Layers — Privacy Policy
Effective Date: September 21, 2026
1. Introduction
Layers is a wardrobe and outfit-styling app operated by Wise Creations Inc. (“we”, “us”, or “our”). This Privacy Policy explains how we collect, use, store, and protect your personal information when you use the Layers mobile app (“App”) and related services (collectively, the “Services”).
By using the Services, you agree to the collection and use of information as described in this Privacy Policy. If you do not agree, please do not use the Services.
2. Information We Collect
A. Account Information
- Sign-in details: When you create an account (including via Sign in with Apple), we receive your email address (or an Apple private relay address) and the name you choose to share.
- Profile and preference data you provide in the App, such as your profile photo, style preferences, and onboarding answers.
B. Wardrobe and Shared-Closet Content
- Photos and camera access: With your permission, we access your camera and photo library when you choose to photograph or import clothing and outfit photos.
- Wardrobe content: Images, descriptions, tags, collections, outfit combinations, calendar entries, wear history, and stylist conversations you create are stored to provide your digital wardrobe and styling features.
- Shared-closet information: Shared closets are private and invitation-only. We store closet memberships, roles, invitations, and the content members add. Current members can see the shared closet and its content according to their assigned role.
C. Safety Information
- If you report another shared-closet member, we store the accounts involved, closet, report category, any details you provide, report status, and a report identifier so the concern can be reviewed and followed up through support.
- If you block an account, we store the block relationship so we can separate shared access and prevent future invitations between the accounts. Your list of blocked accounts is available in Profile so you can unblock an account later.
D. Purchase Information
- Apple or Google Play processes paid Layers memberships, depending on where you subscribe, and RevenueCat helps us manage access. We receive membership status and transaction identifiers, but not your payment card details.
E. Usage and Technical Data
- Device information: device type, operating system version, and app version.
- Usage analytics: features used and in-app events, to understand and improve the product.
- Crash and performance data, to diagnose and fix problems.
- Public website analytics: manually defined page, content, call-to-action, and outbound-link events on layerscloset.com. Website URL query strings and fragments are removed before capture.
F. Advertising and Attribution Data
- With your permission through Apple’s App Tracking Transparency prompt on iOS, we collect your device advertising identifier (IDFA) to measure the effectiveness of our marketing campaigns.
- Attribution data: which ad or channel, if any, led you to install the App, and aggregate membership-related events used to measure campaign performance.
- On Android, AppsFlyer may collect the Google advertising ID when it is available to the App, along with install and campaign-attribution data. Apple’s App Tracking Transparency prompt does not apply on Android.
- If you decline tracking on iOS, we do not access your advertising identifier; measurement is limited to privacy-preserving attribution methods made available by Apple.
G. Location and Item Search
- With your device location permission, Layers uses your location coordinates to retrieve local weather for outfit planning. Coordinates are sent through our backend to Open-Meteo.
- When you search for clothing images online, the search text is sent through our backend to Serper to retrieve matching product images.
3. Third-Party AI Processing and Your Choice
Layers asks for your explicit permission before it first sends personal data to a third-party AI provider. If you allow AI processing:
- Google Gemini may receive the photo or message you choose, together with relevant clothing-item and closet details needed to identify clothing, clean up garment images, analyze outfit photos, generate outfits or daily suggestions, and answer stylist requests.
- Replicate may receive selected clothing photos to remove their backgrounds.
Only the information needed for the AI feature you chose is sent. AI results may be stored with your Layers account when needed to show your wardrobe content, generated looks, or stylist conversation history.
Choosing Not now leaves non-AI features available. You can later allow or stop third-party AI processing in Profile → Privacy → Third-party AI. Stopping AI processing prevents new photos, messages, and closet context from being sent to Gemini or Replicate. It does not undo processing that already occurred or control data a provider may retain under its own terms or legal obligations. The next time you choose an AI feature, Layers may ask again.
Before sign-in, the choice is stored on your device so onboarding AI can respect it. After sign-in, the choice is stored with your account. We retain a record of a grant or withdrawal while the account remains active so the Services can enforce your current choice; account deletion removes that record from our application database.
4. Other Third-Party Service Providers
We use the following providers to operate the Services:
- Convex: Backend, authentication, database, and file storage for account and wardrobe data.
- Open-Meteo: Weather forecasts using the location coordinates supplied for the weather feature.
- Serper: Online clothing-image search using the search text you enter.
- RevenueCat: Membership entitlements and purchase status.
