PRIVACY
Privacy policy
Draft for founder and professional review. Company registration details, processing regions, controller and processor roles, and final retention periods will be completed before an external production launch.
1. Who we are
LookWeave is operated by [legal entity name], registered at [registered address] under [registration number and jurisdiction]. In this policy, “LookWeave,” “we,” and “us” refer to that entity and its service.
Questions about privacy or personal data can be sent to privacy@lookweave.com. Formal legal notices can be sent to legal@lookweave.com.
2. What this policy covers
This policy applies to the LookWeave homepage, brand workspace, storefront widget, and authorized product demonstrations. It explains what we collect, why we use it, how long we keep it, and the choices available to people who use the service.
3. Information we handle
Account and business information
For a brand workspace, we may handle names, work email addresses, organization details, store domains, role information, authentication events, and support correspondence.
Catalogue and integration information
We handle garment images, product and component descriptions, catalogue identifiers, widget settings, allowed origins, public widget tokens, usage records, and integration events supplied by a brand.
Shopper images
The widget may receive a shopper portrait for one preview. The image and generated result are transient processing data. They are not added to a gallery, reused for another shopper, sold, or used to train models by default.
Operational, security, and commercial records
We retain limited metadata needed to operate and protect the service, such as job state, route version, timings, quality outcomes, error categories, audit events, usage, credits, invoices, and deletion proof. Logs must not contain image bytes, signed image URLs, access tokens, passwords, or MFA material.
4. How we use information
- Provide the preview, workspace, integration, support, and account services.
- Validate catalogue assets and route requests by garment structure.
- Measure reliability, usage, quality outcomes, cost, and service security.
- Prevent abuse, protect tenants, investigate incidents, and enforce our terms.
- Handle invoices, credits, legal obligations, and deletion requests.
- Improve the service using operational information and separately governed research data.
We do not use shopper inputs or generated results for model training or research by default. Any consented research process is kept separate from production records and documented before it begins.
5. Retention and deletion
Our intended production lifecycle deletes a shopper input and generated result after the first successful delivery, or after 60 minutes following completion or failure, whichever comes first. An absolute 24-hour object-storage lifecycle is intended as a safety net. The exact production configuration and backup schedule will be confirmed before launch.
Garment assets remain in a brand catalogue until the brand replaces or deletes them, or the account ends, subject to legal and billing records. Operational, security, and commercial metadata is retained only for its documented purpose and required legal period.
6. Sharing and service providers
We do not sell personal information. We may share limited information with service providers that help us host, authenticate, queue, process, secure, support, or bill the service. The final provider list, processing regions, and contractual safeguards will be published or provided before production use.
A brand may be responsible for some shopper-facing notices and consent wording on its storefront. That does not remove LookWeave’s own obligations for the data we process.
7. Consent, age, and responsibilities
The widget requires the uploader to confirm that they are 18 or older, or have guardian consent, and have the right to use the portrait. LookWeave does not ask for a date of birth, identity document, or guardian document. Brands must configure their audience and privacy settings before activation.
8. Your choices and rights
Depending on applicable law, a person may ask to access, correct, delete, restrict, or object to processing of personal information. A brand may also request deletion or export of its account data. Send requests to privacy@lookweave.com. We may need enough information to verify the request and may retain records we must keep by law.
9. Security
LookWeave is designed around tenant isolation, least-privilege access, encrypted private storage, origin-bound widget tokens, short-lived image access, MFA for authenticated staff and brand users, audit records, and deletion monitoring. No online service can promise absolute security. Report a suspected vulnerability to security@lookweave.com without sending images, passwords, tokens, or signed URLs.
10. Changes and contact
We may update this policy as the service, providers, legal requirements, or processing practices change. We will update the date above and provide additional notice where required.
Privacy: privacy@lookweave.com
General support: hello@lookweave.com
Legal notices: legal@lookweave.com