Privacy Policy
At Wardatrobe, we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy outlines how we collect, use, and safeguard your data when you use our platform. Wardatrobe is operated by Nimikko株式会社.
Key Privacy Points
- We do not save personal information unless you register an account
- We do not claim ownership of any images, photos, or content you upload
- Fashion product data in our database is sourced from publicly available information for archival purposes
- User-entered data is stored securely with industry-standard encryption
- We use cookies only for essential site functionality — no advertising trackers
Information Collection and Use
Wardatrobe is a fashion database and community platform. Platform Content — product names, descriptions, pricing, brand information, images, and related metadata — is collected from publicly available sources such as official brand websites, authorized retailers, and public product listings. This data is compiled for informational and archival purposes. We do not collect or store any personal information from visitors who are simply browsing our site.
User Registration: If you choose to register an account with Wardatrobe, we will collect and store the information you provide during the registration process. This includes your username, email address, and password (hashed). Additional data you optionally provide — such as display name, profile bio, profile picture, and wardrobe data — is stored to enable platform features. We use this information solely for the purpose of managing your account and providing you with the interactive features of our platform.
Data Ownership and Content
We do not claim ownership of any content you upload or submit to Wardatrobe. All images, photos, outfit pictures, wardrobe entries, fit photos, reviews, and other User Content remain your property. We only use your content within the platform to provide the features you use (displaying your wardrobe, showing outfits in community feeds, etc.). You can delete your content at any time. Fashion product data (Platform Content) sourced from publicly available information is compiled for informational purposes; we do not claim ownership of third-party trademarks, brand names, logos, or product images, which remain the property of their respective owners.
Uploaded Images and Photos
When you upload images to Wardatrobe (profile pictures, wardrobe photos, fit photos, outfit images), they are processed by our file handling service for optimization (resizing, format conversion) and stored on our cloud infrastructure (DigitalOcean Spaces / S3-compatible storage). We do not use your uploaded images for any purpose other than displaying them within the platform as part of the features you use. We do not sell, license, or share your images with third parties. We do not use your images for AI training. When you delete an image or your account, the image files are removed from our storage.
Platform Content and Data Sources
Our fashion database contains product information collected from publicly available sources. This includes product names, descriptions, pricing, brand details, images from product listings, materials, colors, and other catalog metadata. This data is collected and organized for informational and archival purposes to serve the fashion community. Product images displayed in the database are used in good faith for identification purposes and remain the property of their respective rights holders. If you are a rights holder and wish to have content corrected or removed, please contact us.
Affiliate Links and Revenue
Some links on our site may be affiliate or commission links. If you click on these links and make a purchase, we may receive a small commission. This helps support the maintenance and development of Wardatrobe. These affiliate relationships do not influence our content, data, or recommendations.
Cookies and Tracking
We use cookies for essential site functionality, such as maintaining user sessions, remembering your preferences, and storing your authentication state. We do not use advertising cookies or sell data to advertisers. We use PostHog for product analytics to understand how features are used and improve the platform. You can adjust your browser settings to refuse cookies, but this may limit your ability to use some features of our site.
Payment and Token Data
When you purchase a subscription or tokens, payment processing is handled entirely by Stripe. We do not store your full credit card details on our servers — only a Stripe customer ID and basic transaction metadata (amount, date, plan type) are retained for billing management and legal compliance. Token purchase and usage records are retained for a minimum of one year from the date of purchase in accordance with the Payment Services Act (資金決済法). Financial records may be retained for up to 7 years for tax and accounting purposes as required by Japanese law.
Authentication and Security Data
If you enable two-factor authentication, we store the associated authenticator secret (encrypted) or passkey credential on our servers. This data is used solely for verifying your identity during login. Password reset tokens and email verification tokens are temporary and expire after use. We log authentication events (login timestamps, IP addresses) for security monitoring and fraud prevention.
AI Services and Data Processing
Wardatrobe uses AI services to provide optional features that enhance your experience. Google's generative AI services are used for content processing and embeddings. Anthropic's Claude is used for editorial features and data processing. No personal user information is sent to these AI providers — only fashion product data and content you explicitly choose to process through AI features. The use of AI features is optional. AI-generated content may be inaccurate and should not be relied upon as authoritative. For more information about Google's data handling, see Google's Data Processing Addendum.
Data Security
We take the security of your data seriously. All user-entered data is stored securely using industry-standard encryption. Passwords are hashed and never stored in plain text. Data in transit is encrypted via TLS. However, no method of transmission over the internet or electronic storage is 100% secure, and we cannot guarantee absolute security.
Cross-Border Data Transfer
Your data is primarily stored on servers located in the European Union (Frankfurt, Germany) operated by DigitalOcean. Some data may be processed by third-party services located in the United States, including Stripe (payment processing), Google Cloud (AI features), and Resend (email delivery). Japan has been granted an adequacy decision by the European Commission, and the Japan Personal Information Protection Commission (PPC) has recognized the EU as providing an equivalent level of protection. These mutual adequacy arrangements ensure your data is protected when transferred between jurisdictions.
Personal Information Protection Manager
In accordance with the Act on the Protection of Personal Information (APPI), we have designated a personal information protection manager responsible for the handling and protection of your personal data. For inquiries regarding the handling of your personal information, please contact us through the information provided on our Contact page.
Subprocessors
We use the following third-party services to operate Wardatrobe:
- DigitalOcean (EU/Frankfurt) — Server hosting, database storage, and file storage (Spaces)
- Stripe (US) — Payment processing and subscription management
- Google Cloud (US) — AI-powered features (embeddings, content processing)
- Anthropic (US) — AI-powered features (editorial generation, data processing)
- PostHog (EU) — Product analytics and usage tracking
- Resend (US) — Transactional email delivery
Data Retention
We retain your personal data only as long as necessary for the purposes described in this policy. Account data is retained while your account is active. Upon account deletion, your personal data (including uploaded images) is removed within 30 days, except where retention is required by law. Financial and payment records may be retained for up to 7 years for tax purposes. Token purchase records are retained for at least one year per the Payment Services Act (資金決済法). Anonymized analytics data may be retained indefinitely.
Your Rights (APPI)
Under the Act on the Protection of Personal Information (個人情報保護法), you have the following rights:
- Right to request disclosure of your retained personal data
- Right to request correction, addition, or deletion of inaccurate personal data
- Right to request cessation of use or provision of your personal data to third parties
- Right to request deletion of your personal data
To exercise these rights, please use the data export and account deletion features in your account settings, or contact us directly.
Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be notified via the platform or email. You are advised to review this Privacy Policy periodically for any changes. Continued use of the Service after changes constitutes acceptance.