- PostHog: Privacy-limited product and AI-operation analytics in the App, plus anonymous cookieless public-website measurement and persistent website measurement if you allow it.
- Sentry: Crash reporting and application performance monitoring.
- AppsFlyer: Mobile measurement and install attribution, including linking installs and membership events to the marketing campaign that drove them.
- Meta (Facebook SDK and Conversions API): Ad measurement and campaign optimization for ads we run on Meta platforms. On iOS, your advertising identifier is shared with Meta only if you grant App Tracking Transparency permission.
- TikTok for Business: Ad measurement for campaigns we run on TikTok, through AppsFlyer. The App does not include a TikTok SDK.
These providers process data to perform services for us under their applicable terms and privacy commitments. We do not sell your personal data. We do not promise a provider-specific retention period unless the provider has given us a binding basis for that promise.
5. How We Use Your Information
- To provide, maintain, and improve the Services, including the AI features you choose to use.
- To manage your account, membership, and access level.
- To operate private shared closets, enforce member roles, and deliver invitations.
- To filter a limited set of high-confidence objectionable text from shared closet and collection names or descriptions.
- To record safety reports, enforce blocks, respond to support requests, and protect users and the Services.
- To send account-related notifications and important service updates.
- To analyze usage trends and fix crashes and bugs.
- To measure and improve our marketing, subject to your tracking permission choice on iOS.
- To comply with applicable laws and protect our rights.
Before you answer its privacy prompt, the public Layers website measures anonymous aggregate activity only. That baseline runs PostHog in always-cookieless mode: it writes no analytics identifier to cookies, local storage, or session storage, creates no persistent profile, and enables no session replay, heatmaps, surveys, automatic error capture, or autocapture. It records only manually defined page, content, call-to-action, and outbound-link events, with URL query strings and fragments removed, and marks them as the cookieless measurement tier.
If you allow analytics, the website stores one site-specific anonymous identifier so the same manually defined PostHog activity can be connected across visits. The PostHog SDK itself remains memory-only and does not retain landing URLs or referrers in browser storage. The website still does not enable interaction autocapture, session replay, heatmaps, surveys, or automatic error and performance capture, and it does not send input values, full URLs, or advertising identifiers. If you decline, only the anonymous cookieless baseline continues. Do Not Track suppresses website analytics entirely, and analytics remain off when the website has no configured PostHog project key.
6. Shared-Closet Safety, Reports, and Blocks
Layers does not offer public or anonymous closets. Shared closets require an invitation, and members can report or block another current member from the shared-closet controls.
- Our automated text filter is deliberately narrow. It does not review every image, phrase, or context, so reporting remains available for concerns the filter cannot detect.
- A submitted report is recorded for support review. The App provides a report identifier and an option to email support@wisecreations.ca for follow-up. If anyone is in immediate danger, contact local emergency services.
- Blocking immediately ends shared-closet access between the two accounts, revokes pending direct invitations, and prevents new direct invitations, invite searches, and invite-code access between them.
- Unblocking permits future invitations but does not restore a prior membership or invitation.
7. Data Retention and Deletion
- We generally retain account and wardrobe data while your account is active. Individual content is removed when you delete it, subject to normal processing and storage operations.
- A block record remains until you unblock the account or either involved account is deleted.
- A safety report remains in our application database for support review until an involved account is deleted. The Services do not currently apply a shorter fixed deletion schedule to these reports.
- You can delete your account from inside the App without contacting support. Our data-deletion page explains the in-app steps, the data removed, the limited background cleanup, and what account deletion does not cancel.
- Account deletion removes the account’s personal data from our application database, including AI-consent, block, and safety-report records involving the account, except information we or a provider must retain to meet legal obligations. It does not delete another person’s closet or content merely because you were a member, cancel an Apple or Google Play membership, or reverse third-party processing already completed.
8. International Compliance
Our Services are available internationally, with a primary focus on users in Canada and the USA. We strive to comply with applicable privacy laws such as Canada’s PIPEDA and U.S. privacy regulations. If you access the Services from a jurisdiction with additional protections, we will apply those protections where required.
9. Data Security
We implement commercially reasonable measures to protect your personal information. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.
10. Children’s Privacy
The Services are not directed to children under 13, and we do not knowingly collect personal information from children under 13.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will post the updated policy on this page with a revised effective date and, for material changes, notify you in the App.
12. Contact Us
For privacy questions, a shared-closet safety follow-up, or help deleting your account, contact:
Wise Creations Inc.
support@wisecreations.ca