Contact
For any privacy-related queries: privacy@fashoma.com
For general enquiries: hello@fashoma.com