Last updated: 18 August 2026
TL;DR
- Your photos are used only for AI analysis (Google Gemini or OpenAI) and are never sold.
- Your style preferences and wardrobe data live on your device by default.
- We use PostHog for product analytics and AdMob to show optional rewarded ads.
- Subscriptions are handled by RevenueCat; weather uses your approximate location.
1. Who We Are
Vawa is an AI-powered personal style analyser. We help you understand your style, get outfit feedback, and discover looks you love. This policy explains how we collect, use, and protect your personal data.
2. What Data We Collect
Account Information
When you sign in with Google, we receive your Google account display name, email address, and profile photo URL. This is stored in Firebase Authentication and Firestore solely to identify your account and sync your preferences across devices.
Photos You Upload
Outfit photos you upload for FitCheck and other AI analysis are sent to Google Gemini and/or OpenAI (whichever is processing your request) for analysis. We do not store outfit analysis photos on our servers — they are processed in memory and the image data is discarded after the AI returns a result.
Profile reference photos (used for the Style Expert try-on feature) are stored locally on your device in your browser's localStorage. When you submit a try-on request, your profile photos are uploaded to Firebase Storage under your user ID and referenced in Firestore. You can delete them at any time from Profile › Try-On Reference Photos.
Style & Preference Data
Your style profile (vibe scores, wardrobe items, fit history, liked tags) is stored locally on your device in localStorage. If you are signed in, a summary of your style profile (not your photos) may be synced to Firestore to personalise your experience across devices.
Community Feed Interactions
If you like a post, that like is recorded in Firestore under your user ID. No personally identifiable information is attached to likes visible to other users.
Try-On Requests
When you submit a Style Expert analysis, the request (including your profile photos and outfit image) is temporarily stored in Firestore so the analysis can be completed. Results are stored under your user ID and are only accessible to you.
Usage & Analytics Data
We use PostHog to understand how the app is used — screen views, feature interactions, and retention (e.g. whether you return the next day). Events are tied to your Firebase user ID if you're signed in. This helps us fix bugs and prioritise features; it is not used for advertising.
Subscription Data
If you subscribe to Vawa Pro, your purchase is processed by Apple/Google and managed by RevenueCat, which receives your app-generated user ID and purchase/entitlement status to keep your subscription in sync across devices. RevenueCat does not receive your payment details — those are handled entirely by Apple/Google.
Advertising
Some features (e.g. bonus credits) can be unlocked by watching an optional rewarded ad, served via Google AdMob. AdMob may collect device and advertising identifiers to serve and measure ads, and requests tracking permission on iOS (App Tracking Transparency). You can decline this and still watch ads and use the app — declining causes us to request only non-personalised ads from AdMob for that session.
Location & Weather
If you grant location permission, we use your device's approximate coordinates to fetch local weather (via Open-Meteo) and a place name (via OpenStreetMap Nominatim) to personalise outfit suggestions. Your coordinates are sent directly to these free, no-account-required services and are not stored on our servers. Location access is optional — the app works without it.
3. How We Use Your Data
- To authenticate your account and sync preferences across your devices.
- To process your outfit and style analysis requests using Google Gemini and/or OpenAI.
- To personalise the community feed and style recommendations based on your taste profile.
- To display your try-on results and style history within the app.
- To understand app usage and improve features, via PostHog analytics.
- To manage your Vawa Pro subscription, via RevenueCat.
- To show optional rewarded ads via Google AdMob.
- To personalise outfit suggestions with local weather, via Open-Meteo and OpenStreetMap.
We do not use your data to train our own AI models, sell it to third parties, or share it for cross-app targeted advertising outside of the ad networks described above.
4. Third-Party Services
- Google Firebase (Authentication, Firestore, Storage) — stores account data, try-on requests, and profile photos. Governed by Google's Privacy Policy.
- Google Gemini API and OpenAI API — receive photo and text data for AI analysis. Neither provider uses API-submitted data to train their models. Governed by Google's AI Terms of Service and OpenAI's API data usage policy respectively.
- PostHog — product analytics (feature usage, retention, session data). Governed by PostHog's Privacy Policy.
- RevenueCat — manages subscription purchases and entitlements. Governed by RevenueCat's Privacy Policy.
- Google AdMob — serves optional rewarded video ads and may collect advertising identifiers. Governed by Google's Privacy Policy.
- Open-Meteo and OpenStreetMap Nominatim — provide weather and place-name lookups from your coordinates. No account or API key is used with either.
- Cloudflare Pages — hosts the app and serverless API proxy functions. Request metadata (IP, user-agent) is logged per Cloudflare's standard practices.
5. Data Retention
- Local data (wardrobe, fit history, style profile) stays on your device until you clear it or uninstall.
- Firestore account and try-on data is retained until you delete your account.
- Firebase Storage profile photos are retained until you delete them or delete your account.
- Deleting your account removes all your Firestore documents and Storage files within 30 days.
6. Your Rights
Depending on your jurisdiction, you may have the right to access, correct, export, or delete your personal data. To exercise these rights:
- Delete your account at any time via Settings › Danger Zone › Delete Account.
- Clear local data via Settings › Clear Wardrobe / Clear Fit History / Clear Try-On Photos.
- Contact us at privacy@vawa.app for data export requests or questions.
7. Children's Privacy
Vawa is not directed at children under 13 (or under 16 in the EU). We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us immediately.
8. Security
We use Firebase's built-in security (Firestore Security Rules, Firebase Auth, HTTPS) to protect your data in transit and at rest. Access to your Firestore documents is restricted to your user account only. No passwords are stored by Vawa — all authentication is delegated to Google.
9. Changes to This Policy
We may update this policy as the app evolves. Material changes will be communicated via an in-app notice. Continued use of Vawa after changes constitutes acceptance of the revised policy.
10. Contact
Questions, requests, or concerns about this policy:
Vawa App Privacy
privacy@vawa.app